Adware

Adware.KuaiZip.2 removal guide

Malware Removal

The Adware.KuaiZip.2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.KuaiZip.2 virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Queries information on disks, possibly for anti-virtualization
  • Attempts to modify browser security settings

Related domains:

tj.kpzip.com
news.7654.com

How to determine Adware.KuaiZip.2?


File Info:

crc32: 5E121098
md5: 97519fa5fdb89e0f23bda6a6772f3b64
name: mininews-4.exe
sha1: 043c4768ba1456f3376280cab3dc409913171aa7
sha256: 5ac08dc61acc423639dc9ecfcf731c4648129c185f3a3c0fcac4f124a43c82a8
sha512: ed95171f222a65f75833ec82934c2bbc4a63f515e6edb26801b2ec7b1c048a1ff3d27364e5669cbe6272cc2a5377409ea32cc3bb3d1039d88f346efb0ff21e6f
ssdeep: 6144:17tvncR+46Ff5IMQDW2cJQ5J8aqPp3TkJJyC+Z/+1fxJc7mp3dE3i9DoSRUb23oO:1Zk446bIMQ6JJQUFPp3TeJ2Z/+NBp3d1
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright:
FileVersion: 5.0.261.85
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 5.0.261.85
Translation: 0x0804 0x04e4

Adware.KuaiZip.2 also known as:

MicroWorld-eScanGen:Variant.Adware.KuaiZip.2
FireEyeGen:Variant.Adware.KuaiZip.2
McAfeeArtemis!97519FA5FDB8
CylanceUnsafe
ZillyaTool.KuaiZip.Win32.10
AegisLabRiskware.Win32.KuaiZip.1!c
SangforMalware
K7AntiVirusAdware ( 0055c03a1 )
BitDefenderGen:Variant.Adware.KuaiZip.2
K7GWAdware ( 0055c03a1 )
F-ProtW32/Kuaizip.G.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataGen:Variant.Adware.KuaiZip.2
Kasperskynot-a-virus:HEUR:RiskTool.Win32.KuaiZip.gen
AlibabaBackdoor:Win32/CryptInject.292144da
NANO-AntivirusRiskware.Win32.Kuaizip.gxkhux
AvastWin32:PUPX-gen [PUP]
RisingAdware.KuaiZip!1.B8F3 (CLOUD)
Ad-AwareGen:Variant.Adware.KuaiZip.2
EmsisoftGen:Variant.Adware.KuaiZip.2 (B)
ComodoMalware@#1jy3u45x89gph
DrWebProgram.Kuaizip.6
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R020C0PBK20
McAfee-GW-EditionPUP-XHW-XZ
SophosGeneric PUA AE (PUA)
CyrenW32/Trojan.HAUX-6518
JiangminRiskTool.KuaiZip.hb
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (moderate confidence)
ArcabitTrojan.Adware.KuaiZip.2
ZoneAlarmnot-a-virus:HEUR:RiskTool.Win32.KuaiZip.gen
MicrosoftTrojan:Win32/CryptInject!MSR
AhnLab-V3PUP/Win32.KuaiZip.R296945
ALYacGen:Variant.Adware.KuaiZip.2
MAXmalware (ai score=67)
VBA32suspected of Trojan.Downloader.gen.h
MalwarebytesPUP.Optional.Kuaizip
ESET-NOD32a variant of Win32/KuaiZip.W potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R020C0PBK20
TencentMalware.Win32.Gencirc.10b8f37e
YandexRiskware.Agent!
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_61%
FortinetRiskware/Generic_PUA_JN
AVGFileRepMalware [PUP]
PandaTrj/Genetic.gen
MaxSecureTrojan.Malware.74069765.susgen

How to remove Adware.KuaiZip.2?

Adware.KuaiZip.2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment