Adware

Adware.Linkular.A malicious file

Malware Removal

The Adware.Linkular.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Linkular.A virus can do?

  • Sample contains Overlay data
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Deletes executed files from disk

How to determine Adware.Linkular.A?


File Info:

name: B7F9983EB0B18FB6BE57.mlw
path: /opt/CAPEv2/storage/binaries/5661cd9fc93d65ba2f1c3a618c2492d6f9c8fd9ddaae87839cade9e1403ca6fd
crc32: DB6E37AE
md5: b7f9983eb0b18fb6be572c810f6ab490
sha1: ea33bac6a9086c3a8dc641c8429480995c8f35d5
sha256: 5661cd9fc93d65ba2f1c3a618c2492d6f9c8fd9ddaae87839cade9e1403ca6fd
sha512: 19c2dafe698cca1d3f4b28a8c910b63abf2da3be3d78c5d585e050de264dc2d8906730b4b8901d15590a4fa4ab1ffc65b97dc43ea7d596842cbea5fcbd349acd
ssdeep: 12288:L3Cz3sc3Xy9uTk4FF1g38Hx1iCJXOyC1aNJjrlIpGPy7:L3C3N3i9uTk4rH1fiaNhRIpGPy7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12DA4235633E0CC0AE813717154F38B769EF2D8165121A6BB4BA5AFAFEC352021C5EE47
sha3_384: 0b5826ebd83ba0a823b2e447390c532857e38c14ec2ede036f0b722bbafd593fcf5c90bd6440f0bf03f1623ed15dee0c
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:52:01

Version Info:

Version: 2.2.3
Translation: 0x0000 0x04e4

Adware.Linkular.A also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.Linkun.lX9D
Elasticmalicious (high confidence)
MicroWorld-eScanAdware.Linkular.A
ClamAVWin.Dropper.Formbook-9938888-0
FireEyeAdware.Linkular.A
CAT-QuickHealPUA.Linkun.J5
SkyhighBehavesLike.Win32.Trojan.gc
McAfeeArtemis!B7F9983EB0B1
MalwarebytesGeneric.Malware.AI.DDS
ZillyaAdware.LinkunGen.Win32.1
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 00527b3d1 )
AlibabaAdWare:Win32/Linkun.b12472f9
K7GWRiskware ( 00527b3d1 )
CrowdStrikewin/grayware_confidence_100% (D)
VirITTrojan.Win32.X-KillFiles.A
SymantecPUA.Gen.2
ESET-NOD32Win32/Adware.Linkular.AJ
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.Linkun.f
BitDefenderAdware.Linkular.A
NANO-AntivirusRiskware.Win32.ficngn.jrgplr
SUPERAntiSpywarePUP.Linkular/Variant
AvastNSIS:Linkular-A [Adw]
TencentWin32.Adware.Linkun.Wwhl
TACHYONTrojan-Clicker/W32.Linkun.453633
EmsisoftAdware.Linkular.A (B)
BaiduNSIS.Adware.Linkular.a
F-SecureAdware.ADWARE/Linkun.j
DrWebTrojan.KillFiles.12939
VIPREAdware.Linkular.A
TrendMicroADW_DOWNWARE
Trapminemalicious.high.ml.score
SophosLinkular (PUA)
SentinelOneStatic AI – Malicious PE
GDataNSIS.Application.Linkular.D
JiangminAdWare.Linkun.b
GoogleDetected
AviraADWARE/Adware.Gen
Antiy-AVLGrayWare[AdWare]/Win32.Linkular.ai
Kingsoftmalware.kb.a.990
XcitiumApplication.Win32.Linkular.AY@5gf85u
ArcabitAdware.Linkular.A
ZoneAlarmnot-a-virus:AdWare.Win32.Linkun.f
MicrosoftPUA:Win32/Linkular
VaristW32/FakeSec.T.gen!Eldorado
ALYacAdware.Linkular.A
VBA32AdWare.Linkun
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallADW_DOWNWARE
RisingAdware.Linkury/NSIS!1.BF78 (CLASSIC)
IkarusAdWare.Linkular
FortinetAdware/Linkun
AVGNSIS:Linkular-A [Adw]
DeepInstinctMALICIOUS

How to remove Adware.Linkular.A?

Adware.Linkular.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment