Adware

About “Adware.MultiPlug” infection

Malware Removal

The Adware.MultiPlug is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.MultiPlug virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Adware.MultiPlug?


File Info:

crc32: 877D6654
md5: 0f732a878822857a33bfa1c52e3d5b05
name: 0F732A878822857A33BFA1C52E3D5B05.mlw
sha1: 4e72ef548b849ea64126cd70002059d59cd727b4
sha256: 991ecfc447ccdc6e0b8718d587f75bfe5545d905379123ab214c91be629d751f
sha512: 7964e7e03d0c0b61b697f830d95c9df69fc40db12e6b7fb6e77b7e90f7147cd370b72badfce9b87494cf4fc5a5ed6632f6a46b55ef2491b4969655bb32c6feb5
ssdeep: 12288:nVI0W/TtlPLfJCm3WIYxJ9yK5IQ9PElOlidGAWilgm5Qq0nB6wtt4AenZ1:OfP7fWsK5z9A+WGAW+V5SB6Ct4bnb
type: PE32+ executable (DLL) (console) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserv
InternalName: bitsp
FileVersion: 7.5.7600.16385 (win7_rtm.090713-
CompanyName: Microsoft Corporati
ProductName: Microsoftxae Windowsxae Operating S
ProductVersion: 6.1.7600
FileDescription: Background Intellig
OriginalFilename: kbdy
Translation: 0x0409 0x04b0

Adware.MultiPlug also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43395
ClamAVWin.Packed.Razy-9769561-0
ALYacTrojan.GenericKDZ.76753
MalwarebytesAdware.MultiPlug
ZillyaTrojan.Injexa.Win64.17
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005601a91 )
K7AntiVirusTrojan ( 005601a91 )
CyrenW64/S-9d36de06!Eldorado
ESET-NOD32a variant of Win64/Kryptik.BWL
APEXMalicious
AvastWin64:BankerX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win64.Occamy.pef
BitDefenderTrojan.GenericKDZ.76753
MicroWorld-eScanTrojan.GenericKDZ.76753
TencentMalware.Win32.Gencirc.10b8f418
Ad-AwareTrojan.GenericKDZ.76753
SophosML/PE-A + Troj/Dridex-AII
TrendMicroTrojanSpy.Win64.DRIDEX.SMF
FireEyeGeneric.mg.0f732a878822857a
EmsisoftTrojan.GenericKDZ.76753 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Injexa.s
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.30014E7
GridinsoftTrojan.Win64.Banker.oa!s1
ZoneAlarmHEUR:Trojan.Win64.Occamy.pef
GDataTrojan.GenericKDZ.76753
AhnLab-V3Malware/Win64.RL_Tspy64_hpdridex.R268147
Acronissuspicious
McAfeeDrixed-FIC!0F732A878822
MAXmalware (ai score=81)
VBA32Trojan.Win64.Dridex
TrendMicro-HouseCallTrojanSpy.Win64.DRIDEX.SMF
RisingTrojan.Kryptik/x64!1.D984 (CLASSIC)
YandexTrojan.GenAsa!RYtjI3PRurw
IkarusTrojan.Win64.Dridex
MaxSecureBanker.Win64.Emotet.sb
FortinetW64/Kryptik.CBK!tr
AVGWin64:BankerX-gen [Trj]

How to remove Adware.MultiPlug?

Adware.MultiPlug removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment