Adware

Adware.OfferManager information

Malware Removal

The Adware.OfferManager is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.OfferManager virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Adware.OfferManager?


File Info:

name: EBF3B145AFA59F4C4201.mlw
path: /opt/CAPEv2/storage/binaries/58d578148eee972f96b2f4ca2d089591a9e64f4293a39ea641477b01305c3bbc
crc32: 0EE8B302
md5: ebf3b145afa59f4c4201c4b556bca795
sha1: d1c98cca7b9981fc643192f2042973f53fbf5b76
sha256: 58d578148eee972f96b2f4ca2d089591a9e64f4293a39ea641477b01305c3bbc
sha512: f4052518b5e4eb70194fa5cf58fea61412f7b2474e5f73e8c080a631d5e48f1e88f72acbf80439a4d28f0c58928a7e9825cd02913e5100b0208618d46befe744
ssdeep: 49152:576ZXse9M2AH2GssoaJhQe6SAg695f/mA4LPOo6XDHUQ2C1z5:57OceSF2Gs5choSAg6Hf/mLqo6XD0Q2u
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14095233039E5C976C6922130DC9927E4F1FAD7684F2684736BD40F1E3E39CDAD226A58
sha3_384: d0a3fcffd25f2df1e00a71b4214610a02a0b4ac87a5acd3739407d5902fabd5dacaad2f2243b1836729c76ba93de91e4
ep_bytes: 558bec6aff68500e4200686cd0410064
timestamp: 2011-04-18 18:54:03

Version Info:

CompanyName: Igor Pavlov
FileDescription: 7z SFX
FileVersion: 9.22 beta
InternalName: 7z.sfx
LegalCopyright: Copyright (c) 1999-2011 Igor Pavlov
OriginalFilename: 7z.sfx.exe
ProductName: 7-Zip
ProductVersion: 9.22 beta
Translation: 0x0409 0x04b0

Adware.OfferManager also known as:

LionicAdware.Win32.Generic.2!c
SkyhighBehavesLike.Win32.BadFile.tc
McAfeeArtemis!EBF3B145AFA5
Cylanceunsafe
SangforTrojan.Win32.Agent.V57d
K7AntiVirusAdware ( 0055f90e1 )
K7GWAdware ( 0055f90e1 )
ESET-NOD32a variant of Win32/uTorrent.D potentially unwanted
CynetMalicious (score: 100)
JiangminTrojan.Generic.eavxa
GoogleDetected
Antiy-AVLWorm/Win32.OpenCandy.a
GDataWin32.Application.Agent.4TWXWI
VaristW32/Bunndle.A.gen!Eldorado
VBA32Adware.OfferManager
MalwarebytesPUP.Optional.BundleInstaller.UPX
YandexTrojan.Igent.bRViNc.1
SentinelOneStatic AI – Suspicious SFX
FortinetRiskware/BitTorrent.PUP
DeepInstinctMALICIOUS

How to remove Adware.OfferManager?

Adware.OfferManager removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment