Adware

Adware.Softcnapp.63 removal

Malware Removal

The Adware.Softcnapp.63 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Softcnapp.63 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Adware.Softcnapp.63?


File Info:

name: 48AA1AA9F4C2E8485DF0.mlw
path: /opt/CAPEv2/storage/binaries/016c1dc6a6f54745f4a2c58df609c4710fe44bb96d9cd5c1a1d0642d59a9d2f7
crc32: FB130B09
md5: 48aa1aa9f4c2e8485df0f27e9c220058
sha1: 74168328e5a8b0b15f256e28ef6d99cfacb9c506
sha256: 016c1dc6a6f54745f4a2c58df609c4710fe44bb96d9cd5c1a1d0642d59a9d2f7
sha512: 9fba5bc6e1cd50f8d5dde4a424c18d262bb3c1fe0b0d87fa3ff86aeced5c07a666dcd2b3c667ab4e5f9a2d3e847fe168c9c421b48bbdba0c2c9a3ba9ea4938ca
ssdeep: 12288:1qGwsTQi+PVxfXOJULlwkL3PI3qHVG8O3HBUlIId+JnYdd8jQ7GSzRepzV6cTZMK:1qGwOIqUewsb3BUeI8NYD8M7GSXcTuOp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C4059D31BA81C432E6E10036967CAB761A7CB930072A52D7F3C546BC2EB85D27E39757
sha3_384: 6b43dc4f1cdd49ba7e4a7dbb8d6d045b14bc31e76408b1cbae8513989a7325e27c53206e597dd563f74faa271c5c528b
ep_bytes: e812060000e98efeffff558bec56ff75
timestamp: 2020-08-18 06:25:57

Version Info:

CompanyName: 四川智领时代网络科技有限公司
FileDescription: 新速压缩
InternalName: 新速压缩
LegalCopyright: Copyright (C) 2020
OriginalFilename: Svcmuat.exe
ProductName: 新速压缩
ProductVersion: 1,0,8,20820
Translation: 0x0804 0x04b0

Adware.Softcnapp.63 also known as:

tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Adware.Softcnapp.63
FireEyeGeneric.mg.48aa1aa9f4c2e848
ALYacGen:Variant.Adware.Softcnapp.63
CylanceUnsafe
ZillyaAdware.Burden.Win32.2896
SangforAdware.Win32.Burden.gen
K7AntiVirusAdware ( 005631911 )
AlibabaAdWare:Win32/Softcnapp.2f18683a
K7GWAdware ( 005631911 )
Cybereasonmalicious.9f4c2e
ArcabitTrojan.Adware.Softcnapp.63
CyrenW32/Softcnapp.N.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Softcnapp.BC potentially unwanted
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Adware.Softcnapp-9879027-0
Kasperskynot-a-virus:HEUR:AdWare.Win32.Burden.gen
BitDefenderGen:Variant.Adware.Softcnapp.63
NANO-AntivirusRiskware.Win32.Softcnapp.hvjsjd
AvastWin32:Malware-gen
TencentPua:AdWare.Win32.Burden.16000081
Ad-AwareGen:Variant.Adware.Softcnapp.63
SophosGeneric PUA HE (PUA)
F-SecureHeuristic.HEUR/AGEN.1213443
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WL321
McAfee-GW-EditionBehavesLike.Win32.Generic.bh
EmsisoftGen:Variant.Adware.Softcnapp.63 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.Burden.aem
eGambitGeneric.Malware
AviraHEUR/AGEN.1213443
MAXmalware (ai score=61)
GridinsoftRansom.Win32.Miner.sa
MicrosoftTrojan:Win32/Ymacco.AB01
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Burden.gen
GDataWin32.Trojan.PSE.10RE2NB
CynetMalicious (score: 100)
McAfeeGenericRXAA-AA!48AA1AA9F4C2
VBA32BScope.Adware.Softcnapp
MalwarebytesMalware.AI.2538470271
TrendMicro-HouseCallTROJ_GEN.R002C0WL321
RisingAdware.Agent!1.C6F0 (CLASSIC)
YandexPUA.Burden!2vj5K9oc7e8
IkarusPUA.Softcnapp
MaxSecureAdware.not-a-virus.WIN32.AdWare.Burden.gen_197009
FortinetAdware/Softcnapp.BF
AVGWin32:Malware-gen
PandaTrj/CI.A
CrowdStrikewin/grayware_confidence_90% (W)

How to remove Adware.Softcnapp.63?

Adware.Softcnapp.63 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment