Adware

Adware.SwiftBrowse.10 removal guide

Malware Removal

The Adware.SwiftBrowse.10 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.SwiftBrowse.10 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Behavioural detection: Executable code extraction – unpacking
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Starts servers listening on 127.0.0.1:0
  • Enumerates running processes
  • Reads data out of its own binary image
  • A process created a hidden window
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Behavioural detection: Injection (inter-process)
  • Steals private information from local Internet browsers
  • Attempts to create or modify a Browser Helper Object

How to determine Adware.SwiftBrowse.10?


File Info:

name: A50094230A46ECC1B6F3.mlw
path: /opt/CAPEv2/storage/binaries/ab807d8fb0fdc5a7ab616251fc702f42a9724f5711bcff8209706808c2e1ba65
crc32: 75AA48A2
md5: a50094230a46ecc1b6f3b2f8391abff8
sha1: f7b824d0c781317f0d76abd9c9ba2dbf921c984b
sha256: ab807d8fb0fdc5a7ab616251fc702f42a9724f5711bcff8209706808c2e1ba65
sha512: e201791755ee638d97d3627e3f2b57586b0bccac0e5fc7f9bac8f9b6931e95f9efa446a4d8e2721160a90b5b679137e946f99f8d6ad8868430ce37571d2705cb
ssdeep: 12288:RzJp2QuG4GjeZHkwuPikQ7lKH5p5H9x1OeZHkwuziDQBlKR5psxjlf7:RLyG4GjeZEXi37l6Br1OeZEriMBlm0N1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T157D423EB0FE25277D5C6B07B0734FFADDAB5F88980D265924B661EAE3AD63C71500200
sha3_384: ca85f42a1964788d5d284c4e8078a2afe7ce0a289f0d9a955a9b02cd5039d535547b87226cbc3c57e42a821243c8d23d
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

CompanyName: Media Watch
CompanyWebsite:
FileDescription:
FileVersion: 1.1
LegalCopyright:
ProductName: Media Watch home 48
ProductVersion: 1.1
Translation: 0x0000 0x04e4

Adware.SwiftBrowse.10 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Amonetize.10
CynetMalicious (score: 100)
CAT-QuickHealAdware.BetterSurf.B5
ALYacGen:Variant.Mikey.74011
CylanceUnsafe
VIPREAdware.Bettersurf (fs)
SangforMalware.Generic-JS.Save.7cc5649c
CrowdStrikewin/grayware_confidence_100% (D)
AlibabaAdWare:Win32/Amonetize.ccea48e4
K7GWUnwanted-Program ( 0040f7f51 )
K7AntiVirusUnwanted-Program ( 0040f7f51 )
CyrenW32/Medfos.AE.gen!Eldorado
SymantecAdware.WebexpEnhanced
ESET-NOD32multiple detections
TrendMicro-HouseCallTROJ_SPNR.0BCU14
Paloaltogeneric.ml
Kasperskynot-a-virus:AdWare.Win32.BetterSurf.b
BitDefenderGen:Variant.Adware.SwiftBrowse.10
NANO-AntivirusRiskware.Win32.BetterSurf.cvrzvc
SUPERAntiSpywareAdware.BetterSurf/Variant
MicroWorld-eScanGen:Variant.Adware.SwiftBrowse.10
AvastNSIS:Amonetize-H [PUP]
TencentWin32.Adware.Bettersurf.Ljjk
EmsisoftApplication.InstallMon (A)
ComodoApplication.JS.BetterSurf.B@5c6sol
ZillyaAdware.BetterSurf.Win32.13193
TrendMicroTROJ_SPNR.0BCU14
McAfee-GW-EditionBehavesLike.Win32.AdwareBSurf.jc
FireEyeGen:Variant.Adware.SwiftBrowse.10
SophosBetterSurf (PUA)
GDataWin32.Adware.Amonetize.M
JiangminAdWare.BetterSurf.e
WebrootW32.Adware.Gen
AviraADWARE/Adware.Gen7
Antiy-AVLTrojan/Generic.ASMalwNS.2781
KingsoftWin32.Troj.BetterSurf.b.(kcloud)
ZoneAlarmnot-a-virus:AdWare.Win32.BetterSurf.b
MicrosoftTrojan:Win32/Occamy.C
SentinelOneStatic AI – Malicious PE
AhnLab-V3Adware/Win32.BetterSurf.C233448
Acronissuspicious
McAfeeArtemis!A50094230A46
VBA32Adware.Amonetize
MalwarebytesAdware.BetterSurf
APEXMalicious
RisingTrojan.Win32.Generic.17BE35A0 (C64:YzY0Og1COjyeFRbr)
YandexPUA.BetterSurf!MpB2iGrHl6k
MAXmalware (ai score=100)
FortinetAdware/BetterSurf
AVGNSIS:Amonetize-H [PUP]
Cybereasonmalicious.30a46e
PandaTrj/NsisDownloader.A

How to remove Adware.SwiftBrowse.10?

Adware.SwiftBrowse.10 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment