Malware

About “AdWare.Win32.DLBoost.bgal” infection

Malware Removal

The AdWare.Win32.DLBoost.bgal is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.DLBoost.bgal virus can do?

  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
hoof.pranked.ru
duckandbear.top
a.tomx.xyz

How to determine AdWare.Win32.DLBoost.bgal?


File Info:

crc32: 2F2E6B3A
md5: ca0b2006f8de35cf5436cd0f1399af4b
name: CA0B2006F8DE35CF5436CD0F1399AF4B.mlw
sha1: 839ababaa83e1e8aaa79335119c75ba6cc0c1694
sha256: 15f75c745de8b945b130d477286616ffd735e7ddf1356e3edaf11c66b6ae7646
sha512: fad43ea26d54cd0cb28f088c5476cf78f94059f545a468877d56482bed345ec701f2b63a3ee8970c584cd63b0aa1a4c64ac02cd09e4bcf9e2aea0b10976c6491
ssdeep: 6144:0r2R6xzYE/rjH9NGmYrXPiqEMkGF5pcEdZ9X/:e9dAnXPi9KjJZ9v
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Orange lime. All rights reserved.
InternalName: Tools manager
FileVersion: 2.3.1.4
CompanyName: Orange lime
Comments: App manager
ProductName: Istall tools manager
ProductVersion: 2.3.1.4
Translation: 0x0409 0x04b0

AdWare.Win32.DLBoost.bgal also known as:

K7AntiVirusUnwanted-Program ( 00587b2b1 )
DrWebTrojan.InstallMonster.2368
CynetMalicious (score: 100)
CAT-QuickHealPUA.MauvaiseRI.S5251627
ALYacGen:Variant.Jatif.722
CylanceUnsafe
ZillyaAdware.DLBoost.Win32.3335
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanDownloader:Win32/DLBoost.73f617d7
K7GWUnwanted-Program ( 00587b2b1 )
Cybereasonmalicious.6f8de3
CyrenW32/Tovkater.U.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32Win32/TrojanDownloader.Tovkater.EL
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6646735-0
Kasperskynot-a-virus:AdWare.Win32.DLBoost.bgal
BitDefenderGen:Variant.Jatif.722
NANO-AntivirusTrojan.Win32.InstallMonster.etfxom
MicroWorld-eScanGen:Variant.Jatif.722
TencentWin32.Adware.Dlboost.Sxeh
Ad-AwareGen:Variant.Jatif.722
SophosMal/Generic-S
Comodofls.noname@0
BitDefenderThetaGen:NN.ZexaF.34170.hy0@amNGEYhi
VIPREAmonetize (fs)
TrendMicroTROJ_GEN.R011C0PE221
McAfee-GW-EditionGenericR-KNQ!822556EFCCF3
FireEyeGeneric.mg.ca0b2006f8de35cf
EmsisoftApplication.AdLoad (A)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanDownloader.Tovkater.ai
AviraHEUR/AGEN.1108483
eGambitUnsafe.AI_Score_86%
Antiy-AVLTrojan/Generic.ASMalwS.222D42C
MicrosoftSoftwareBundler:Win32/DirectDownloader
ArcabitTrojan.Jatif.722
ZoneAlarmnot-a-virus:AdWare.Win32.DLBoost.bgal
GDataGen:Variant.Jatif.722
AhnLab-V3PUP/Win32.DLBoost.R210363
McAfeeArtemis!CA0B2006F8DE
MAXmalware (ai score=100)
VBA32Trojan.Wacatac
MalwarebytesPUP.Optional.BundleInstaller
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R011C0PE221
RisingTrojan.Generic@ML.100 (RDML:cU05s+kMUh0Mv6lH1MS/dA)
YandexTrojan.GenAsa!fhsyPjJLJo8
IkarusTrojan-Downloader.Win32.Tovkater
FortinetW32/Tovkater.EN!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove AdWare.Win32.DLBoost.bgal?

AdWare.Win32.DLBoost.bgal removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment