Adware

Adware:Win32/Lollipop removal tips

Malware Removal

The Adware:Win32/Lollipop is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware:Win32/Lollipop virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Adware:Win32/Lollipop?


File Info:

crc32: 9F951193
md5: dcbd19db9771c9f08e4edbc64126312c
name: DCBD19DB9771C9F08E4EDBC64126312C.mlw
sha1: 1a6c56981671fc3e1894c0fc758c21b28289d8eb
sha256: dc870e6a87e24881ef79189cb75c57517d78bf1f65e7668a0675e996300eb710
sha512: 6507dc625a1b0145a9644707091183a77398a6d9bd60ada9d2b8beeae2b1d4090d86d3640f6727b4c7ee1cf911d4970585c6a237e9ff3078e67bc235596d72bc
ssdeep: 12288:73KE5B1/xvPCBoJzna+bZNN6iffRfgK7fFNrqLABK:7aE5RvVznpfnnOK7bA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: chevale
FileVersion: 8, 1, 2, 2
CompanyName: futxe9e
LegalTrademarks: Silverman
Comments: dxe9collette
ProductName: capacitarxeda
ProductVersion: 8, 1, 2, 2
FileDescription: extasierions
Translation: 0x0409 0x04b0

Adware:Win32/Lollipop also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen3.64233
MicroWorld-eScanGen:Heur.NaviPromo.3
FireEyeGeneric.mg.dcbd19db9771c9f0
CAT-QuickHealTrojan.Riskware
CylanceUnsafe
VIPRETrojan-Downloader.Win32.Wintrim.bl (v)
AegisLabTrojan.Win32.Lipler.kZEp
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Heur.NaviPromo.3
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b9771c
BitDefenderThetaGen:NN.ZexaF.34804.Dq0@aGlq6hci
CyrenW32/Skintrim.B!Generic
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002C0DB221
AvastWin32:Skintrim-2
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Skintrim.d5879fd6
NANO-AntivirusTrojan.Win32.Hrup.oxxys
ViRobotTrojan.Win32.A.Hrup.485376.A
TencentWin32.Trojan.Generic.Wvaz
Ad-AwareGen:Heur.NaviPromo.3
SophosGeneric PUA BK (PUA)
ComodoMalware@#37jmu0ivis0sj
F-SecureTrojan.TR/Crypt.ZPACK.Gen8
ZillyaTrojan.Hrup.Win32.43709
TrendMicroTROJ_GEN.R002C0DB221
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Heur.NaviPromo.3 (B)
IkarusTrojan.Win32.Skintrim
JiangminTrojan/Hrup.bwql
AviraTR/Crypt.ZPACK.Gen8
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftAdware:Win32/Lollipop
ArcabitTrojan.NaviPromo.3
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Heur.NaviPromo.3
CynetMalicious (score: 100)
McAfeeArtemis!DCBD19DB9771
VBA32Adware.Lollipop
MalwarebytesGeneric.Malware/Suspicious
PandaGeneric Malware
APEXMalicious
ESET-NOD32a variant of Win32/Skintrim.EP
RisingTrojan.Generic@ML.93 (RDMK:lffUMvVuA8VoLCfpR6Y+kQ)
YandexTrojan.Hrup!rto5T7iitps
SentinelOneStatic AI – Malicious PE
AVGWin32:Skintrim-2
Qihoo-360Win32/Trojan.e6d

How to remove Adware:Win32/Lollipop?

Adware:Win32/Lollipop removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment