Adware

Generic.Adware.ConvertAd.2EDD3BAE removal

Malware Removal

The Generic.Adware.ConvertAd.2EDD3BAE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Adware.ConvertAd.2EDD3BAE virus can do?

  • Creates RWX memory
  • Anomalous file deletion behavior detected (10+)
  • A process attempted to delay the analysis task.
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Generic.Adware.ConvertAd.2EDD3BAE?


File Info:

name: 9A3EEA89E64EDB285768.mlw
path: /opt/CAPEv2/storage/binaries/55b184922acbfbfadb068c25d58409810aedf788bfc096989bcc92fcf4f61035
crc32: C80CA03A
md5: 9a3eea89e64edb2857688b8ea1f9a1c3
sha1: 27144b1d8419169eaafd21e72209af72cf1660d6
sha256: 55b184922acbfbfadb068c25d58409810aedf788bfc096989bcc92fcf4f61035
sha512: 66ea356fa64cc8446849f6bde5ffefbb36d89876903d692e90965680bfafe6209b328a91d53942806565054de234fc8693a790f19998867a5dafc609d7b59a3d
ssdeep: 24576:g0Z/iDKRuxII5y8ZsJK2pzCmXmss1Ztvsbbtnw9zNKOvGdEvtmt:+2AxI/Hl2V1Adw7vs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CA45234276F7816EE0B81DB55BFA6E0F0A53E05DFA75866DC31C7C486B02143899EA33
sha3_384: a5ae4a81e6ec844ab9acd610a410b06b946579fbf0528efcebde8db6a7950e6a318814c9aa4ea63c42caeb4d2153ec51
ep_bytes: 81ecd4020000535556576a2033ed5e89
timestamp: 2012-02-24 19:20:09

Version Info:

0: [No Data]

Generic.Adware.ConvertAd.2EDD3BAE also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Miner.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Adware.ConvertAd.163
FireEyeGeneric.mg.9a3eea89e64edb28
McAfeeArtemis!9A3EEA89E64E
CylanceUnsafe
ZillyaAdware.ConvertAD.Win32.80414
SangforTrojan.Win32.Heuristic.ET
CrowdStrikewin/grayware_confidence_100% (W)
AlibabaTrojan:Win32/Miner.4ed3ac2e
K7GWAdware ( 0052e2431 )
K7AntiVirusAdware ( 0052e2431 )
CyrenW32/S-eb2f91b6!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Adware.ConvertAd.163
NANO-AntivirusTrojan.Win32.Crypted.eejoel
SUPERAntiSpywarePUP.ConvertAd/Variant
AvastNSIS:ConvertAd-E [Adw]
RisingTrojan.Miner!8.EA1 (TFE:1:eGAkxOHAEkJ)
EmsisoftGen:Variant.Adware.ConvertAd.163 (B)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Adload.tc
SophosGeneric PUA CH (PUA)
SentinelOneStatic AI – Malicious PE
GDataGeneric.Adware.ConvertAd.2EDD3BAE
KingsoftWin32.Troj.Miner.su.(kcloud)
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.ConvertAd.gen
MicrosoftProgram:Win32/Wacapew.C!ml
CynetMalicious (score: 100)
Acronissuspicious
VBA32BScope.Adware.ConvertAd
ALYacGeneric.Adware.ConvertAd.2EDD3BAE
MAXmalware (ai score=100)
TrendMicro-HouseCallTROJ_GEN.R002H0CKK21
TencentWin32.Trojan.Miner.Htmc
YandexTrojan.Miner!FpOLvgGS6Rg
WebrootW32.Adware.Gen
AVGNSIS:ConvertAd-E [Adw]
Cybereasonmalicious.9e64ed
PandaTrj/CI.A

How to remove Generic.Adware.ConvertAd.2EDD3BAE?

Generic.Adware.ConvertAd.2EDD3BAE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment