Adware

MSIL/Adware.Outsurf.A removal guide

Malware Removal

The MSIL/Adware.Outsurf.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Adware.Outsurf.A virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MSIL/Adware.Outsurf.A?


File Info:

name: 4305CB0631352ACB66DA.mlw
path: /opt/CAPEv2/storage/binaries/263aabc9d751b740cba21f071de9e7117dbec83e1e26e9c40fe7668f4e8b192f
crc32: 7D47EAC4
md5: 4305cb0631352acb66da38241a45889d
sha1: 6ae6ef090b7a459a9428f5bd9f1a6b851f17de68
sha256: 263aabc9d751b740cba21f071de9e7117dbec83e1e26e9c40fe7668f4e8b192f
sha512: ef91f0f4c8bfa0c3be057bf2af66ef2aafc8cbf941ee59594dac743febea1ae87e2dea1246a6994abc2a5459c5211bc84af2a8ca0d1bb310878d58b2ace725b1
ssdeep: 49152:4T0NmYJd0G5/7aS9sigKbFAvxBqvHrxIUAFgEdyTwSIK/dijyQy3Z+ely1Pt8:4QN+yFATqTxIUA3fydi9K+tpt8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10A266D15724CA17DD0EA26369573A2418B3BAEB1B5335D574BF4784C8F3E8409E3AB0B
sha3_384: 0188723d1e2d09a332b3ed826762f0a5b6f22f00f93d04d3717872d411abc41a8f1e189a9427cae8e70a6afa953d0a79
ep_bytes: 558bec83c4f0535657b8ccd06c00e8e5
timestamp: 2021-11-16 14:10:21

Version Info:

CompanyName: CHIP Digital GmbH
FileDescription: CHIP Secured Installer
FileVersion: 1.0.8.0
LegalCopyright: Copyright 2021 CHIP Digital GmbH
ProductVersion: 1.0.8.0
Translation: 0x0407 0x04e4

MSIL/Adware.Outsurf.A also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.4305cb0631352acb
SkyhighGenericRXQX-CF!4305CB063135
McAfeeGenericRXQX-CF!4305CB063135
MalwarebytesPUP.Optional.ChipDe
ZillyaAdware.Outsurf.Win32.1
CrowdStrikewin/grayware_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Adware.Outsurf.A
SophosGeneric Reputation PUA (PUA)
DrWebAdware.Covus.107
EmsisoftApplication.Downloader (A)
SentinelOneStatic AI – Malicious PE
WebrootW32.Adware.Gen
GoogleDetected
VaristW32/Softonic.M.gen!Eldorado
Antiy-AVLTrojan/Win32.Generic
MicrosoftPUA:Win32/YongyuFeed
CynetMalicious (score: 100)
VBA32TScope.Trojan.Delf
Cylanceunsafe
RisingPUF.SoftonicDownloader!8.ED (TFE:5:ZOj1KFhyz7N)
IkarusPUA.SoftonicDownloader
FortinetRiskware/DownloadSponsor
DeepInstinctMALICIOUS

How to remove MSIL/Adware.Outsurf.A?

MSIL/Adware.Outsurf.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment