Malware

Should I remove “MSIL/Amonetize.AF potentially unwanted”?

Malware Removal

The MSIL/Amonetize.AF potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Amonetize.AF potentially unwanted virus can do?

  • Executable code extraction
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • The binary likely contains encrypted or compressed data.

How to determine MSIL/Amonetize.AF potentially unwanted?


File Info:

crc32: CA9F9FFD
md5: 2ef28df3551f535b6b82684399023602
name: 2EF28DF3551F535B6B82684399023602.mlw
sha1: 0b978c5f6e871b9310439c43a876febf0df80edc
sha256: 8166af920675e38a929d672b8a00dccef0121d38bcdef0bd225f4d84af6b5eb2
sha512: 44ec8d9bed6bdca8345b1aefcad5c66a44438dea2a1e74b779c9e647f4e622e3bd28af0e64d9fb574880d915d419c4defc8efc76e1f409dcef41727849d0dea7
ssdeep: 3072:sncKzLDsKM3SxfRheW0SUE1h9nmyMg5U4zhprDTfpYzb1D:8cKLs3afzUE1vmU5rNgb1
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016
Assembly Version: 1.0.0.695
InternalName: installer.exe
FileVersion: 1.0.0.695
ProductVersion: 1.0.0.695
FileDescription:
OriginalFilename: installer.exe

MSIL/Amonetize.AF potentially unwanted also known as:

K7AntiVirusAdware ( 004dc60a1 )
LionicAdware.Win32.Generic.2!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader21.33345
CynetMalicious (score: 99)
ALYacApplication.Downloader.AGO
CylanceUnsafe
ZillyaTool.Downloader.Win32.3289
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:MSIL/Amonetize.d51d1688
K7GWAdware ( 004dc60a1 )
Cybereasonmalicious.3551f5
CyrenW32/S-524e6fcc!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Amonetize.AF potentially unwanted
APEXMalicious
AvastWin32:Adware-gen [Adw]
ClamAVWin.Packed.Susppack-9881847-0
Kasperskynot-a-virus:HEUR:AdWare.MSIL.Agent.gen
BitDefenderApplication.Downloader.AGO
NANO-AntivirusRiskware.Win32.Dwn.eeznyh
MicroWorld-eScanApplication.Downloader.AGO
TencentWin32.Adware.Generic.Hwww
Ad-AwareApplication.Downloader.AGO
SophosGeneric PUA AL (PUA)
ComodoApplication.MSIL.Amonetize.AF@67z1tc
BitDefenderThetaGen:NN.ZemsilF.34236.km0@a4OLQPk
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.2ef28df3551f535b
EmsisoftApplication.Downloader.AGO (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.Generic.cmik
WebrootW32.Adware.Gen
AviraADWARE/Amonetize.Gen7
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.1A06EC9
MicrosoftTrojan:Win32/Wacatac.A!ml
SUPERAntiSpywarePUP.Amonetize/Variant
GDataApplication.Downloader.AGO
AhnLab-V3PUP/Win32.Amonetize.C1350116
McAfeeArtemis!2EF28DF3551F
MAXmalware (ai score=74)
MalwarebytesPUP.Optional.Amonetize
PandaTrj/GdSda.A
YandexPUA.Agent!3IZe2aRqpL8
Ikarusnot-a-virus:AdWare.Amonetize
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/Generic
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove MSIL/Amonetize.AF potentially unwanted?

MSIL/Amonetize.AF potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment