Malware

MSIL/Toolbar.Linkury.AJ potentially unwanted (file analysis)

Malware Removal

The MSIL/Toolbar.Linkury.AJ potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Toolbar.Linkury.AJ potentially unwanted virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSIL/Toolbar.Linkury.AJ potentially unwanted?


File Info:

name: DA35411C291477E9E10D.mlw
path: /opt/CAPEv2/storage/binaries/e56486fbef4470d8b33fa80bfd45c9e2a5e7ef4bfa0ed4b87a633dcb3b7ad22f
crc32: 9F878283
md5: da35411c291477e9e10dc43bbdd403f8
sha1: f20930f26786bf06da106e97507cd0bf07e6d5a1
sha256: e56486fbef4470d8b33fa80bfd45c9e2a5e7ef4bfa0ed4b87a633dcb3b7ad22f
sha512: d4c5013e2a92f3cead4156d90b32d87bd84754b30c0e97395805e1e82cc05d85d06b6f23460e415c07dbcb48e4b9fd84b856172d85403692c53be590b8011e6c
ssdeep: 96:dOUFNlZRq5aQzE/VvJdkNkfO6TRWRyCZ2izfMVFQ7NNwJKhamwliFDcxdPRrmrL8:7NzR0azDYR9nLvwJKAmdFgnj/rwY
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1C002C80EF394AE2BD5FF47797DB14A2067B2E996A042C299CCC8C0DDA5A33C85502F75
sha3_384: 0cfe89c6fac563b4adce2e5ca1a302a70ae14f0145132815e92e5e4b52143aa9ae534f986d7b0f220e42ce36443b826a
ep_bytes: ff250020400000000000000000000000
timestamp: 2015-01-22 14:34:49

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 1.0.0.0
InternalName: mglb7kh7.dll
LegalCopyright:
OriginalFilename: mglb7kh7.dll
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/Toolbar.Linkury.AJ potentially unwanted also known as:

BkavW32.AIDetectMalware.CS
LionicAdware.Win32.Linkury.m9d1
MicroWorld-eScanAdware.Linkury.BD
FireEyeAdware.Linkury.BD
SkyhighBehavesLike.Win32.Generic.xt
McAfeeGenericRXBP-TJ!DA35411C2914
Cylanceunsafe
VIPREAdware.Linkury.BD
SangforSuspicious.Win32.Save.a
CrowdStrikewin/grayware_confidence_100% (W)
AlibabaAdWare:MSIL/Linkury.1e274255
K7GWTrojan ( 005475011 )
K7AntiVirusTrojan ( 005475011 )
VirITAdware.Win32.Linkury.O
SymantecPUA.Smartbar
ESET-NOD32a variant of MSIL/Toolbar.Linkury.AJ potentially unwanted
APEXMalicious
ClamAVWin.Adware.Ursu-9879412-0
Kasperskynot-a-virus:HEUR:AdWare.MSIL.Linkury.chu
BitDefenderAdware.Linkury.BD
NANO-AntivirusTrojan.Win32.Linkury.dknlqw
SUPERAntiSpywarePUP.Linkury/Variant
AvastWin32:Linkury-E [PUP]
TencentTrojan.Win32.Linkury.wa
EmsisoftAdware.Linkury.BD (B)
DrWebAdware.Linkury.14
ZillyaAdware.LinkuryGen.Win32.4
Trapminesuspicious.low.ml.score
SophosLinkury Toolbar (PUA)
IkarusAdWare.Linkury
GoogleDetected
VaristW32/Linkury.F.gen!Eldorado
Antiy-AVLGrayWare[AdWare]/MSIL.Linkury.aj
MicrosoftAdware:Win32/Linkury.RS!MTB
XcitiumApplication.MSIL.Linkury.J@5xgs8l
ArcabitAdware.Linkury.BD
ViRobotAdware.Linkury.8704.EGDM
ZoneAlarmnot-a-virus:HEUR:AdWare.MSIL.Linkury.chu
GDataMSIL.Application.Linkury.A
ALYacAdware.Linkury.BD
MAXmalware (ai score=68)
MalwarebytesPUP.Optional.Linkury
RisingAdware.Linkury!1.A833 (CLASSIC)
YandexPUA.Linkury!spjJ1u4eKdw
SentinelOneStatic AI – Malicious PE
MaxSecureAdware.Linkury.BD
FortinetAdware/Linkury_CHU
AVGWin32:Linkury-E [PUP]
DeepInstinctMALICIOUS

How to remove MSIL/Toolbar.Linkury.AJ potentially unwanted?

MSIL/Toolbar.Linkury.AJ potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment