Adware

Should I remove “MultiPlug.Adware.BrowserHijacker.DDS”?

Malware Removal

The MultiPlug.Adware.BrowserHijacker.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MultiPlug.Adware.BrowserHijacker.DDS virus can do?

  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine MultiPlug.Adware.BrowserHijacker.DDS?


File Info:

name: 9D38466215CFAE7DDABB.mlw
path: /opt/CAPEv2/storage/binaries/b6a29ff1ad70b1c15fbd3a180c13c33b0dfc82e85b57d760dd43697ceff60331
crc32: 8AB353B4
md5: 9d38466215cfae7ddabb975e96dbd3ba
sha1: 149818aaa579b5d1c4fcc30dbb253392bc45bbf2
sha256: b6a29ff1ad70b1c15fbd3a180c13c33b0dfc82e85b57d760dd43697ceff60331
sha512: 8d75f7e37adb4aaa6be960b4613aa38f93212dbf58063c6b374fdedc57cacbcaf02c0d50c77553c42f5e07cac478a80c32b37a9b68c9d9c98cd858cb0e112ed5
ssdeep: 24576:Rwb4QJsGQlxeiWDgSXkR0Nm8ex3dHJvNdJDN7lq+PpK:vQJalxYXXkR0NLexNHJlllq+R
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DE1512133EDD8FF4E1F10A30C9D7E7AA1252E8B059434A334F644DE9E479B45E522BA8
sha3_384: 6eab11798403186c4ae7206c5527cdd6a3aa060dadd6996179ce71aaf6977e36eb421970830e76c0531d67c869a0f188
ep_bytes: 6a5c6830d94100e8df0f0000895ddc89
timestamp: 2014-09-11 00:42:28

Version Info:

CompanyName: Setup
FileDescription: Setup
FileVersion: 2.5.0.0
InternalName: Setup
LegalCopyright: Copyright (c) 2014
OriginalFilename: Setup
ProductName: Setup
ProductVersion: 2.5.0.0
Translation: 0x041d 0x0000

MultiPlug.Adware.BrowserHijacker.DDS also known as:

BkavW32.AIDetectNet.01
tehtrisGeneric.Malware
DrWebTrojan.Packed.24060
MicroWorld-eScanGen:Variant.Adware.MPlug.3
ClamAVWin.Adware.Multiplug-59536
FireEyeGeneric.mg.9d38466215cfae7d
CAT-QuickHealPua.Agent.21070
ALYacGen:Variant.Adware.MPlug.3
MalwarebytesMultiPlug.Adware.BrowserHijacker.DDS
ZillyaAdware.MultiPlug.Win32.11833
SangforTrojan.Win32.Save.a
K7AntiVirusUnwanted-Program ( 0040f93f1 )
K7GWUnwanted-Program ( 0040f93f1 )
CrowdStrikewin/grayware_confidence_100% (W)
ArcabitTrojan.Adware.MPlug.3
BitDefenderThetaGen:NN.ZexaF.36132.6u0@a8ZtNNbi
CyrenW32/A-a1c207df!Eldorado
SymantecSMG.Heur!gen
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.MultiPlug.CJ
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.MultiPlug.nbjq
BitDefenderGen:Variant.Adware.MPlug.3
NANO-AntivirusRiskware.Win32.MultiPlug.dfdzcc
SUPERAntiSpywarePUP.MultiPlug/Variant
AvastWin32:Adware-gen [Adw]
TencentAdware.Win32.Multplug.yb
EmsisoftGen:Variant.Adware.MPlug.3 (B)
F-SecurePotentialRisk.PUA/Multiplug.yva
BaiduWin32.Adware.Generic.as
VIPREGen:Variant.Adware.MPlug.3
TrendMicroTROJ_GEN.R03BC0OD723
McAfee-GW-EditionBehavesLike.Win32.MultiPlug.dc
Trapminemalicious.moderate.ml.score
SophosMultiPlug (PUA)
SentinelOneStatic AI – Suspicious PE
JiangminAdware/Agent.gbn
AviraPUA/Multiplug.yva
MAXmalware (ai score=60)
Antiy-AVLGrayWare[AdWare]/Win32.MultiPlug.nbjq
XcitiumApplication.Win32.MultiPlug.PNW@5gbu62
MicrosoftTrojan:Win32/Wacatac.A!ml
ZoneAlarmnot-a-virus:AdWare.Win32.MultiPlug.nbjq
GDataGen:Variant.Adware.MPlug.3
GoogleDetected
AhnLab-V3PUP/Win32.Generic.R120001
McAfeeMultiPlug
TACHYONTrojan-Clicker/W32.MultiPlug.960000
VBA32BScope.Trojan.Crossrider
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0OD723
RisingAdware.MultiPlug!1.A1E3 (CLASSIC)
YandexPUA.MultiPlug!ffXjmxqGVyM
Ikarusnot-a-virus:AdWare.Agent
MaxSecurenot-a-virus:.AdWare.MultiPlug.nbjq
FortinetAdware/MultiPlug
AVGWin32:Adware-gen [Adw]
DeepInstinctMALICIOUS

How to remove MultiPlug.Adware.BrowserHijacker.DDS?

MultiPlug.Adware.BrowserHijacker.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment