Adware

About “NSIS/Adware.Runner.B” infection

Malware Removal

The NSIS/Adware.Runner.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What NSIS/Adware.Runner.B virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine NSIS/Adware.Runner.B?


File Info:

crc32: 15DB638A
md5: 606513bdb9d6d2e93038805dfe32fc6d
name: 606513BDB9D6D2E93038805DFE32FC6D.mlw
sha1: 02adad0aeef2cfb203ad93d59cd2c6eb9ea3a2eb
sha256: 4ce25361d097b7ad0e68e04b4a9c47c8b3c29a573904ce764abbbfd6ceee73cb
sha512: ee4866ac61bd3a0d2061ae19593ee334634f2fa62c3deeca7bb7ea55dbfdbfcc340d6e1085128d3955c748e5616413bbdf178220d757511ec50ae2a3e6497a74
ssdeep: 768:6HJd0TpH2+bQ2dUWVX9Hfv1JMWmtLEJOyuBxG0D3mjfS3XJcM1ui506l:6pgpHzb9dZVX9fHMvG0D3XJcMci500
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

NSIS/Adware.Runner.B also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop7.40513
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaAdWare:Win32/Runner.bf47159f
K7GWRiskware ( 0040eff71 )
SymantecTrojan Horse
ESET-NOD32a variant of NSIS/Adware.Runner.B
APEXMalicious
AvastFileRepMetagen [PUP]
Kasperskynot-a-virus:UDS:AdWare.Win32.Dotdo.gen
NANO-AntivirusTrojan.Nsis.Adware.fexgye
SophosGeneric PUA AC (PUA)
ComodoApplicUnwnt@#1t3d5b69x0jmw
VIPREAdware.DotDo
TrendMicroTROJ_GEN.R002C0OEH21
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.nh
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Wacatac.A!ml
AegisLabAdware.Win32.Dotdo.2!c
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Dotdo.gen
McAfeeArtemis!606513BDB9D6
MAXmalware (ai score=99)
MalwarebytesRansom.Cerber
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0OEH21
FortinetW32/Malicious_Behavior.VEX
AVGFileRepMetagen [PUP]
Paloaltogeneric.ml

How to remove NSIS/Adware.Runner.B?

NSIS/Adware.Runner.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment