SoftwareBundler:Win32/InstallMonster information

Malware Removal

The SoftwareBundler:Win32/InstallMonster is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware - Review 2020

GridinSoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend to use GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the TRIAL period.
6-day free trial available.

What SoftwareBundler:Win32/InstallMonster virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

aleph.comparent.ru
breadice.top
www.bing.com

How to determine SoftwareBundler:Win32/InstallMonster?


File Info:

crc32: 65DCA255
md5: bbd8c81b8b81eec22c2d5f59debf0ded
name: BBD8C81B8B81EEC22C2D5F59DEBF0DED.mlw
sha1: f6f0d9b5de2d58ccd97b6eab619a4170f357f1b7
sha256: 18e8e75f6e0ef6004d3fc1774b24481463e7987da4cf33d360a3e722cb8ec9d5
sha512: cf3ab52e064582dd2fd05b42b1e9cd1e423ccedaeba50ddeb980ec6757638de51e6e4481ab203660408946f8fb9ac43fd639657c2a75b9d0a449c41c590e229d
ssdeep: 3072:Rji4Jawa5ugIPpCVw0qZlQTcrzEY/P7sgE0AY4Jlle6OIYOQYUYUUYYUTDzYYYYO:Rjuwa5dIh90qIL35M+GCgbq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Doublon
InternalName: Clipart
FileVersion: 10.2.3.4
CompanyName: Break
LegalTrademarks: Euro
ProductName: Dinar
ProductVersion: 50.6.7.80
FileDescription: Load
OriginalFilename: Peso
Translation: 0x0000 0x04e4

SoftwareBundler:Win32/InstallMonster also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Graftor.380721
FireEyeGeneric.mg.bbd8c81b8b81eec2
CAT-QuickHealAdware.Dataric.A5
McAfeePUP-FZZ
CylanceUnsafe
SangforMalware
K7AntiVirusUnwanted-Program ( 0050f7cf1 )
BitDefenderGen:Variant.Graftor.380721
K7GWUnwanted-Program ( 0050f7cf1 )
CrowdStrikewin/malicious_confidence_90% (D)
InvinceaGeneric PUA PG (PUA)
CyrenW32/S-1553b93d!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
RisingDownloader.Tovkater!8.E5CE (TFE:5:bUDZW9Ho7PM)
Ad-AwareGen:Variant.Graftor.380721
SophosGeneric PUA PG (PUA)
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.G@72ttyk
DrWebTrojan.InstallMonster.2420
McAfee-GW-EditionPUP-FZZ
EmsisoftApplication.InstallMon (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Generic.beft
AviraADWARE/InstMonster.Gen7
MAXmalware (ai score=81)
MicrosoftSoftwareBundler:Win32/InstallMonster
GridinsoftAdware.InstallCore.bot!c
ArcabitTrojan.Graftor.D5CF31
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Generic
GDataGen:Variant.Graftor.380721
CynetMalicious (score: 85)
AhnLab-V3PUP/Win32.InstallMonster.R202205
BitDefenderThetaGen:NN.ZexaF.34634.ly2@aehAHqlG
ALYacGen:Variant.Graftor.380721
VBA32BScope.Trojan.Downloader
MalwarebytesAdware.LoadMoney
ESET-NOD32a variant of Win32/TrojanDownloader.Tovkater.AK
TencentMalware.Win32.Gencirc.10b67975
YandexTrojan.GenAsa!tL9LZc7KHoI
IkarusPUA.Win32.Dlhelper
eGambitUnsafe.AI_Score_98%
FortinetW32/Generic.AP.DFF34!tr
AVGWin32:AdwareSig [Adw]
AvastWin32:AdwareSig [Adw]
Qihoo-360HEUR/QVM20.1.57EA.Malware.Gen

How to remove SoftwareBundler:Win32/InstallMonster?

SoftwareBundler:Win32/InstallMonster removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

Leave a Comment