Adware

Win32/Adware.Aprotect.B removal

Malware Removal

The Win32/Adware.Aprotect.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.Aprotect.B virus can do?

  • Unconventionial language used in binary resources: Korean
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Adware.Aprotect.B?


File Info:

name: D5BD78816E814E59F40D.mlw
path: /opt/CAPEv2/storage/binaries/eef138d88e30f912713ca79d1a2594e1574f536bb683326074a2d64922e32692
crc32: 2A1AD572
md5: d5bd78816e814e59f40dac47ee2efe9c
sha1: db2c06e33cbdca270f5df35e314b3a66a12e0e4e
sha256: eef138d88e30f912713ca79d1a2594e1574f536bb683326074a2d64922e32692
sha512: c617bcae68dffdd541edd66ab0432bd6eea6043a9f42865122edd4f71b8f5884d8ffe79c4c87593eec066f9671179c23f3f47b9811a072c24e916ed6695baf1a
ssdeep: 12288:v/meleMJzWRePvTT1T+Z+WM+jJo9G7dY0Xy95bpwa:v/mG/oeXVY+WMmJ4G7u+4q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AAE44C22B2E18437D1736E78CC6B82B559267E502D39B94B7BE47D0C8F3978178253E2
sha3_384: a7f2f57fe33d62c8200885da1a474a0b94f0258f14273e5f514b69d338ca48e0941abbde7d4d93e76ae80f02880b70c1
ep_bytes: 558bec83c4f0b8a8c84800e82899f7ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Win32/Adware.Aprotect.B also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Genome.4!c
MicroWorld-eScanTrojan.GenericKD.68166731
FireEyeGeneric.mg.d5bd78816e814e59
McAfeeFakeAV-PU.b
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusAdware ( 004bfa361 )
AlibabaTrojanDownloader:Win32/Genome.bbd65fc0
K7GWAdware ( 004bfa361 )
Cybereasonmalicious.33cbdc
ArcabitTrojan.Generic.D410244B
CyrenW32/ABAdware.UYIB-5608
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.Aprotect.B
APEXMalicious
KasperskyTrojan-Downloader.Win32.Genome.coan
BitDefenderTrojan.GenericKD.68166731
AvastWin32:AdwareX-gen [Adw]
TencentMalware.Win32.Gencirc.13e9eb55
EmsisoftTrojan.GenericKD.68166731 (B)
F-SecureHeuristic.HEUR/AGEN.1345934
VIPRETrojan.GenericKD.68166731
McAfee-GW-EditionBehavesLike.Win32.ObfuscatedPoly.jh
Trapminemalicious.moderate.ml.score
SophosGeneric Reputation PUA (PUA)
GoogleDetected
AviraHEUR/AGEN.1345934
Antiy-AVLTrojan[Downloader]/Win32.Genome
MicrosoftProgram:Win32/Wacapew.C!ml
ZoneAlarmTrojan-Downloader.Win32.Genome.coan
GDataTrojan.GenericKD.68166731
CynetMalicious (score: 100)
AhnLab-V3Downloader/Win.Genome.C5454931
ALYacTrojan.GenericKD.68166731
MAXmalware (ai score=84)
VBA32BScope.Trojan.Download
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R011H06GE23
RisingTrojan.Detplock!8.4A0D (TFE:5:Tqm2h02tbD)
YandexTrojan.GenAsa!QjO58X8cwoI
IkarusTrojan-Downloader.Win32.FraudLoad
MaxSecureTrojan.Malware.214089827.susgen
FortinetRiskware/Aprotect
AVGWin32:AdwareX-gen [Adw]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Win32/Adware.Aprotect.B?

Win32/Adware.Aprotect.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment