Adware

Win32/Adware.ConvertAd.ABT removal guide

Malware Removal

The Win32/Adware.ConvertAd.ABT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.ConvertAd.ABT virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Possible date expiration check, exits too soon after checking local time
  • Authenticode signature is invalid

How to determine Win32/Adware.ConvertAd.ABT?


File Info:

name: 18C419ECFCC6FF2B93F5.mlw
path: /opt/CAPEv2/storage/binaries/008d4420a76d469d01ce6e807b891db463f89a43d62bb43ac620a7fdf01ba875
crc32: 8C883EF8
md5: 18c419ecfcc6ff2b93f5f132ce2e97f5
sha1: 0be8f5b0bb04c6526b6f01edcb101993ace55e89
sha256: 008d4420a76d469d01ce6e807b891db463f89a43d62bb43ac620a7fdf01ba875
sha512: 35c93188a4b8daec001569966d4a3c2f5495a19a12b35bc3103e036e5358243a6c503fad874a379faff1eb90f82769843803dca218d4055559e776eb7c3951f0
ssdeep: 3072:6ECi2kWwY9J/2oCHJ8VVsOaAm20H9ISN6Ue7aZ:Mi2kWwUJ/29H8aOaAmxHLI1k
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F9E3492F78E0CC37C1461E746F5A66F0C8A9E2A01EA18697936C3B7C1F726515BB8713
sha3_384: faa9b550381db00991b4fbbe854ef76f8ec7a77cc66e2a11a66f17b2a28ae20c93016f1531f2ebd3bab8e64af72f51f5
ep_bytes: e898380000e989feffff8bff558bec83
timestamp: 2015-10-28 22:57:54

Version Info:

0: [No Data]

Win32/Adware.ConvertAd.ABT also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebAdware.ClickMeIn.3978
FireEyeGeneric.mg.18c419ecfcc6ff2b
CylanceUnsafe
ZillyaAdware.CouponMarvel.Win32.792
AlibabaAdWare:Win32/ConvertAd.df9b6743
Cybereasonmalicious.0bb04c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.ConvertAd.ABT
Kasperskynot-a-virus:VHO:AdWare.Win32.ConvertAd.gen
NANO-AntivirusRiskware.Win32.ClickMeIn.dynfnz
SUPERAntiSpywarePUP.ConvertAd/Variant
AvastWin32:Adware-gen [Adw]
RisingTrojan.Generic@ML.100 (RDML:0GPhFMZEei1gPBV6rWvh4w)
SophosGeneric ML PUA (PUA)
F-SecureHeuristic.HEUR/AGEN.1109062
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXDA-AD!18C419ECFCC6
SentinelOneStatic AI – Suspicious PE
JiangminAdWare.ConvertAd.aqj
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1109062
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Win32/Wacatac.A!ml
CynetMalicious (score: 100)
McAfeeGenericRXDA-AD!18C419ECFCC6
VBA32BScope.Adware.Hpdefender
MalwarebytesPUP.Optional.ConvertAd
APEXMalicious
TencentWin32.Risk.Adware.Eans
YandexTrojan.GenAsa!BKsqCsXdD2E
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/ConvertAd
AVGWin32:Adware-gen [Adw]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Adware.ConvertAd.ABT?

Win32/Adware.ConvertAd.ABT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment