Adware

Win32/Adware.ConvertAd.AEU removal

Malware Removal

The Win32/Adware.ConvertAd.AEU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.ConvertAd.AEU virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Win32/Adware.ConvertAd.AEU?


File Info:

name: 86E2EE86C5D2C05F9831.mlw
path: /opt/CAPEv2/storage/binaries/4b533693c5b777fe1a9023778d267a99da3ae6922b93f06f8caedb3914af42ac
crc32: 6BAFE819
md5: 86e2ee86c5d2c05f98315dc090433586
sha1: 77eee0099e5c0e80a12849cea1eb38dc9f1f4d8e
sha256: 4b533693c5b777fe1a9023778d267a99da3ae6922b93f06f8caedb3914af42ac
sha512: c7e8a89be16a57138a87decbec079d2380539440d1bb382211260cbe77ec828f2655af51f6e2fd100b4a372bc5314f930a07c7e5ac2728644a6a84dbc8912c92
ssdeep: 3072:dQIURTXJJqw/Asnd9DPferw/gagVI31OI5i/kiirTlxzsHd78CzOeJi6eYnJR:dsjb42d9LfeUtI6WXirxpgdXqeJv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T167F30267B5C1D4DFC9AA4B3002BBFBABE2F69F0001650A5BBFA04FBB39154834625457
sha3_384: cb30fb7a811f6a4661e66e31cf8e753139d24b6d392fffab845511c79aeb969cedbbb65dd62ec54f853a7158b79fd774
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:46

Version Info:

0: [No Data]

Win32/Adware.ConvertAd.AEU also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.86e2ee86c5d2c05f
ALYacAdware.GenericKD.47509821
AlibabaAdWare:Win32/Vopak.6e0d49e1
Cybereasonmalicious.99e5c0
BaiduMulti.Threats.InArchive
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Adware.ConvertAd.AEU.gen
APEXMalicious
Paloaltogeneric.ml
Kasperskynot-a-virus:AdWare.Win32.Vopak.aood
BitDefenderAdware.GenericKD.47509821
MicroWorld-eScanAdware.GenericKD.47509821
TencentWin32.Adware.Vopak.Eddy
Ad-AwareAdware.GenericKD.47509821
EmsisoftAdware.GenericKD.47509821 (B)
DrWebAdware.ConvertAd.94
VIPREAdware.Win32.Vopak
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.cc
SophosGeneric PUA HH (PUA)
SentinelOneStatic AI – Malicious PE
GDataAdware.GenericKD.47509821
JiangminAdWare.ConvertAd.agng
AviraHEUR/AGEN.1124627
GridinsoftRansom.Win32.Gen.sa
ArcabitPUP.Adware.ConvertAd
MicrosoftPUABundler:Win32/Pokavampo
McAfeeArtemis!86E2EE86C5D2
MAXmalware (ai score=67)
VBA32AdWare.Vopak
TrendMicro-HouseCallTROJ_GEN.R002H0CKR21
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Win32/Adware.ConvertAd.AEU?

Win32/Adware.ConvertAd.AEU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment