Adware

Win32/Adware.ConvertAd.AFT information

Malware Removal

The Win32/Adware.ConvertAd.AFT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.ConvertAd.AFT virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Performs HTTP requests potentially not found in PCAP.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system

How to determine Win32/Adware.ConvertAd.AFT?


File Info:

name: E0962770B9FEDDB4C415.mlw
path: /opt/CAPEv2/storage/binaries/6fb8290da072917c140848899b03a02b7df279bc921cd1ef0bf4d2fc7537b4de
crc32: F66C3598
md5: e0962770b9feddb4c415192d45eeac98
sha1: 7dcf937d796af3da4a285cb303db677639373d5a
sha256: 6fb8290da072917c140848899b03a02b7df279bc921cd1ef0bf4d2fc7537b4de
sha512: a785e379cc2f36cfe6770d7084e7b2529cb71eb892ed129d7236e7a8c122f4f9aec18efdae54358bc047376a8dd0a691a145d4c19c8d604424f341566d2639f5
ssdeep: 6144:gFku6DjM48UZVWGVCvbO6J5KwDzWsotPt7oDVfbqAXS8u2iapK:gR6DjM43eGVCvi6J5Kw/Kl7EV6T2i
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BF850890D2B38177D26710BBC669CAA5C8B92B31F71354DB7AF08D680A30ED05A76F4D
sha3_384: ee06fecc66b47652260fae5ed9fe25dab315d37ad0470f214882a8531960e1c8bb009dcd624ecf3dbc690df5c858b04c
ep_bytes: e874750000e989feffff8bff558bec83
timestamp: 2016-04-02 08:40:44

Version Info:

0: [No Data]

Win32/Adware.ConvertAd.AFT also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebAdware.ClickMeIn.7031
CynetMalicious (score: 100)
FireEyeGeneric.mg.e0962770b9feddb4
ALYacTrojan.GenericKD.40550291
CylanceUnsafe
ZillyaAdware.ConvertAD.Win32.24493
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/ConvertAd.00750ef1
Cybereasonmalicious.0b9fed
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Adware.ConvertAd.AFT
APEXMalicious
Kasperskynot-a-virus:AdWare.Win32.ConvertAd.axyh
BitDefenderTrojan.GenericKD.40550291
NANO-AntivirusRiskware.Win32.ConvertAd.ebixgj
MicroWorld-eScanTrojan.GenericKD.40550291
AvastWin32:ConvertAd-AS [Adw]
TencentMalware.Win32.Gencirc.10b54651
Ad-AwareTrojan.GenericKD.40550291
EmsisoftTrojan.GenericKD.40550291 (B)
ComodoApplicUnwnt@#1bh1up18nutl2
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WKR21
McAfee-GW-EditionBehavesLike.Win32.Generic.tz
SophosGeneric ML PUA (PUA)
GDataWin32.Application.DownloadGuide.T
JiangminAdWare.ConvertAd.gpe
AviraADWARE/ConvertAd.Gen7
Antiy-AVLTrojan/Generic.ASMalwS.17C0AC2
GridinsoftRansom.Win32.Gen.sa
MicrosoftPUABundler:Win32/Pokavampo
AhnLab-V3PUP/Win32.ConvertAd.R180919
Acronissuspicious
McAfeeArtemis!E0962770B9FE
MAXmalware (ai score=83)
VBA32BScope.Backdoor.IRC.Bot
MalwarebytesPUP.Optional.ConvertAd
TrendMicro-HouseCallTROJ_GEN.R002C0WKR21
RisingTrojan.Generic@ML.80 (RDML:jJkFg11/IE9+IBor9R2q8g)
YandexTrojan.GenAsa!2whvPReEtH0
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/ConvertAd
WebrootW32.Trojan.Gen
AVGWin32:ConvertAd-AS [Adw]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Adware.ConvertAd.AFT?

Win32/Adware.ConvertAd.AFT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment