Adware

Win32/Adware.ConvertAd.PY malicious file

Malware Removal

The Win32/Adware.ConvertAd.PY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.ConvertAd.PY virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Win32/Adware.ConvertAd.PY?


File Info:

crc32: 7C65DD7C
md5: 321b872c50705c59a1c01af4f451aea0
name: 321B872C50705C59A1C01AF4F451AEA0.mlw
sha1: 3db4c084324b0506853f1b993f517e02672be2bf
sha256: 9f3ae16deeff74ed96f21019bf829c9ef5015e88e628229350940880b2b1e536
sha512: 502f20dd740e8032314a7111a4097a0030005ce7ebcd9aee403580c9b61b45a8808fb36ab8ce36fc76539a5f18a6b2bdf909253b1cb7509a8c81e95c82fa2dd0
ssdeep: 1536:cQpQ5EP0ijnRTXJKCWbFmzEdZDIJ/6jec4DadSX9Xe5Qdg5RD:cQIURTXJKCumQD2/6jKj9O5Nf
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Win32/Adware.ConvertAd.PY also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforAdware.Win32.ConvertAd.heur
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/ConvertAd.5c42cf16
Cybereasonmalicious.4324b0
ESET-NOD32Win32/Adware.ConvertAd.PY
APEXMalicious
AvastWin32:Adware-gen [Adw]
CynetMalicious (score: 100)
Kasperskynot-a-virus:HEUR:AdWare.NSIS.ConvertAd.heur
ViRobotAdware.Convertad.85979
TencentNsis.Adware.Convertad.Lfzv
SophosGeneric PUA DN (PUA)
VIPREConvertAd
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.mc
FireEyeGeneric.mg.321b872c50705c59
SentinelOneStatic AI – Malicious PE
AviraADWARE/ConvertAd.Gen
MicrosoftTrojan:Win32/Occamy.C9F
McAfeeArtemis!321B872C5070
VBA32Adware.ConvertAd
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Adware-gen [Adw]

How to remove Win32/Adware.ConvertAd.PY?

Win32/Adware.ConvertAd.PY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment