Adware

How to remove “Win32/Adware.ConvertAd.RX”?

Malware Removal

The Win32/Adware.ConvertAd.RX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.ConvertAd.RX virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Adware.ConvertAd.RX?


File Info:

crc32: 94843086
md5: 1778a684c6d26ef39b45a64c03433a28
name: 1778A684C6D26EF39B45A64C03433A28.mlw
sha1: 5824f4d9f5835b2685d21393a90d95a74003ce04
sha256: 24c77a185a978327f285bd56fec003a4b9d7d10856af5dc79776694d266a922f
sha512: 0c131025b4ebe5aad403b6ae13052374cc8cb1fa83b4ca6fdf5ba931adb1efbabf6d0e7a83d2f40a046f7d899d2cbd797acf53d5d2a11e4c7b6457db270afa62
ssdeep: 1536:ypgpHzb9dZVX9fHMvG0D3XJ5gdLeAyNl9zKwlhvwt9Cf29o41ahfX:wgXdZt9P6D3XJ5ceAyzK2h4t9CO9o4s5
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: (c) 2014
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.0.0.0
FileDescription: install
Translation: 0x0000 0x04e4

Win32/Adware.ConvertAd.RX also known as:

LionicAdware.Win32.ConvertAd.2!c
Elasticmalicious (high confidence)
DrWebAdware.ClickMeIn.2118
ALYacAdware.GenericKD.40197866
CylanceUnsafe
SangforAdware.Win32.GenericKD.40197866
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderAdware.GenericKD.40197866
Cybereasonmalicious.4c6d26
SymantecPUA.VOPackage
ESET-NOD32Win32/Adware.ConvertAd.RX
APEXMalicious
CynetMalicious (score: 99)
Kasperskynot-a-virus:HEUR:AdWare.NSIS.ConvertAd.heur
AlibabaAdWare:Win32/ConvertAd.2329f73b
MicroWorld-eScanAdware.GenericKD.40197866
TencentWin32.Adware.Convertad.Dygu
Ad-AwareAdware.GenericKD.40197866
SophosGeneric PUA FI (PUA)
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.lc
FireEyeAdware.GenericKD.40197866
EmsisoftAdware.GenericKD.40197866 (B)
JiangminAdWare.ConvertAd.agng
WebrootPua.Vopackage
AviraADWARE/ConvertAd.Gen
MicrosoftTrojan:Win32/Occamy.C
SUPERAntiSpywarePUP.ConvertAd/Variant
GDataAdware.GenericKD.40197866
MAXmalware (ai score=95)
Paloaltogeneric.ml

How to remove Win32/Adware.ConvertAd.RX?

Win32/Adware.ConvertAd.RX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment