Adware

Should I remove “Win32/Adware.Vapsup.BA”?

Malware Removal

The Win32/Adware.Vapsup.BA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.Vapsup.BA virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • Authenticode signature is invalid

How to determine Win32/Adware.Vapsup.BA?


File Info:

name: 5EA42852DCD63DB3EF79.mlw
path: /opt/CAPEv2/storage/binaries/e75d183d753082e323949499c8ce60f4333ef384bc44de6a996a509fa8b28035
crc32: D2B30DB1
md5: 5ea42852dcd63db3ef79861aca07843f
sha1: 6d5ea12031d39a0f369b27f43b2be8f2ff84bb55
sha256: e75d183d753082e323949499c8ce60f4333ef384bc44de6a996a509fa8b28035
sha512: ef4af1d7531ce1627288572f6efb95d939a46cd83bbb78a2094c2d350c95c25e2107a5b51d6abbdaffe67094740c63c4255bc04ebb5da98440fb73c75f9ad37e
ssdeep: 6144:TVosuN0hcph6UnVz5Wol2dU9VXzgLyYE:ZrbOph/l2dkVjoE
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1F7644B20A650D037E8760974A64B9A65B15E5E321368C4CBB3D43BCD1E7DBC6EA32F07
sha3_384: 5b9a324f1e526596ac50ca123ae2db78d92472e3c157787232cf16555e52509a8973e92f29222297a7d447ed0d992d4b
ep_bytes: 837c2408017505e8ef8c0000ff742404
timestamp: 2008-05-02 20:54:42

Version Info:

0: [No Data]

Win32/Adware.Vapsup.BA also known as:

LionicTrojan.Win32.Vapsup.kZ1I
Elasticmalicious (high confidence)
DrWebTrojan.Click.19308
MicroWorld-eScanTrojan.Zlob.7.Gen
SkyhighAdClicker-FC.f
McAfeeAdClicker-FC.f
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.Zlob.7.Gen
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Vapsup.14d0094d
CrowdStrikewin/malicious_confidence_70% (D)
ArcabitTrojan.Zlob.7.Gen
BitDefenderThetaAI:Packer.49F1785821
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Vapsup.BA
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Vapsup.erj
BitDefenderTrojan.Zlob.7.Gen
NANO-AntivirusTrojan.Win32.Vapsup.cwltba
AvastWin32:Agent-LTS [Trj]
RisingTrojan.Win32.Undef.inu (CLASSIC)
SophosGeneric ML PUA (PUA)
F-SecureTrojan-Downloader:W32/Zlob.gen!B
ZillyaTrojan.Vapsup.Win32.5225
TrendMicroADW_VAPSUP
EmsisoftTrojan.Zlob.7.Gen (B)
JiangminTrojan/Vapsup.dhw
WebrootW32.Malware.Gen
AviraADSPY/Agent.PD
Antiy-AVLTrojan/Win32.Vapsup
KingsoftWin32.Trojan.Generic.a
XcitiumApplicUnwnt.Win32.Adware.Agent.PB0@1n13i4
MicrosoftTrojan:Win32/Zlob.gen!I
ViRobotTrojan.Win32.Vapsup.331776.D
ZoneAlarmTrojan.Win32.Vapsup.erj
GDataTrojan.Zlob.7.Gen
VaristW32/Adware-Vapsup!Maximus
AhnLab-V3Trojan/Win32.Vapsup.R8899
TACHYONTrojan/W32.Vapsup.331776.B
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallADW_VAPSUP
TencentWin32.Trojan.Vapsup.Tsmw
YandexTrojan.GenAsa!4AAsRY/MoCY
IkarusTrojan.Win32.Vapsup
MaxSecureTrojan.Malware.1804113.susgen
FortinetMalware_fam.gw
AVGWin32:Agent-LTS [Trj]
DeepInstinctMALICIOUS

How to remove Win32/Adware.Vapsup.BA?

Win32/Adware.Vapsup.BA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment