Categories: AdwarePUA

Win32:Adware-AQL [PUP] malicious file

The Win32:Adware-AQL [PUP] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Adware-AQL [PUP] virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Win32:Adware-AQL [PUP]?


File Info:

name: CEC0980865229ED75DE8.mlwpath: /opt/CAPEv2/storage/binaries/d543be9289ad7260caa95438a39c1964117ccc83649a3faec849a2a26d10ca48crc32: A80E4D05md5: cec0980865229ed75de86e2abe3cd375sha1: 27f8e513c446135b860d9bfdd4d582887d388956sha256: d543be9289ad7260caa95438a39c1964117ccc83649a3faec849a2a26d10ca48sha512: 65d86898d25cebeab4f17cd92fd246178579f89b301a71eac509f0e265df3076d35e55b825b8738e5457f302fd62eed9507d2aa408e29afa3d9984fcf383e4c5ssdeep: 3072:EthprlXj4NsrAt9y6vuyy+xb8bCofYTRlQUqJnbfLZ0+i9mt0KeIkZD:Enp5z4GrADuyX6bTYTRlQUqJnbd0+/tatype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T178F312A7E3508445EE80CD72209BE55115F23743D64CB1852EB9AE523EF3FE9E98370Asha3_384: 8f86f688e77fb47228e9f4fa93bc845ffe3322dbdd8051dadec0e284adced0b8e478a5926c269103ad1cf2d233834e3dep_bytes: 60be007041008dbe00a0feff5783cdfftimestamp: 2013-02-01 15:23:49

Version Info:

0: [No Data]

Win32:Adware-AQL [PUP] also known as:

Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Genome.mqw2
tehtris Generic.Malware
DrWeb Trojan.DownLoad3.20651
MicroWorld-eScan Gen:Trojan.Heur.kmX@vPZ4u8din
FireEye Generic.mg.cec0980865229ed7
CAT-QuickHeal PUA.Liimpact.Gen
Skyhigh BehavesLike.Win32.AdwareHotBar.cc
McAfee Artemis!CEC098086522
Cylance unsafe
Zillya Adware.AgentCRT.Win32.676
Sangfor PUP.Win32.Agent.Vrpl
K7AntiVirus Adware ( 005875d21 )
Alibaba Trojan:Win32/Injector.39f07144
K7GW Adware ( 005875d21 )
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta AI:Packer.2C777E911D
Symantec Adware.Maltrec.TS!g13
APEX Malicious
Cynet Malicious (score: 99)
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Gen:Trojan.Heur.kmX@vPZ4u8din
NANO-Antivirus Trojan.Win32.Jorik.blpxgl
SUPERAntiSpyware Trojan.Agent/Gen-Genome
Avast Win32:Adware-AQL [PUP]
Tencent Win32.Trojan.FalseSign.Vimw
Emsisoft Gen:Trojan.Heur.kmX@vPZ4u8din (B)
F-Secure Heuristic.HEUR/AGEN.1303936
VIPRE Gen:Trojan.Heur.kmX@vPZ4u8din
TrendMicro TROJ_GEN.R002C0OAO24
Trapmine malicious.high.ml.score
Sophos Generic Reputation PUA (PUA)
GData Gen:Trojan.Heur.kmX@vPZ4u8din
Jiangmin Trojan/Jorik.gnlp
Varist W32/A-576b4cea!Eldorado
Avira HEUR/AGEN.1303936
MAX malware (ai score=100)
Antiy-AVL Trojan/Win32.Loadwar
Kingsoft Win32.Troj.Unknown.a
Xcitium Application.Win32.AdWare.Loadwar.A@56s0w1
Arcabit Trojan.Heur.E29DAF
ZoneAlarm HEUR:Trojan.Win32.Generic
Microsoft PUA:Win32/Creprote
Google Detected
AhnLab-V3 Downloader/Win32.Genome.R51597
VBA32 Trojan.Loadwar
ALYac Gen:Trojan.Heur.kmX@vPZ4u8din
Malwarebytes Generic.Malware.AI.DDS
Panda Trj/Genetic.gen
TrendMicro-HouseCall TROJ_GEN.R002C0OAO24
Rising Trojan.Generic!8.C3 (CLOUD)
Yandex Trojan.GenAsa!yAu9uaLcHok
Ikarus Trojan-Dropper.Win32.Injector
Fortinet W32/Jorik_Loadwar.CP!tr
AVG Win32:Adware-AQL [PUP]
Cybereason malicious.865229
DeepInstinct MALICIOUS
alibabacloud Trojan:Win/Generic

How to remove Win32:Adware-AQL [PUP]?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

MSIL/GenKryptik.GXIZ information

The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

Malware.AI.2789448175 (file analysis)

The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

Jalapeno.1878 removal instruction

The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

How to remove “Worm.Win32.Vobfus.exmt”?

The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

About “TrojanDownloader:Win32/Beebone.JO” infection

The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago