Malware

How to remove “Win32:FileTour-DT [Adw]”?

Malware Removal

The Win32:FileTour-DT [Adw] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:FileTour-DT [Adw] virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32:FileTour-DT [Adw]?


File Info:

name: 615BB81E1EF57A23C0C6.mlw
path: /opt/CAPEv2/storage/binaries/82b0bdb88a2087b0b0afee0048d8cfb04dc8ddb0fde9489faf48cc21a7a368e2
crc32: 1E0CD04B
md5: 615bb81e1ef57a23c0c6a4260bdca19a
sha1: a133813c3aa2ae9ae8ac599a639b12d69b05d99b
sha256: 82b0bdb88a2087b0b0afee0048d8cfb04dc8ddb0fde9489faf48cc21a7a368e2
sha512: d7c9da87e4270d342874178834769fe078bd500acecb8b7600b9e49eccfbfe39625302261f80a703fc6a861ac2871ee66e268373da0830aa04e312d3908ce7fe
ssdeep: 1536:SChAm/tJCAZTdyzVb+pnyuECNUoZtl1JgX4qivBYNPLispiTrCiix:FhAIt5ZTSVb+EutyoZtlAX4qimLLpiT0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T152634A617363A4B4C41660306A6C3A75D1379DB3262F669B6B38CF642DF8712FB14E0B
sha3_384: 3c62981dde39b0d1bebfd0d224a147733da2474a846a87ed1767ba992e106e5ffa72a6316cbf2d3753a7d1394eb28026
ep_bytes: 8bff558beca1f023010085c0b940bb00
timestamp: 2004-08-04 06:14:09

Version Info:

0: [No Data]

Win32:FileTour-DT [Adw] also known as:

LionicAdware.Win32.FileTour.2!c
CAT-QuickHealPUA.Polikopir.Gen
McAfeeArtemis!615BB81E1EF5
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/FileTour.8ee3ebaa
Kasperskynot-a-virus:AdWare.Win32.FileTour.haf
AvastWin32:FileTour-DT [Adw]
McAfee-GW-EditionArtemis
MicrosoftTrojan:Win32/Wacatac.B!ml
APEXMalicious
RisingMalware.Heuristic!ET#76% (RDMK:cmRtazo6B94omyndxWX/NqYoBco3)
YandexPUA.FileTour!HViwNw+8rEw
AVGWin32:FileTour-DT [Adw]

How to remove Win32:FileTour-DT [Adw]?

Win32:FileTour-DT [Adw] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment