Adware

Adware.CnsMin malicious file

Malware Removal

The Adware.CnsMin is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.CnsMin virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Adware.CnsMin?


File Info:

name: 1628936D44D4B26E2E03.mlw
path: /opt/CAPEv2/storage/binaries/a2078e86f3a19ef847e1a6bd25fba9927bc06808e5f34eaf8154c7694c260dae
crc32: 3F9B663A
md5: 1628936d44d4b26e2e03dc1477ae62ea
sha1: 39773a839a7b75052d4d3282ddc6ad983e0bb4d4
sha256: a2078e86f3a19ef847e1a6bd25fba9927bc06808e5f34eaf8154c7694c260dae
sha512: 1e50d63840049a2579b4b4c34a7439e353c88dec7416276e398b83d04130e3f2b5f239588561ddcd14ed23d6d4a69ea0373f2a472f4c125948d00b658a215e31
ssdeep: 6144:P+UVPgz6n/tInqsyvNMKJuM8EW6v7qMSExhYrgSPk:P+2U6VVOgSM
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T18A447D227BD19CA1E7730D3029B5173D95EDFCB45E73E88BA3405A9D7D328C6E52820A
sha3_384: fe2145a6f1c21ea958af4f283a3b5ba61c91c54f40b134152569e3764a318d3372042784017b53bc09745d13a1b50320
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2006-04-27 06:26:31

Version Info:

Comments: Browser Extend
CompanyName: 北京三七二一科技有限公司
FileDescription: 3721
FileVersion: 1, 5, 3, 1
InternalName: CnsMin
LegalCopyright: 版权所有 (C) 2001 - 2005
LegalTrademarks:
OriginalFilename: CnsMin.dll
PrivateBuild:
ProductName: 3721 CnsMin
ProductVersion: 1, 5, 3, 1
SpecialBuild:
Translation: 0x0804 0x04b0

Adware.CnsMin also known as:

LionicRiskware.Win32.CnsMin.1!c
FireEyeGeneric.mg.1628936d44d4b26e
SkyhighBehavesLike.Win32.Ransomware.dm
McAfeeGenericRXAS-EW!1628936D44D4
MalwarebytesAdware.CnsMin
SangforAdware.Win32.Agent.gen
K7AntiVirusAdware ( 004bb3711 )
K7GWAdware ( 004bb3711 )
CrowdStrikewin/grayware_confidence_60% (D)
VirITAdware.Win32.Cdn.DQ
Elasticmalicious (high confidence)
ESET-NOD32Win32/CnsMin potentially unwanted
ClamAVWin.Adware.CNS-1
NANO-AntivirusTrojan.Win32.Cdn.dubwd
AvastWin32:AdwareX-gen [Adw]
F-SecureAdware:W32/CnsMin.S
DrWebAdware.Cdn.740
Sophos3721 (PUA)
IkarusPUA.CnsMin
ALYacHijacker.CnsMin
WebrootW32.Malware.Gen
VaristW32/Adware.MHOB-8369
MAXmalware (ai score=99)
Antiy-AVLGrayWare/Win32.CnsMin
Kingsoftmalware.kb.a.991
MicrosoftSpyware:Win32/CnsMin
XcitiumApplicUnwnt.Win32.CnsMin@44va
GDataWin32.Application.CNSHelper.B
CynetMalicious (score: 100)
AhnLab-V3Spyware/Win32.CnsMin.R91732
VBA32BScope.Adware.Cdn
GoogleDetected
Cylanceunsafe
YandexTrojan.GenAsa!uN+2DjMha94
MaxSecureTrojan.Malware.2588.susgen
FortinetRiskware/CnsMin
AVGWin32:AdwareX-gen [Adw]
DeepInstinctMALICIOUS

How to remove Adware.CnsMin?

Adware.CnsMin removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment