Adware

Adware.Generic.135642 removal instruction

Malware Removal

The Adware.Generic.135642 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Generic.135642 virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Adware.Generic.135642?


File Info:

crc32: 8FA1F940
md5: 263dd2e368b6e512e71b4fb81405cb02
name: 2findmp3chartsv20.exe
sha1: 75f726400b2685042d036751654488b8a47a6440
sha256: 91cfc107c52e9fcadc9eeed1c9bc6bd7be9e25115bb61d425e3cd275a2a4b70e
sha512: 1f437155596052bf2a775cd1b00511a7c11951ee28d0fe35d11dad7a318f3d03e0a995b073c83377c0d37532c55b16fd3b3d29186b367ccbfb8fd726f73d85b0
ssdeep: 49152:L16NGGKSiVtu2Y06gxkeNHKXtmBB80SJkabWLIr00KKyCq8zosyeL:L16Nf0k2Y06BeNHStmI0ER60KKyAoWL
type: PE32 executable (GUI) Intel 80386, for MS Windows, InnoSetup self-extracting archive

Version Info:

0: [No Data]

Adware.Generic.135642 also known as:

BitDefenderAdware.Generic.135642
ArcabitAdware.Webhancer.BH
F-ProtW32/OnFlow.A
AvastWin32:Webhancer-C [PUP]
GDataAdware.Webhancer.BH
Kasperskynot-a-virus:AdWare.Win32.OnFlow
NANO-AntivirusRiskware.Win32.TrjGen.cynoxg
EmsisoftAdware.Generic.135642 (B)
F-SecureAdware.ADSPY/AdSpy.Gen
DrWebTrojan.DownLoader9.40570
FireEyeAdware.Generic.135642
SophosGeneric PUA EP (PUA)
CyrenW32/OnFlow.COZE-7613
MicrosoftTrojan:Win32/Bitrep.A
ZoneAlarmnot-a-virus:AdWare.Win32.OnFlow
MAXmalware (ai score=84)
PandaGeneric Malware
ESET-NOD32Win32/Adware.OnFlow.AA
AVGWin32:Webhancer-C [PUP]
Cybereasonmalicious.368b6e

How to remove Adware.Generic.135642?

Adware.Generic.135642 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment