Adware

About “Adware.StartPage” infection

Malware Removal

The Adware.StartPage is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.StartPage virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Adware.StartPage?


File Info:

crc32: 365D8DB3
md5: b41b5531d707c332d7e112d053004f4e
name: B41B5531D707C332D7E112D053004F4E.mlw
sha1: 47b3001bb5442acc58e8f799cc7e3090d9a0e4bd
sha256: 8e4cba252cd88c975cfd5cb24c590c5c62f92fceff63df152bd3059128196ab7
sha512: d969e1c0487c8a107ce1a9830a3b3f2481ab017697e2d4c670da16348aff7d8db6023b0411dc0e45fc57a0fa6ee88645bd6e83f306d50bfdcc4a63fb3e8d8aac
ssdeep: 196608:5KnzbM1UX2PkpSweEIIcGZ9Ia4pKM+ICzkqE6GV3RD45MSkNPyJMAxs:D1UzYXIn9L4pKMezkqIRK5CPyuAS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName: x82cfx5ddex65d7x4e91x4fe1x606fx79d1x6280x6709x9650x516cx53f8
Comments: x6b64x5b89x88c5x7a0bx5e8fx7531 Inno Setup x6784x5efax3002
ProductName: x7ebax7ec7x54c1x4ed3x5e93x8d22x52a1x8f6fx4ef6
ProductVersion: V50
FileDescription: x7ebax7ec7x54c1x4ed3x5e93x8d22x52a1x8f6fx4ef6 Setup
Translation: 0x0804 0x0000

Adware.StartPage also known as:

Qihoo-360Generic/Trojan.PSW.11d
McAfeeArtemis!B41B5531D707
CylanceUnsafe
CyrenW32/Downloader-WebExe-based!Max
SymantecTrojan.Gen.MBT
AvastWin32:Evo-gen [Susp]
ComodoTrojWare.Win32.TrojanDownloader.VB.PMEA@4rev5s
DrWebTrojan.PWS.Wsgame.49844
ZillyaAdware.StartPage.Win32.72
InvinceaMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
AviraTR/PSW.WsGame.mlupg
GridinsoftTrojan.Win32.Gen.cc
MicrosoftTrojan:Win32/CryptInject!ml
VBA32Adware.StartPage
eGambitUnsafe.AI_Score_95%
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Adware.StartPage?

Adware.StartPage removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment