Adware

Should I remove “GenPack:Adware.DNSUnlocker.H”?

Malware Removal

The GenPack:Adware.DNSUnlocker.H is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Adware.DNSUnlocker.H virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz
promotionalmaterial.info
pullinfo.info
passportinfo.info

How to determine GenPack:Adware.DNSUnlocker.H?


File Info:

crc32: EB15E45A
md5: 20105af6c264c8ed0b06b99c5e8a3a22
name: 20105AF6C264C8ED0B06B99C5E8A3A22.mlw
sha1: 4d42023c7cd6ef20a297ee03dd7b25317ed853dd
sha256: 1e0074d73635635a677704985360d1d61f72d0cde42ac37e8a9ab67a6bd14f2e
sha512: c9057e36285dd753b14f2ee112e7e8658bbaec71b08e4c2b1b1dc9e3455be14b9f5e8705a9a46ea05e96d665c2e2fe24aabc5703d141001c54451ad4b6fa8587
ssdeep: 12288:OpYk4OZ8f5ynu08E81Blq+eLe1MkcvHGZTdmTDp8MLGRRDrt:Y4Xcu3E8rlq+PncOZQnp8uGR1
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

GenPack:Adware.DNSUnlocker.H also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.8047
CynetMalicious (score: 100)
ALYacGenPack:Adware.DNSUnlocker.H
CylanceUnsafe
ZillyaAdware.Adposhel.Win32.56262
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaAdWare:Win32/Adposhel.3c359bf7
Cybereasonmalicious.6c264c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Adposhel.AR
APEXMalicious
AvastFileRepMalware
ClamAVWin.Adware.Adposhel-9786317-0
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderGenPack:Adware.DNSUnlocker.H
NANO-AntivirusTrojan.Win32.Adposhel.exwsad
MicroWorld-eScanGenPack:Adware.DNSUnlocker.H
TencentWin32.Adware.Generic.Hmhc
Ad-AwareGenPack:Adware.DNSUnlocker.H
SophosAdposhel (PUA)
ComodoApplication.Win32.AdWare.Adposhel.AO@7gephu
BitDefenderThetaAI:Packer.2666EDB01E
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.hc
FireEyeGeneric.mg.20105af6c264c8ed
EmsisoftGenPack:Adware.DNSUnlocker.H (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.Adposhel.mw
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.24001EE
MicrosoftTrojan:Win32/Occamy.C
ArcabitGenPack:Adware.DNSUnlocker.H
GDataGenPack:Adware.DNSUnlocker.H
Acronissuspicious
McAfeeArtemis!20105AF6C264
MAXmalware (ai score=100)
VBA32Adware.Adposhel
PandaTrj/Genetic.gen
RisingAdware.Adposhel!1.AF60 (CLASSIC)
YandexTrojan.GenAsa!vP7hljLGfAA
Ikarusnot-a-virus:AdWare.Adposhel
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Adposhel
AVGFileRepMalware
Paloaltogeneric.ml

How to remove GenPack:Adware.DNSUnlocker.H?

GenPack:Adware.DNSUnlocker.H removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment