Adware

How to remove “MemScan:Adware.Betterinternet.BD”?

Malware Removal

The MemScan:Adware.Betterinternet.BD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MemScan:Adware.Betterinternet.BD virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.

Related domains:

www.bestoffersnetworks.com
www.byrwqs52.xyz
s9.cnzz.com

How to determine MemScan:Adware.Betterinternet.BD?


File Info:

crc32: 14D684EB
md5: 396ff6d0d42e4dc3b0b4b2378b892628
name: 396FF6D0D42E4DC3B0B4B2378B892628.mlw
sha1: f66fbb6635fd6824278bbe0da1422fbfb91fab45
sha256: 4318e4bd91ea38617b201e3dcadd38407bf1313c397b5d43538fb086c5711974
sha512: febd950f19c4e79efd88bae4b0e188883402beb30fc77852a43ab00871572ecfe70291059009a0c13bb7adcb8cea5049c8593b436fa33a30181d217cb52bcbe0
ssdeep: 1536:esGSBGlDxwSpHXMUI7tSjMYb4lnwVCSvUbTurvGNd1iYKrlmGzxuCuCyARJVyLz:lGSBGN23JYb4lwQFbTWG7YYKrlmGzTu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductVersion: 2, 0, 1, 3
PrivateBuild: A
SpecialBuild: A
FileVersion: 2, 0, 1, 3
FileDescription: The Best Offers
Translation: 0x0409 0x04e4

MemScan:Adware.Betterinternet.BD also known as:

K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebAdware.BetterInternet
CynetMalicious (score: 100)
ALYacMemScan:Adware.Betterinternet.BD
CylanceUnsafe
ZillyaAdware.BetterInternet.Win32.105
SangforAdware.Win32.BetterInternet.buxin
AlibabaAdWare:Win32/BetterInternet.318bd061
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.0d42e4
CyrenW32/BetterI.gen
SymantecAdware.Aurora
APEXMalicious
AvastWin32:BetterInternet-E [Trj]
ClamAVWin.Adware.Betterinternet-115
Kasperskynot-a-virus:AdWare.Win32.BetterInternet.bd
BitDefenderMemScan:Adware.Betterinternet.BD
NANO-AntivirusTrojan.Win32.BetterInternet.buzceu
MicroWorld-eScanMemScan:Adware.Betterinternet.BD
TencentMalware.Win32.Gencirc.114b859e
Ad-AwareMemScan:Adware.Betterinternet.BD
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaAI:Packer.6950EB181F
VIPREABetterInternet.Aurora (v)
TrendMicroAdware_AbetterInternet
FireEyeGeneric.mg.396ff6d0d42e4dc3
EmsisoftMemScan:Adware.Betterinternet.BD (B)
SentinelOneStatic AI – Suspicious PE
JiangminAdWare/BetterInternet.fk
WebrootW32.Malware.Gen
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Generic.ASMalwS.9FD84
MicrosoftTrojan:Win32/Wacatac.A!ml
SUPERAntiSpywareAdware.Best Offers Network
ZoneAlarmPacked.Multi.SuspiciousPacker.gen
GDataMemScan:Adware.Betterinternet.BD
TACHYONTrojan-Clicker/W32.Betterinternet.88064.C
AhnLab-V3Trojan/Win32.Clicker.C57854
McAfeeAdware-abetterintrnt.l.gen.a
MAXmalware (ai score=100)
VBA32AdWare.Win32.BetterInternet.c
MalwarebytesMalware.AI.2704589606
PandaTrj/Genetic.gen
TrendMicro-HouseCallAdware_AbetterInternet
RisingHack.Anti.Win32.Agent.k (CLASSIC)
YandexAdware.ABetterInternet!TpuPHXbUP30
Ikarusnot-a-virus:AdWare.Win32.BetterInternet
FortinetAdware/BetterInternet
AVGWin32:BetterInternet-E [Trj]
Paloaltogeneric.ml

How to remove MemScan:Adware.Betterinternet.BD?

MemScan:Adware.Betterinternet.BD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment