Adware

Win32/Adware.Bang5mai.I removal guide

Malware Removal

The Win32/Adware.Bang5mai.I is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.Bang5mai.I virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Adware.Bang5mai.I?


File Info:

crc32: C50B453D
md5: 296da57c725f59a381b8b57b0d621573
name: 296DA57C725F59A381B8B57B0D621573.mlw
sha1: 7cb504cec0fdeb9cca575d028c1424a279c8da89
sha256: b78155f3eaba81082f859c1ae96efad13e70dc2129559addf36312e816b5e0bd
sha512: b9aeacb19cbce5cde85584d72041dfecba3995f28283fbec4d0171aaad3cc58c9e827ea8d504f99e4c8ddfe04e8ce6ccb096e95e68a56e56f08f8114c1a036a0
ssdeep: 24576:6XtRElBM1uO5wlsKBBLkWVm++RqaCypWeFT/vcwAhNQq58raCHTzL8+XirdlP4m:Gd1urS0BLTl6FTZBmYB37T3u6JsPYMJ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright(C) 2010-2016 ggzhuansha.com All Rights Reserved.
MIMEType: application/x-adb
InternalName: adb.dll
FileVersion: 1.0.0.1
CompanyName: ggzhuansha.com
ProductName: Netscape Plugin Application Programming Interface
OLESelfRegister:
ProductVersion: 1.0.0.1
FileDescription: Netscape Plugin Application Programming Interface
OriginalFilename: adb.dll
Translation: 0x0804 0x04b0

Win32/Adware.Bang5mai.I also known as:

BkavW32.AIDetectVM.malware1
DrWebAdware.Bang5mai.5
CAT-QuickHealTrojan.Bang5Mai
ALYacTrojan.GenericKD.34189324
CylanceUnsafe
ZillyaAdware.Bang5mai.Win32.648
SangforMalware
BitDefenderTrojan.GenericKD.34189324
K7GWAdware ( 0050888a1 )
K7AntiVirusAdware ( 0050888a1 )
SymantecPUA.Gen.2
ESET-NOD32a variant of Win32/Adware.Bang5mai.I
APEXMalicious
MicroWorld-eScanTrojan.GenericKD.34189324
Ad-AwareTrojan.GenericKD.34189324
SophosGeneric PUA HM (PUA)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.296da57c725f59a3
EmsisoftTrojan.GenericKD.34189324 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftPUA:Win32/Presenoker
ArcabitTrojan.Generic.D209B00C
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.GenericKD.34189324
McAfeeArtemis!296DA57C725F
IkarusPUA.Bang5mai

How to remove Win32/Adware.Bang5mai.I?

Win32/Adware.Bang5mai.I removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment