Skip to main content

Adware:W32/Cinmus

Classification

Category:

Spyware

Type:

Adware

Summary

This program delivers advertising content to the user in a manner or context that may be unexpected and/or unwanted. It is usually annoying but harmless, unless it is combined with spyware or trackware.

Removal

Technical Details

Cinmus.gen detects multiple variants and components of the Cinmus adware family.

Members of this family attempt to contact remote sites and display pop-up advertisements. The following are examples of possible sites Cinmus adware can connect too:

  • https://login.zuoyoukongjuan.com
  • https://client.zuoyoukongjian.com
  • https://al.zuoyoukongjian.com

Specific variants may differ in details, such as filenames and the remote sites it contacts.

Installation

On infection, an initial driver component is dropped and registered as a driver, usually with the name acpidisk.sys. This driver creates a DLL with a TMP extension in the Windows %temp% folder, and then injects the DLL into a process.

The DLL then downloads the adware's main component from a remote site, usually from the domain chnsystem.com. The main component of Cinmus is a DLL installed as a Browser Helper Object (BHO) in Microsoft Internet Explorer.

The BHO's filename varies widely between variants. The files are usually installed to the %system32% folder. Configuration and/or data files are also dropped to the same folder, with the extensions SRG and AXZ.

Protect your devices from malware with F‑Secure Total

Protecting your devices from malicious software is essential for maintaining online security. F‑Secure Total makes this easy, helping you to secure your devices in a brilliantly simple way.

  • Award‑winning antivirus and malware protection

  • Online browsing, banking, and shopping protection

  • 24/7 online identity and data breach monitoring

  • Unlimited VPN service to safe­guard your privacy

  • Password manager with private data protection

Choose how many devices you want to protect to get started.

  • Free customer support

  • Cancel anytime

  • The trial does not obligate you to buy the product

After 30 days your subscription will renew automatically for one year at €69.99.

More Support

Community

Ask questions in our Community.

User guides

Check the user guide for instructions.

Contact Support

Chat with with or call an agent.

Submit a Sample

Submit a file or URL for analysis.