Should I remove Cyan Key?
What percent of users and experts removed it?
77% remove it23% keep it
What do people think about it?
(click star to rate)
How common is it?
Reach <0.001%
Versions
Version | Distribution |
1.0.0.0 |
100.00% |
|
Cyan Key
What is Cyan Key?
This is an adware program. Per the publishers terms, "the Software interacts with your computer by converting words on pages you view into hyperlinks that are linked to advertisements; communicating with our servers to check for new offers, the placement of offers, the date and time you install and uninstall the Software, and whether an updated version of the Software is available; monitoring and recording the domain name of each page you view, the advertisements that appear on these pages, and the advertisements that you click."
Overview
During setup, the program creates a startup registration point in Windows in order to automatically start when any user boots the PC. The primary executable is named bnsmba1f.exe. A majority of users end up uninstalling this less than a week of it being installed.
- Malware detected in the program
- Starts automatically
- Displays unwanted advertisements
- The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in Cyan Key.
bnsmba1f.exe (431059809a13573a39948a77897de7d2) has been flagged by the following 15 scanners: |
Anti-Virus software | Version | Detection |
Lavasoft Ad-Aware |
537 |
Gen:Variant.Adware.Graftor.185812 |
ALYac |
1.0.1.4 |
Gen:Variant.Adware.Graftor.185812 |
AVG |
2016.0.3015 |
Generic_r |
AVware |
1.5.0.21 |
Trojan.Win32.Generic!BT |
Baidu-International |
4.0.3.15816 |
Adware.Win32.ConvertAd.JY |
Bitdefender |
1.0.20.1140 |
Gen:Variant.Adware.Graftor.185812 |
Emsisoft Anti-Malware |
8.15.08.16.06 |
Gen:Variant.Adware.Graftor.185812 |
ESET-NOD32 |
9.11588 |
a variant of Win32/Adware.ConvertAd.JY |
Fortinet FortiGate |
8/16/2015 |
Riskware/ConvertAd |
G Data |
15.8.25 |
Gen:Variant.Adware.Graftor.185812 |
McAfee |
5600.6671 |
Artemis!431059809A13 |
MicroWorld-eScan |
16.0.0.684 |
Gen:Variant.Adware.Graftor.185812 |
Panda Antivirus |
15.08.16.06 |
Generic Suspicious |
Symantec |
8/16/2015 rev. 1 |
WS.Reputation |
VIPRE Antivirus |
40018 |
Trojan.Win32.Generic!BT |
View all 15 all detections
Program details
Installation folder: C:\users\user\appdata\local\df812fef-1429875279-34b2-6c80-485b3911c7e7
Uninstaller: "C:\users\user\appdata\Local\DF812FEF-1429875279-34B2-6C80-485B3911C7E7\uninstall.exe"
Files installed by Cyan Key
Program executable: | bnsmba1f.exe (Malware detected) |
Path: | C:\users\user\appdata\local\df812fef-1429875279-34b2-6c80-485b3911c7e7\bnsmba1f.exe |
MD5: | 431059809a13573a39948a77897de7d2 |
Additional files:
Behaviors exhibited
Startup File (All Users Run)
- bnsmBA1F.exe is loaded in the all users (HKLM) registry as a startup file name 'WinCheck' which loads as C:\users\user\appdata\Local\DF812FEF-1429875279-34B2-6C80-485B3911C7E7\bnsmBA1F.exe.
How do I remove Cyan Key?
You can uninstall Cyan Key from your computer by using the Add/Remove Program feature in the Window's Control Panel.
- On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
- Windows Vista/7/8/10: Click Uninstall a Program.
- Windows XP: Click Add or Remove Programs.
- When you find the program Cyan Key, click it, and then do one of the following:
- Windows Vista/7/8/10: Click Uninstall.
- Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
- Follow the prompts. A progress bar shows you how long it will take to remove Cyan Key.
- If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.
HOW IT STARTS
Automatically starts? Yes
(Found in the run registry)
|
|
USER ACTIONS
|
Uninstall it 77%
Keep it 23%
|
|
|
MOST USED OS
~99%
Windows 7 (SP1)
|
Geography
100.00% of installs come from the United States
Which countries install it?