Short Bio

This is the detection for a family of adware that typically drops a DLL in a new sub-folder of %APPDATA%\roaming. This DLL will then be loaded in explorer.exe to display pop-ups and other forms of advertisements.


Malwarebytes can remove Adware.Hicosmea without further user interaction. Removal will often require a reboot, and Malwarebytes will prompt you to do so if necessary.

Associated threats

  • PUP.Optional.Hicosmea

Cybersecurity info you can’t do without

Want to stay informed on the latest news in cybersecurity? Sign up for our newsletter and learn how to protect your computer from threats.

Select your language