Adware.SweetBar
|
Description:
|
Adware
|
|
Risk Level:
|
Critical
|
|
Date of First Occurence:
|
Monday, April 14, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Adaware
Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "Adware.SweetBar"
Threat Info
View All
Detected Items
- Detected Files:
- Detected Files with variable Filenames:
MD5: 759983A88E4EEA7A304438858AD019B6 Size: 548992
%PROGRAMFILES%\Macrogaming\SweetIMBarForIE\toolbar.dll
%SystemDiskRoot%\Config.Msi\447140.rbf
%SystemDiskRoot%\Config.Msi\127a12.rbf
%SystemDiskRoot%\System Volume Information\_restore{9C8C9A42-73A8-4DDD-90B7-7358D87E3264}\RP579\A0135448.dll
%SystemDiskRoot%\My Backup -- 08-04-15 0601PM\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
d:\Programme\Macrogaming\SweetIMBarForIE\toolbar.dll
c:\Program files\Alwil Software\Avast4\toolbar.dll
%SystemDiskRoot%\System Volume Information\_restore{49E2419C-B47E-42B7-B202-DB3F0F3543DA}\RP758\A0556008.dll
%PROGRAMFILES%\Macrogaming\SweetIMBarForIE\toolbar.dll.ren
%SystemDiskRoot%\System Volume Information\_restore{2DB37729-7E03-4F82-ADEF-4057C22A22C7}\RP118\A0024160.dll
%SystemDiskRoot%\System Volume Information\_restore{9837723A-591F-4791-88A4-2ACC7081D6E5}\RP108\A0027326.dll
and next 2 variations.
Detecting items list:
- Files by Name
%sysdir%\inetcomm.exe
%sysdir%\InetSvrHelper.dll
%sysdir%\InetSvr.dll
%sysdir%\SweetSetup.exe
%ProgramFiles%\SweetBox\SweetBox.exe
%ProgramFiles%\SweetBox\SweetBrowser.exe
%ProgramFiles%\SweetBox\SweetActive.ocx
%ProgramFiles%\SweetBox\SweetStyle.dll
- Files by MD5
MD5: 759983A88E4EEA7A304438858AD019B6 Size: 548992
- Files by Directories
%ProgramFiles%\SweetBox
- Files by CLSID or Name
CLSID=68A7F9FA-A202-4D45-AABA-A10DCAC0D899
- Registry Keys
HKCR\Classes\Interface\{61297440-4879-4264-9602-59DBB717778F}
HKCR\Classes\TypeLib\{1D366026-28E1-4B07-8140-B8FB929A1C19}
HKLM\SOFTWARE\Classes\SweetBarBHO.CInetSvrHelper
HKLM\SOFTWARE\Classes\SweetBarBHO.CInetSvrHelper.1
HKLM\SOFTWARE\SweetBar
HKLM\SYSTEM\ControlSet001\Services\IPRIP
HKLM\SYSTEM\CurrentControlSet\Services\IPRIP
«
Go to Software Database