Home Malware Programs Adware Adware Feven 1.7

Adware Feven 1.7

Posted: October 3, 2013

Threat Metric

Ranking: 4,781
Threat Level: 2/10
Infected PCs: 112,678
First Seen: October 3, 2013
Last Seen: October 16, 2023
OS(es) Affected: Windows

Feven 1.7 is an adware program that may display pop-up advertisements, coupons and sponsored links via a pop-up box on social networking and online shopping websites that Internet users are visiting. Feven 1.7 pop-up advertisements may be displayed as boxes, which encompass numerous available coupons, or as underlined keywords, which when clicked may deliver a pop-up advertisements that state to be sent to the web user by Feven 1.7. When installed on the PC, Feven 1.7 may insert an extension, add-on or plug-in for Internet Explorer, Mozilla Firefox and Google Chrome when web users install a variety of freeware and shareware programs, such as video recording/streaming, download-managers or PDF creators, that had packaged into their installation Feven 1.7. When PC users install these freeware and shareware software products, they may also install Feven 1.7 on the computer system. Whenever the computer user will visit any social networking or online shopping website, Feven 1.7 may display a 'See Similar' button on product images, which when clicked may display pop-up ads by Feven 1.7. Feven 1.7 may also show advertising banners on the websites that PC users are visiting, and as they browse the web, Feven 1.7 may display coupons and other deals available on a variety of websites.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\Freeven pro 1.2\Freeven pro 1.2-codedownloader.exe File name: Freeven pro 1.2-codedownloader.exe
Size: 482.15 KB (482152 bytes)
MD5: c567ad15cf3cd949205d4666589f5bf1
Detection count: 527
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Freeven pro 1.2
Group: Malware file
Last Updated: February 1, 2020
%PROGRAMFILES%\Fre_Ven_s Pro 23\d2a7f241-093e-41bd-9633-fa3bf07bbd13-5.exe File name: d2a7f241-093e-41bd-9633-fa3bf07bbd13-5.exe
Size: 458.08 KB (458088 bytes)
MD5: ad95b52bba3d5e6edacd672ff65a8bd6
Detection count: 494
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES%\Fre_Ven_s Pro 23\d2a7f241-093e-41bd-9633-fa3bf07bbd13-2.exe File name: d2a7f241-093e-41bd-9633-fa3bf07bbd13-2.exe
Size: 362.85 KB (362856 bytes)
MD5: 54fd9ef523b1e71ff5451f2a0286050c
Detection count: 480
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES%\Fre_Ven_s Pro 23\d2a7f241-093e-41bd-9633-fa3bf07bbd13-4.exe File name: d2a7f241-093e-41bd-9633-fa3bf07bbd13-4.exe
Size: 837.48 KB (837480 bytes)
MD5: aa84b4395128d2ca697fd5b72d6d24cf
Detection count: 466
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES%\Freeven pro 1.2\Uninstall.exe File name: Uninstall.exe
Size: 83.3 KB (83304 bytes)
MD5: 671f3b8566ed28a554c4b45d895b3cd9
Detection count: 433
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES%\Fre_Ven_s Pro 23\Fre_Ven_s Pro 23-codedownloader.exe File name: Fre_Ven_s Pro 23-codedownloader.exe
Size: 511.84 KB (511848 bytes)
MD5: 1a3dd168e5a93598dc9c62f786d09640
Detection count: 429
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES%\Fre_Ven_s Pro 23\d2a7f241-093e-41bd-9633-fa3bf07bbd13-3.exe File name: d2a7f241-093e-41bd-9633-fa3bf07bbd13-3.exe
Size: 1.89 MB (1898344 bytes)
MD5: 6e17a6cca27d758940a582c4b3b420e9
Detection count: 426
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES%\Freeven pro 1.2\4f55154a-7b41-4e84-ba05-c4955e42c81e-5.exe File name: 4f55154a-7b41-4e84-ba05-c4955e42c81e-5.exe
Size: 282.98 KB (282984 bytes)
MD5: b04192145ed158f6cbd2072e6ea00f7e
Detection count: 340
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\4f55154a-7b41-4e84-ba05-c4955e42c81e-4.exe File name: 4f55154a-7b41-4e84-ba05-c4955e42c81e-4.exe
Size: 801.64 KB (801640 bytes)
MD5: 57a37f9af64cdb9d58e70e3a4efd8e84
Detection count: 326
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Fre_Ven_s Pro 23\cae26e13-3b6b-49e7-a744-e13e63ef196e-5.exe File name: cae26e13-3b6b-49e7-a744-e13e63ef196e-5.exe
Size: 463.2 KB (463208 bytes)
MD5: c082ca1a6dafacb38799cf09906210bc
Detection count: 297
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\Freeven pro 1.2-nova.exe File name: Freeven pro 1.2-nova.exe
Size: 559.97 KB (559976 bytes)
MD5: b60ccc2390784d2c53e17e770cd930f1
Detection count: 293
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\3a5251b6-001c-41b9-abed-e5533a7352ad-2.exe File name: 3a5251b6-001c-41b9-abed-e5533a7352ad-2.exe
Size: 361.32 KB (361320 bytes)
MD5: 89bc81dccdf129119b42a788c783a368
Detection count: 283
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\3a5251b6-001c-41b9-abed-e5533a7352ad-4.exe File name: 3a5251b6-001c-41b9-abed-e5533a7352ad-4.exe
Size: 832.36 KB (832360 bytes)
MD5: 1ebe31ede8d1ad15dc985070c16f4eb3
Detection count: 274
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\Uninstall.exe File name: Uninstall.exe
Size: 83.3 KB (83304 bytes)
MD5: 313237325be3deceec079c352c25863a
Detection count: 267
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Fre_Ven_s Pro 23\Fre_Ven_s Pro 23-nova.exe File name: Fre_Ven_s Pro 23-nova.exe
Size: 596.32 KB (596328 bytes)
MD5: a5d03f5b01d19156bb39159a0fc0d786
Detection count: 262
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Fre_Ven_s Pro 23\cae26e13-3b6b-49e7-a744-e13e63ef196e-2.exe File name: cae26e13-3b6b-49e7-a744-e13e63ef196e-2.exe
Size: 363.88 KB (363880 bytes)
MD5: 93be6b65f3c918989214b58e1d1e59b1
Detection count: 255
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Fre_Ven_s Pro 23
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\Uninstall.exe File name: Uninstall.exe
Size: 83.3 KB (83304 bytes)
MD5: 1e345730b1f864809405125ed36e3530
Detection count: 251
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: March 21, 2020
%PROGRAMFILES(x86)%\Freeven pro 1.2\Uninstall.exe File name: Uninstall.exe
Size: 83.3 KB (83304 bytes)
MD5: 4bde3b570645fe88bbb6a2c7c7474032
Detection count: 248
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: July 7, 2020
%PROGRAMFILES(x86)%\Freeven pro 1.2\3a5251b6-001c-41b9-abed-e5533a7352ad-3.exe File name: 3a5251b6-001c-41b9-abed-e5533a7352ad-3.exe
Size: 1.89 MB (1892200 bytes)
MD5: 381aca4649900db00ea8adb0df62727f
Detection count: 248
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\Freeven pro 1.2-nova.exe File name: Freeven pro 1.2-nova.exe
Size: 591.2 KB (591208 bytes)
MD5: 3c8bd8325dfa32fc60877ce5ae8acf1b
Detection count: 248
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\3a5251b6-001c-41b9-abed-e5533a7352ad-5.exe File name: 3a5251b6-001c-41b9-abed-e5533a7352ad-5.exe
Size: 303.97 KB (303976 bytes)
MD5: ec7c655e3c77acc7ed790442323616f9
Detection count: 244
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014
%PROGRAMFILES(x86)%\Freeven pro 1.2\Freeven pro 1.2-nova.exe File name: Freeven pro 1.2-nova.exe
Size: 559.97 KB (559976 bytes)
MD5: b0eae236a97814cdbf25c7476823ae94
Detection count: 176
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Freeven pro 1.2
Group: Malware file
Last Updated: June 6, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{11111111-1111-1111-1111-110311851132}{11111111-1111-1111-1111-110411051194}{11111111-1111-1111-1111-110411901104}{11111111-1111-1111-1111-110411901110}{11111111-1111-1111-1111-110411901112}{11111111-1111-1111-1111-110511161178}{11111111-1111-1111-1111-110511161180}{11111111-1111-1111-1111-110511161182}{22222222-2222-2222-2222-220322852232}{22222222-2222-2222-2222-220422052294}{22222222-2222-2222-2222-220422902204}{22222222-2222-2222-2222-220422902210}{22222222-2222-2222-2222-220422902212}{22222222-2222-2222-2222-220522162278}{22222222-2222-2222-2222-220522162280}{22222222-2222-2222-2222-220522162282}{44444444-4444-4444-4444-440344854432}{44444444-4444-4444-4444-440444054494}{44444444-4444-4444-4444-440444904404}{44444444-4444-4444-4444-440444904412}{44444444-4444-4444-4444-440544164478}{44444444-4444-4444-4444-440544164480}{44444444-4444-4444-4444-440544164482}{44444444-4444-4444-4444-440544164484}{55555555-5555-5555-5555-550355855532}{55555555-5555-5555-5555-550455055594}{55555555-5555-5555-5555-550455905504}{55555555-5555-5555-5555-550455905510}{55555555-5555-5555-5555-550455905512}{55555555-5555-5555-5555-550555165578}{55555555-5555-5555-5555-550555165580}{55555555-5555-5555-5555-550555165582}{55555555-5555-5555-5555-550555165584}{66666666-6666-6666-6666-660366856632}{66666666-6666-6666-6666-660466056694}{66666666-6666-6666-6666-660466906604}{66666666-6666-6666-6666-660466906610}{66666666-6666-6666-6666-660466906612}{66666666-6666-6666-6666-660566166678}{66666666-6666-6666-6666-660566166680}{66666666-6666-6666-6666-660566166682}{66666666-6666-6666-6666-660566166684}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\Crossrider\onBeforeNavigate\49004Software\AppDataLow\Software\Crossrider\onBeforeNavigate\49010Software\AppDataLow\Software\Crossrider\onBeforeNavigate\49012Software\AppDataLow\Software\Crossrider\onBeforeNavigate\51678Software\AppDataLow\Software\Crossrider\onBeforeNavigate\51680Software\AppDataLow\Software\Crossrider\onBeforeNavigate\51682Software\AppDataLow\Software\Crossrider\onBeforeNavigate\51684Software\AppDataLow\Software\Crossrider\onRequest\49004Software\AppDataLow\Software\Crossrider\onRequest\49010Software\AppDataLow\Software\Crossrider\onRequest\49012Software\AppDataLow\Software\Crossrider\onRequest\51678Software\AppDataLow\Software\Crossrider\onRequest\51680Software\AppDataLow\Software\Crossrider\onRequest\51682Software\AppDataLow\Software\Crossrider\onRequest\51684Software\AppDataLow\Software\Feven 1.5Software\AppDataLow\Software\Feven 1.7Software\AppDataLow\Software\Feven 1.8Software\AppDataLow\Software\fivenSOFTWARE\Classes\CrossriderApp0038532.BHOSOFTWARE\Classes\CrossriderApp0038532.BHO.1SOFTWARE\Classes\CrossriderApp0038532.SandboxSOFTWARE\Classes\CrossriderApp0038532.Sandbox.1SOFTWARE\Classes\CrossriderApp0040594.BHOSOFTWARE\Classes\CrossriderApp0040594.BHO.1SOFTWARE\Classes\CrossriderApp0040594.SandboxSOFTWARE\Classes\CrossriderApp0040594.Sandbox.1SOFTWARE\Classes\CrossriderApp0049004.BHOSOFTWARE\Classes\CrossriderApp0049004.BHO.1SOFTWARE\Classes\CrossriderApp0049004.SandboxSOFTWARE\Classes\CrossriderApp0049004.Sandbox.1SOFTWARE\Classes\CrossriderApp0049010.BHOSOFTWARE\Classes\CrossriderApp0049010.BHO.1SOFTWARE\Classes\CrossriderApp0049010.SandboxSOFTWARE\Classes\CrossriderApp0049010.Sandbox.1SOFTWARE\Classes\CrossriderApp0049012.BHOSOFTWARE\Classes\CrossriderApp0049012.BHO.1SOFTWARE\Classes\CrossriderApp0049012.SandboxSOFTWARE\Classes\CrossriderApp0049012.Sandbox.1SOFTWARE\Classes\CrossriderApp0051678.BHOSOFTWARE\Classes\CrossriderApp0051678.BHO.1SOFTWARE\Classes\CrossriderApp0051678.SandboxSOFTWARE\Classes\CrossriderApp0051678.Sandbox.1SOFTWARE\Classes\CrossriderApp0051680.BHOSOFTWARE\Classes\CrossriderApp0051680.BHO.1SOFTWARE\Classes\CrossriderApp0051680.SandboxSOFTWARE\Classes\CrossriderApp0051680.Sandbox.1SOFTWARE\Classes\CrossriderApp0051682.BHOSOFTWARE\Classes\CrossriderApp0051682.BHO.1SOFTWARE\Classes\CrossriderApp0051682.SandboxSOFTWARE\Classes\CrossriderApp0051682.Sandbox.1SOFTWARE\Classes\CrossriderApp0051684.BHOSOFTWARE\Classes\CrossriderApp0051684.BHO.1SOFTWARE\Classes\CrossriderApp0051684.SandboxSOFTWARE\Classes\CrossriderApp0051684.Sandbox.1Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Feven 1.5Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Feven 1.8Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\fivenSOFTWARE\Feven 1.7Software\InstalledBrowserExtensions\FevenSoftware\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110311851132}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110411051194}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110411901104}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110411901110}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110411901112}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511161178}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511161180}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511161182}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511161184}Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{11111111-1111-1111-1111-110411901112}Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0bee6a7d-a814-408f-8375-4dd3cc994684}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1097fd5d-9c22-4435-b5cc-fa8e49fc1c6c}Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37b7f4cb-9986-4ea3-95d9-5a9f3cdea17c}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4698f449-4303-4063-b1a0-7f6f641d96a4}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49a17fbf-808d-46aa-b9eb-a082f4904b9c}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c9375f9-1e1b-407f-8d8f-1fb99f8bd1f6}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{642b35f2-100c-4f05-9be0-8aad82096b25}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67c41f5c-9b20-47e8-87b7-8dee34e7fde7}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{688abbc0-75d5-4164-86f9-88925df62eec}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96e1672a-2b36-4437-b4dd-e5e0ad5d2589}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99b0d5ce-8c5d-4fb2-9d15-d9765b396292}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9a7b8c7a-9bfc-465a-adb3-ccdcff113090}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{acc5cd0b-a95e-41fe-91e6-21956484426f}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c5c5ed0e-4901-48a9-9f8d-a4ec9aa9ed21}Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d8f9448b-260a-45f5-93c0-c6ee2e73e73f}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e477cd12-e3e5-43e1-8be0-9fccf88aa4e9}Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e6935b73-d31c-4730-9f0f-ba1872680ccd}SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Feven 1.5-bg.exeSOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Feven 1.7-bg.exeSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-chromeinstaller.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-chromeinstaller.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-codedownloader.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-codedownloader.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-enabler.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-enabler.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-firefoxinstaller.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-firefoxinstaller.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-updater.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Feven 1.7-updater.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Feven 1.7-chromeinstallerSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Feven 1.7-codedownloaderSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Feven 1.7-enablerSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Feven 1.7-firefoxinstallerSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Feven 1.7-updaterSoftware\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901108}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901112}SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110411051194}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311851132}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110411051194}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110411901104}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110411901110}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110411901112}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511161178}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511161180}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511161182}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311851132}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411901104}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411901110}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411901112}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511161178}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511161180}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511161182}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511161184}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110411901112}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511161178}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511161182}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511161184}SOFTWARE\Wow6432Node\Feven 1.5SOFTWARE\Wow6432Node\Feven 1.7SOFTWARE\Wow6432Node\Feven 1.8SOFTWARE\Wow6432Node\fivenSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1097fd5d-9c22-4435-b5cc-fa8e49fc1c6c}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33aa6a92-b34a-498b-beee-f12467eb4598}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37b7f4cb-9986-4ea3-95d9-5a9f3cdea17c}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4698f449-4303-4063-b1a0-7f6f641d96a4}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{483be760-e712-4c0a-a79e-de636779fcfc}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49a17fbf-808d-46aa-b9eb-a082f4904b9c}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c9375f9-1e1b-407f-8d8f-1fb99f8bd1f6}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{642b35f2-100c-4f05-9be0-8aad82096b25}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67c41f5c-9b20-47e8-87b7-8dee34e7fde7}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{688abbc0-75d5-4164-86f9-88925df62eec}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96e1672a-2b36-4437-b4dd-e5e0ad5d2589}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99b0d5ce-8c5d-4fb2-9d15-d9765b396292}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9a7b8c7a-9bfc-465a-adb3-ccdcff113090}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{acc5cd0b-a95e-41fe-91e6-21956484426f}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c5c5ed0e-4901-48a9-9f8d-a4ec9aa9ed21}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d85e8ccf-0fd1-44f5-875b-418bfe3112dd}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d8f9448b-260a-45f5-93c0-c6ee2e73e73f}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e477cd12-e3e5-43e1-8be0-9fccf88aa4e9}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e6935b73-d31c-4730-9f0f-ba1872680ccd}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e7108df3-338e-433c-b502-57fcf69de5f2}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f574a7ca-bfed-4a26-b91b-15bf74939a17}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Feven 1.5-bg.exeSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Feven 1.7-bg.exeSoftware\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901108}Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901112}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110411901112}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511161178}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511161182}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511161184}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Feven 1.5Feven 1.7Feven 1.8

Additional Information

The following directories were created:
%PROGRAMFILES%\Feven 1.5%PROGRAMFILES%\Feven 1.8%PROGRAMFILES%\Feven 2.5%PROGRAMFILES%\free ven%PROGRAMFILES(X86)%\Feven 1.5%PROGRAMFILES(X86)%\free ven%PROGRAMFILES(x86)%\Feven 1.8%PROGRAMFILES(x86)%\Feven 2.5%PROGRAMFILES(x86)%\fiven%ProgramFiles%\Feven 1.7%ProgramFiles%\Feven Pro 1.1%ProgramFiles(x86)%\Feven 1.7%ProgramFiles(x86)%\Feven Pro 1.1%USERPROFILE%\AppData\LocalLow\Feven 1.5%USERPROFILE%\AppData\LocalLow\Feven 1.8
The following URL's were detected:
Feven 1.5Feven 1.7Feven 2Feven Pro
Loading...