Home Malware Programs Adware Adware Generic5.ODL

Adware Generic5.ODL

Posted: December 14, 2012

Threat Metric

Ranking: 7,027
Threat Level: 2/10
Infected PCs: 17,484
First Seen: December 14, 2012
Last Seen: October 17, 2023
OS(es) Affected: Windows

Adware Generic5.ODL is an adware program that displays annoying pop-up advertisements related to the victim's browsing habits and needs on the screen of the targeted computer. These pop-up advertisements delivered by Adware Generic5.ODL include links that will direct affected PC users to deceptive or malicious website. Adware Generic5.ODL can download and install other malware threats such as Adware:Win32/Winzeni. Adware Generic5.ODL keeps track of your online activities and after installing on the vulnerable Window computer, steals the computer user's personal data and information and sends it to remote attackers.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



Setup.exe File name: Setup.exe
Size: 640.54 KB (640545 bytes)
MD5: 12713de53b8c83461c4d22a75dbaa723
Detection count: 20
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 5, 2013
fad85c3fa5e438705c9e01cf68321ca9 File name: fad85c3fa5e438705c9e01cf68321ca9
Size: 646.95 KB (646952 bytes)
MD5: fad85c3fa5e438705c9e01cf68321ca9
Detection count: 19
Group: Malware file
Last Updated: March 5, 2013
Setup.exe File name: Setup.exe
Size: 645.81 KB (645814 bytes)
MD5: 95cb6fb38032257cd902409941191a65
Detection count: 17
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 5, 2013
Setup.exe File name: Setup.exe
Size: 639.28 KB (639281 bytes)
MD5: dd8dc47fb865774b26442508f3c08669
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 5, 2013

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%WINDIR%\system32\drivers\mwescontroller.sysHKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Tracing\mweshield_RASAPI32SOFTWARE\Microsoft\Tracing\mweshield_RASMANCSSOFTWARE\Microsoft\Tracing\mweshieldup_RASAPI32SOFTWARE\Microsoft\Tracing\mweshieldup_RASMANCSSOFTWARE\mweshieldSYSTEM\ControlSet001\Enum\Root\LEGACY_MWESCONTROLLERSYSTEM\ControlSet001\Services\mwescontrollerSYSTEM\ControlSet001\Services\mweshieldSYSTEM\ControlSet001\Services\mweshieldupSYSTEM\ControlSet002\Enum\Root\LEGACY_MWESCONTROLLERSYSTEM\ControlSet002\Services\mwescontrollerSYSTEM\ControlSet002\Services\mweshieldSYSTEM\ControlSet002\Services\mweshieldupSYSTEM\CurrentControlSet\Enum\Root\LEGACY_MWESCONTROLLERSYSTEM\CurrentControlSet\Services\mwescontrollerSYSTEM\CurrentControlSet\Services\mweshieldSYSTEM\CurrentControlSet\Services\mweshieldupHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}mweshield

Additional Information

The following directories were created:
%PROGRAMFILES%\My Web Shield
Loading...