Home Malware Programs Adware Adware.PursuePoint

Adware.PursuePoint

Posted: January 30, 2014

Threat Metric

Ranking: 17,017
Threat Level: 2/10
Infected PCs: 1,216
First Seen: January 30, 2014
Last Seen: September 26, 2023
OS(es) Affected: Windows


PursuePoint Screenshot 1Adware.PursuePoint is an adware parasite that may be installed from freeware programs over the internet. Once it is loaded, Adware.PursuePoint may load several random ads where they tend to interrupt use of your system or surfing the internet. Many of the sites that Adware.PursuePoint may send you to could advertise other products and services or lead to pages that aggressively push products or services on internet surfers. Removal of Adware.PursuePoint is essential to put a stop to the annoying ads.

PursuePoint Screenshot 2PursuePoint Screenshot 3

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\PursuePoint\bin\utilPursuePoint.exe File name: utilPursuePoint.exe
Size: 101.66 KB (101664 bytes)
MD5: 179abf9669a729da480ab7b8e22ea631
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\PursuePoint\bin
Group: Malware file
Last Updated: January 30, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{3C34D780-67A3-4E14-9001-5D9E4CE42F48}{8A849661-DFEC-4C8F-ACF6-5DEA14ABDAB3}{e1578e0c-7554-4980-a160-d0f4f7d8af47}File name without path{e844e171-0702-480a-abc8-39f79c8c6126}.xpiHKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{E1578E0C-7554-4980-A160-D0F4F7D8AF47}SOFTWARE\Microsoft\Tracing\PursuePoint_RASAPI32SOFTWARE\Microsoft\Tracing\PursuePoint_RASMANCSSOFTWARE\Microsoft\Tracing\updatePursuePoint_RASAPI32SOFTWARE\Microsoft\Tracing\updatePursuePoint_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{E1578E0C-7554-4980-A160-D0F4F7D8AF47}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E1578E0C-7554-4980-A160-D0F4F7D8AF47}SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PursuePointSoftware\PursuePointSOFTWARE\Wow6432Node\Microsoft\Tracing\PursuePoint_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\PursuePoint_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updatePursuePoint_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updatePursuePoint_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{e1578e0c-7554-4980-a160-d0f4f7d8af47}SOFTWARE\Wow6432Node\PursuePointSYSTEM\ControlSet001\services\eventlog\Application\Update PursuePointSYSTEM\ControlSet001\services\Update PursuePointSYSTEM\CurrentControlSet\services\eventlog\Application\Update PursuePointSYSTEM\CurrentControlSet\services\Update PursuePoint

Additional Information

The following directories were created:
%ProgramFiles%\PursuePoint%ProgramFiles(x86)%\PursuePoint
Loading...