Home Browser Helper Object BargainBuddy

BargainBuddy

Posted: March 25, 2005

Threat Metric

Ranking: 8,957
Threat Level: 3/10
Infected PCs: 8,977
First Seen: July 24, 2009
Last Seen: October 9, 2023
OS(es) Affected: Windows

BargainBuddy is an Internet Explorer browser helper object that may deliver contextual advertisements based on URLs and/or search terms you enter when navigating the Internet.

www.BargainBuddy.com
www.ExactAdvertising.com

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



F:\LHC-DONNA\DONNA'S LHC PC\WINACS\ACSTRAY.EXE File name: ACSTRAY.EXE
Size: 1.47 MB (1475072 bytes)
MD5: 9f3d7c8d8d8f794c1115b3170926a0e0
Detection count: 6,703
File type: Executable File
Mime Type: unknown/EXE
Path: F:\LHC-DONNA\DONNA'S LHC PC\WINACS\ACSTRAY.EXE
Group: Malware file
Last Updated: November 7, 2022
exdXX.exe File name: exdXX.exe
Size: 36.86 KB (36864 bytes)
MD5: 9b571f4eb622096d7989dff203b0bbe1
Detection count: 97
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
adv.exe File name: adv.exe
Size: 45.05 KB (45056 bytes)
MD5: 56979b69b9ff449b792e53f7e956cecc
Detection count: 93
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
adx.exe File name: adx.exe
Size: 32.76 KB (32768 bytes)
MD5: 812def7df63838ed0be0a2b6a3fbcdb0
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
exdXX.exe File name: exdXX.exe
Size: 106.49 KB (106496 bytes)
MD5: 516592bc25193890ca2b4d34efa631d9
Detection count: 1
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009

Registry Modifications

The following newly produced Registry Values are:

CLSID{F4E04583-354E-4076-BE7D-ED6A80FD66DA}File name without pathadp.exeadv.exeadx.exebargains.exebb.exebbchk.execc_versn.dllexul.exeRun keysBargainsHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}BargainBuddy

Related Posts

Loading...