Home Malware Programs Adware Dynamo Combo Ads

Dynamo Combo Ads

Posted: December 29, 2014

Threat Metric

Ranking: 7,908
Threat Level: 2/10
Infected PCs: 6,860
First Seen: December 29, 2014
Last Seen: October 5, 2023
OS(es) Affected: Windows

Dynamo Combo Screenshot 1Dynamo Combo Ads are part of an adware application that could be installed by loading random freeware or bundled software apps. The Dynamo Combo Ads may be intrusive and may reduce performance of some popular web browsers. The annoyances of Dynamo Combo Ads may come to an end after conducting a complete removal of Dynamo Combo Ads and any of its related files and plugin components.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Dynamo Combo\bin\utilDynamoCombo.exe File name: utilDynamoCombo.exe
Size: 529.65 KB (529656 bytes)
MD5: 6633eecffffd28f153d704f27a67562b
Detection count: 682
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Dynamo Combo\bin
Group: Malware file
Last Updated: January 16, 2015
%PROGRAMFILES(x86)%\Dynamo Combo\bin\DynamoCombo.expext.exe File name: DynamoCombo.expext.exe
Size: 115.4 KB (115400 bytes)
MD5: 87bce3f4d7eff2f1057fd3a64663f76d
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Dynamo Combo\bin
Group: Malware file
Last Updated: January 7, 2016

Registry Modifications

The following newly produced Registry Values are:

CLSID{41C6BFC5-C528-41E6-A2F0-E12E221F6FDD}{53F00938-0214-4C62-B6D8-9E2034314EBB}{986c37a1-7b65-476f-80dc-54f80bd4b0d6}File name without pathdynamocombo[1].xmlHKEY..\..\..\..{RegistryKeys}SOFTWARE\Dynamo ComboSoftware\Microsoft\Internet Explorer\Approved Extensions\{1047B54C-B155-498B-BC43-8D9CE18C3BC6}Software\Microsoft\Internet Explorer\Approved Extensions\{986c37a1-7b65-476f-80dc-54f80bd4b0d6}Software\Microsoft\Internet Explorer\DOMStorage\dynamocombo.infoSOFTWARE\Microsoft\Tracing\dynamocombo_RASAPI32SOFTWARE\Microsoft\Tracing\dynamocombo_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{986c37a1-7b65-476f-80dc-54f80bd4b0d6}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{986c37a1-7b65-476f-80dc-54f80bd4b0d6}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1047B54C-B155-498B-BC43-8D9CE18C3BC6}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{986c37a1-7b65-476f-80dc-54f80bd4b0d6}SOFTWARE\Wow6432Node\Dynamo ComboSOFTWARE\Wow6432Node\Microsoft\Tracing\dynamocombo_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\dynamocombo_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateDynamoCombo_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateDynamoCombo_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\utilDynamoCombo_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\utilDynamoCombo_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{1047b54c-b155-498b-bc43-8d9ce18c3bc6}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{986c37a1-7b65-476f-80dc-54f80bd4b0d6}SYSTEM\ControlSet001\services\eventlog\Application\Update Dynamo ComboSYSTEM\ControlSet001\services\eventlog\Application\Util Dynamo ComboSYSTEM\ControlSet001\services\Update Dynamo ComboSYSTEM\ControlSet001\services\Util Dynamo ComboSYSTEM\ControlSet002\services\eventlog\Application\Util Dynamo ComboSYSTEM\ControlSet002\services\Util Dynamo ComboSYSTEM\CurrentControlSet\services\eventlog\Application\Update Dynamo ComboSYSTEM\CurrentControlSet\services\eventlog\Application\Util Dynamo ComboSYSTEM\CurrentControlSet\services\Update Dynamo ComboSYSTEM\CurrentControlSet\services\Util Dynamo ComboHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Dynamo Combo

Additional Information

The following directories were created:
%PROGRAMFILES%\Dynamo Combo%PROGRAMFILES(x86)%\Dynamo Combo%Temp%\Dynamo Combo
Loading...