Home Malware Programs Adware MIXI.DJ Search and Toolbar

MIXI.DJ Search and Toolbar

Posted: February 11, 2013

Threat Metric

Ranking: 3,179
Threat Level: 5/10
Infected PCs: 73,769
First Seen: February 5, 2013
Last Seen: October 16, 2023
OS(es) Affected: Windows

Mixi DJ Search and Toolbar Screenshot 1Mixi DJ Search and Toolbar is an adware program that promotes an application by making some changes to the hijacked Internet browser. Mixi DJ Search and Toolbar usually comes as an inserted code to a software program that computer users may download from numerous online providers. Sometimes, Mixi DJ Search and Toolbar is advertised through online software programs and free applications. Once the program is installed, PC users are also installing Mixi DJ Search and Toolbar. In actuality, the program urges PC users if they want to exclude Mixi DJ Search and Toolbar. However, most computer users fail to notice this option because of the usual default setup run on the computer system. Mixi DJ Search will change the default search engine and home page once it is on the compromised machine. Also, the Mixi DJ Toolbar will be added to the hacked web browser. Mixi DJ Search and Toolbar will be integrated into the affected web browser as an extension or plug-in.

MIXI.DJ Search and Toolbar Screenshot 2

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\Desktop\FSBACKUP\John dungan\Users\<username>\AppData\Roaming\Mixi.DJ Addon\Updater.exe File name: Updater.exe
Size: 198.14 KB (198144 bytes)
MD5: 07713dbca146a519b943e6438b819d7f
Detection count: 7,853
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop\FSBACKUP\John dungan\Users\<username>\AppData\Roaming\Mixi.DJ Addon\Updater.exe
Group: Malware file
Last Updated: December 30, 2021
c:\Users\<username>\appdata\roaming\mixi.dj\updater.exe File name: updater.exe
Size: 205.16 KB (205160 bytes)
MD5: cd9303f2b09715c2abf74a58bd36711e
Detection count: 112
File type: Executable File
Mime Type: unknown/exe
Path: c:\Users\<username>\appdata\roaming\mixi.dj\updater.exe
Group: Malware file
Last Updated: December 30, 2021
%LOCALAPPDATA%\Mixi.DJ\cfkohmwa.dll File name: cfkohmwa.dll
Size: 519.68 KB (519680 bytes)
MD5: d2359768422248aaaf1619a58bcbcb30
Detection count: 90
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%LOCALAPPDATA%\Mixi.DJ\oknqirzs.dll File name: oknqirzs.dll
Size: 753.66 KB (753664 bytes)
MD5: dda239a573067d5accb38aa7f24834cc
Detection count: 82
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
MixiDJ_100.exe File name: MixiDJ_100.exe
Size: 604.48 KB (604488 bytes)
MD5: 530706183bfa6e3bbf2af685feded090
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 9, 2013
%LOCALAPPDATA%\Mixi.DJ\nroqymil.dll File name: nroqymil.dll
Size: 833.02 KB (833024 bytes)
MD5: 748070733ed63d726db59b8e6cedb6f6
Detection count: 51
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%USERPROFILE%\Desktop\IncredibarMixi.exe File name: IncredibarMixi.exe
Size: 1.3 MB (1302123 bytes)
MD5: 01189eb02c6aebcc7541cd86d1da744a
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: April 16, 2013
%LOCALAPPDATA%\Mixi.DJ\nuxmpsyp.dll File name: nuxmpsyp.dll
Size: 827.9 KB (827904 bytes)
MD5: d632e24a9c1d95e1c0b37f14dc0bd9b9
Detection count: 41
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%LOCALAPPDATA%\Mixi.DJ\fnuppuzm.dll File name: fnuppuzm.dll
Size: 519.68 KB (519680 bytes)
MD5: 11dc7c26192a189a90b6bd84ccf6284a
Detection count: 41
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%LOCALAPPDATA%\Mixi.DJ\epgyqjxr.dll File name: epgyqjxr.dll
Size: 495.61 KB (495616 bytes)
MD5: 968b9cdfa9feaa7278d92de512941e39
Detection count: 33
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%APPDATA%\Mixi.DJ\MixiDJ.exe File name: MixiDJ.exe
Size: 77.82 KB (77824 bytes)
MD5: 2daad873d430242b9f1443fd10fd5548
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%LOCALAPPDATA%\Mixi.DJ\xosuiyad.dll File name: xosuiyad.dll
Size: 693.76 KB (693760 bytes)
MD5: df77472e41749b726ce94c54ab4c4f07
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%LOCALAPPDATA%\Mixi.DJ\ixjntukl.dll File name: ixjntukl.dll
Size: 759.8 KB (759808 bytes)
MD5: 6031d9ccb30e59eacc05650071020488
Detection count: 21
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
%LOCALAPPDATA%\Mixi.DJ\xatkehah.dll File name: xatkehah.dll
Size: 816.12 KB (816128 bytes)
MD5: b59140dfe1256844c308db349a829c8a
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Mixi.DJ
Group: Malware file
Last Updated: June 16, 2014
Mixi_S.exe File name: Mixi_S.exe
Size: 739.76 KB (739768 bytes)
MD5: d060d66bea0b3cdcd95731e84c5dcc2a
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 23, 2013

Registry Modifications

The following newly produced Registry Values are:

CLSID{14B1B6D0-D25F-4418-94E3-EC2B5AEE9756}{2C141B4C-B5BA-4E89-BE73-F71ED4A208CF}{3408AC0D-510E-4808-8F7B-6B70B1F88534}{38F830AF-C844-48BD-86CF-75AB9A5C3FC2}{4CA33941-B476-46A4-94EB-3DBA21B2D76D}{4D6A9BBF-402C-4301-B1EF-28D04F71D761}{57C854B7-3DE0-406B-83F1-D218481BD1FA}{6390CA4B-8D70-47EA-90F5-21E2FEADD997}{794DC34A-1D5E-4205-80BE-FC9D8E19E7F8}{7D0EE142-0642-4FDD-AF73-7399C04E1041}{7E23FCAB-83EE-4012-B6A0-1EC68554956F}{888C8994-107B-4CFB-9E42-7AA96230C1E0}{8BA772A8-AC4F-4954-9B5E-433CA6DC506F}{9FD6DE57-31C7-4EB4-87AF-495DEEA4ECBD}{A2773ED4-83BD-488A-A186-73590706C916}{C3F978C3-0594-4397-B8E6-3F9D9BE6A7B9}{CA9B9C89-4662-4ADC-9C23-A452BECD5D19}{DBEFF714-9A11-45DC-80FC-B86EAE86641A}{DCABB943-792E-44C4-9029-ECBEE6265AF9}{DEFC8918-B440-4CEB-8BFD-140AE24DCABB}{F9221CC8-22DF-4CEF-B8ED-BA87F1F09878}File name without pathMixiDJ.crxmixidj.lnkHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\esrv.mixidjESrvcSOFTWARE\Classes\esrv.mixidjESrvc.1SOFTWARE\Classes\mixidj.mixidjappCoreSOFTWARE\Classes\mixidj.mixidjappCore.1SOFTWARE\Classes\mixidj.mixidjdskBndSOFTWARE\Classes\mixidj.mixidjdskBnd.1SOFTWARE\Classes\mixidj.mixidjHlprSOFTWARE\Classes\mixidj.mixidjHlpr.1SOFTWARE\Classes\Toolbar.CT3298568Software\Microsoft\Internet Explorer\Approved Extensions\{4D6A9BBF-402C-4301-B1EF-28D04F71D761}Software\Microsoft\Internet Explorer\Approved Extensions\{CA9B9C89-4662-4ADC-9C23-A452BECD5D19}Software\Microsoft\Internet Explorer\Protect Approved Extensions\{4D6A9BBF-402C-4301-B1EF-28D04F71D761}Software\Microsoft\Internet Explorer\Protect Approved Extensions\{CA9B9C89-4662-4ADC-9C23-A452BECD5D19}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{494b9726-9084-415c-a499-68c07e187244}Software\Microsoft\Internet Explorer\URLSearchHooks\{494b9726-9084-415c-a499-68c07e187244}Software\Microsoft\Internet Explorer\UrlSearchHooks\{9f97c600-ebe1-4400-8113-5f694ba26c2f}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4D6A9BBF-402C-4301-B1EF-28D04F71D761}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CA9B9C89-4662-4ADC-9C23-A452BECD5D19}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{494B9726-9084-415C-A499-68C07E187244}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4D6A9BBF-402C-4301-B1EF-28D04F71D761}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA9B9C89-4662-4ADC-9C23-A452BECD5D19}Software\Mixi.DJSoftware\mixidjSoftware\Mozilla\Firefox\Extensions\support@mixidj.comSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{117A33A9-7E61-4241-BA5F-538817719D96}Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A105B30B-D103-4781-B18C-E8DF93B6EBD0}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{494b9726-9084-415c-a499-68c07e187244}SOFTWARE\Wow6432Node\Microsoft\Tracing\Mdttitoibxjkj_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Mdttitoibxjkj_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\MyMixiTB_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\MyMixiTB_RASMANCSSYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{0D0A8E1A-ADDF-474E-B05A-44E0DD395946}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{1079F659-9154-43F7-916F-A034CCF5ECF8}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{11E7C7FA-97E3-4660-AF55-A25831561A5F}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{1B15BA64-DEE2-4E49-82AA-2DDCB457326C}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{320A97D2-0376-472D-AE28-81E107495F72}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{32B1C27F-E421-4B71-910D-AE34DCE08619}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{36C53666-079C-4F71-98D4-0FC4C0566496}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{39E98926-7BD5-49AD-AD99-F28884EABB38}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{462DBEC5-5C9F-4981-86D3-DE5B45E1F629}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{493EB9F5-B788-41A7-855C-D8FC8168BDE1}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{6402D664-9D2E-465D-89F1-7317FDC1828D}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{866FCBD7-822B-49F9-AFEE-87BF33D5E4DC}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{8A0A8552-9602-42EE-8870-B0BD8DE22ACE}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{8D95C85D-1900-4588-BAE1-9730C50F3146}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{9DFAF98C-F3FF-4C5B-82BB-1802D80C4DAC}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{BA8D3F52-C5E4-4D74-A814-EE047F26015A}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{C1FBF6A7-8ECD-4FEB-B098-6E2A65DBAE26}SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{DDC801E8-FF83-4734-98BC-EA770C8C2A88}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{0D0A8E1A-ADDF-474E-B05A-44E0DD395946}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{1079F659-9154-43F7-916F-A034CCF5ECF8}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{11E7C7FA-97E3-4660-AF55-A25831561A5F}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{1B15BA64-DEE2-4E49-82AA-2DDCB457326C}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{320A97D2-0376-472D-AE28-81E107495F72}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{32B1C27F-E421-4B71-910D-AE34DCE08619}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{36C53666-079C-4F71-98D4-0FC4C0566496}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{39E98926-7BD5-49AD-AD99-F28884EABB38}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{462DBEC5-5C9F-4981-86D3-DE5B45E1F629}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{493EB9F5-B788-41A7-855C-D8FC8168BDE1}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{6402D664-9D2E-465D-89F1-7317FDC1828D}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{866FCBD7-822B-49F9-AFEE-87BF33D5E4DC}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{8A0A8552-9602-42EE-8870-B0BD8DE22ACE}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{8D95C85D-1900-4588-BAE1-9730C50F3146}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{9DFAF98C-F3FF-4C5B-82BB-1802D80C4DAC}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{BA8D3F52-C5E4-4D74-A814-EE047F26015A}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{C1FBF6A7-8ECD-4FEB-B098-6E2A65DBAE26}SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{DDC801E8-FF83-4734-98BC-EA770C8C2A88}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{0D0A8E1A-ADDF-474E-B05A-44E0DD395946}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{1079F659-9154-43F7-916F-A034CCF5ECF8}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{11E7C7FA-97E3-4660-AF55-A25831561A5F}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{1B15BA64-DEE2-4E49-82AA-2DDCB457326C}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{32B1C27F-E421-4B71-910D-AE34DCE08619}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{36C53666-079C-4F71-98D4-0FC4C0566496}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{39E98926-7BD5-49AD-AD99-F28884EABB38}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{493EB9F5-B788-41A7-855C-D8FC8168BDE1}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{6402D664-9D2E-465D-89F1-7317FDC1828D}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{866FCBD7-822B-49F9-AFEE-87BF33D5E4DC}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{8D95C85D-1900-4588-BAE1-9730C50F3146}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{9DFAF98C-F3FF-4C5B-82BB-1802D80C4DAC}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{BA8D3F52-C5E4-4D74-A814-EE047F26015A}SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{C1FBF6A7-8ECD-4FEB-B098-6E2A65DBAE26}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}mixidjMixiDJ chrome Toolbar

Additional Information

The following directories were created:
%APPDATA%\CRMixiDJTB%APPDATA%\Mixi.DJ%AppData%\mixidj%LOCALAPPDATA%\Mixi.DJ%PROGRAMFILES%\mixidj%PROGRAMFILES(x86)%\mixidj%ProgramFiles%\MixiDJ_V44%ProgramFiles(x86)%\MixiDJ_V32%ProgramFiles(x86)%\MixiDJ_V44%ProgramFiles(x86)%\mixiedj%Temp%\CT3255406%Temp%\mt_ffx\mixidj%UserProfile%\AppData\LocalLow\mixidj
The following URL's were detected:
mixidj.com
Loading...