Home Malware Programs Adware NetTock

NetTock

Posted: February 19, 2014

Threat Metric

Ranking: 17,024
Threat Level: 2/10
Infected PCs: 1,131
First Seen: February 19, 2014
Last Seen: September 5, 2023
OS(es) Affected: Windows


NetTock is adware, which may affect a PC and a Web browser. NetTock may commonly be distributed and invade the computer system through packaged free software that computer users can download from unidentified download websites on the Internet. Once installed on the PC, NetTock may display unwanted pop-up advertisements, sales, deals, discount coupons and offers or the ones linked to the computer user's surfing habits. NetTock may gather the PC user's surfing data and transfer and use it with the goal to possibly show targeted advertisements. NetTock may also result in constant redirects on the Web browser to suspicious websites that were created to most likely raise website traffic and make a profit from clicks on pop-up ads and messages. NetTock may compromise all the Web browsers installed on the PC and make modifications to the default browser settings.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\NetTock\bin\NetTock.BrowserAdapter.exe File name: NetTock.BrowserAdapter.exe
Size: 95.51 KB (95512 bytes)
MD5: 8b3a115279f2e4998c2650a6cbb0be79
Detection count: 461
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\NetTock\bin
Group: Malware file
Last Updated: July 2, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{0909C19E-BD9D-44C1-AAC5-72884EAF0AD3}{3cfaf932-a9cb-4e59-99a0-fe04e9df9328}{BB54C027-0FB6-42DA-97F1-52CE16826ACB}HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{3cfaf932-a9cb-4e59-99a0-fe04e9df9328}SOFTWARE\Microsoft\Tracing\NetTock_RASAPI32SOFTWARE\Microsoft\Tracing\NetTock_RASMANCSSOFTWARE\Microsoft\Tracing\updateNetTock_RASAPI32SOFTWARE\Microsoft\Tracing\updateNetTock_RASMANCSSOFTWARE\Microsoft\Tracing\utilNetTock_RASAPI32SOFTWARE\Microsoft\Tracing\utilNetTock_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{3cfaf932-a9cb-4e59-99a0-fe04e9df9328}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cfaf932-a9cb-4e59-99a0-fe04e9df9328}Software\NetTockSOFTWARE\Wow6432Node\Microsoft\Tracing\NetTock_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\NetTock_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateNetTock_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateNetTock_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\utilNetTock_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\utilNetTock_RASMANCSSOFTWARE\Wow6432Node\NetTockSYSTEM\ControlSet001\services\eventlog\Application\Update NetTockSYSTEM\ControlSet001\services\eventlog\Application\Util NetTockSYSTEM\ControlSet001\services\Update NetTockSYSTEM\ControlSet001\services\Util NetTockSYSTEM\CurrentControlSet\services\eventlog\Application\Update NetTockSYSTEM\CurrentControlSet\services\eventlog\Application\Util NetTockSYSTEM\CurrentControlSet\services\Update NetTockSYSTEM\CurrentControlSet\services\Util NetTockHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}NetTock

Additional Information

The following directories were created:
%PROGRAMFILES%\NetTock%PROGRAMFILES(x86)%\NetTock
Loading...