Home Malware Programs Potentially Unwanted Programs (PUPs) RayDownload

RayDownload

Posted: October 5, 2015

Threat Metric

Ranking: 5,396
Threat Level: 1/10
Infected PCs: 28,597
First Seen: September 18, 2015
Last Seen: October 15, 2023
OS(es) Affected: Windows

RayDownload is a tiny application of less than 1 MB that works as a download manager. This tool may appear to be useful initially, but you should not agree to install it without knowing all of its features. RayDownload is a Potentially Unwanted Program (PUP) that may have a negative impact on your web clients. Instead of assisting you by optimizing your downloads, this application may become annoying to you because it may insert additional advertising materials. According to Woodtable Technology Inc, the presence of such commercial materials is required to maintain the license of RayDownload free. However, according to most specialists, the ads are there just to generate income for the company. What is certain is that most clients are unhappy to see intrusive pop-ups, banners, interstitial ads and videos by RayDownload. The first and most noticeable negative aspect of these new commercial materials is that the users may find them on many different pages. This behavior may cause distraction and irritation because some of the ads may be placed in such a way to block some site buttons. What is more, they tend to be as eye-catching as possible. Some of the ads may lead to shopping sites, but a significant portion of the commercial materials may be totally useless. For example, they may claim that you have won the lottery, or you are the 'lucky visitor.' They also may offer you short surveys. Using these tactics, some companies may try to make you share your phone number or email address, which may afterward be used for spam campaigns. To maintain your system clean, you should consider removing the PUP.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



F:\Program Files\TData\TData.exe File name: TData.exe
Size: 135.93 KB (135936 bytes)
MD5: b5a681169fbdfc6a66c16525a5816022
Detection count: 3,356
File type: Executable File
Mime Type: unknown/exe
Path: F:\Program Files\TData\TData.exe
Group: Malware file
Last Updated: June 30, 2021
%PROGRAMFILES%\TDataDld\TData.exe File name: TData.exe
Size: 133.36 KB (133360 bytes)
MD5: 6cdd9c65d852368c6d4dae9e48009d2e
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TDataDld
Group: Malware file
Last Updated: March 26, 2016
%PROGRAMFILES%\TData\TData.exe File name: TData.exe
Size: 286.96 KB (286960 bytes)
MD5: 530666ea42d032388545ed5b13ee32d6
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TData
Group: Malware file
Last Updated: March 26, 2016
Directory\Dannie_0792080062.docx File name: Dannie_0792080062.docx
Size: 441.95 KB (441950 bytes)
MD5: dc6c46ff966795fb09bf47a153236671
Detection count: 61
Mime Type: unknown/docx
Path: Directory
Group: Malware file
Last Updated: October 2, 2015
%PROGRAMFILES%\TDataDld\TData.exe File name: TData.exe
Size: 464.38 KB (464384 bytes)
MD5: 2b9857db7cb61aad59fb5c7330359a51
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TDataDld
Group: Malware file
Last Updated: March 26, 2016
%PROGRAMFILES(x86)%\TDataDld\TData.exe File name: TData.exe
Size: 228.07 KB (228072 bytes)
MD5: 7b9f2fb89af752e9b61b48ed4d9114f0
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\TDataDld
Group: Malware file
Last Updated: March 26, 2016
%PROGRAMFILES%\TData\TData.exe File name: TData.exe
Size: 282.58 KB (282582 bytes)
MD5: d79c9744abe5b5d2ceb96d459e6d5821
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TData
Group: Malware file
Last Updated: June 14, 2016
%PROGRAMFILES%\TData\TData.exe File name: TData.exe
Size: 104.68 KB (104680 bytes)
MD5: 55cf6908d507e2fef1648fcb1743f6df
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TData
Group: Malware file
Last Updated: March 26, 2016
%PROGRAMFILES%\TDataDld\TData.exe File name: TData.exe
Size: 228.07 KB (228072 bytes)
MD5: f3133cbad9ed8a7900b23533a6bd63bd
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TDataDld
Group: Malware file
Last Updated: July 5, 2016
%PROGRAMFILES%\TDataDld\TData.exe File name: TData.exe
Size: 133.36 KB (133360 bytes)
MD5: 9236a77a66446a8f9fccb205933a908c
Detection count: 13
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TDataDld
Group: Malware file
Last Updated: March 26, 2016
%PROGRAMFILES(x86)%\TData\TData.exe File name: TData.exe
Size: 117.98 KB (117984 bytes)
MD5: c1dc13d3f18a20c31cfd5e2a10872c7a
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\TData
Group: Malware file
Last Updated: June 14, 2016
%PROGRAMFILES%\TData\TData.exe File name: TData.exe
Size: 137.41 KB (137416 bytes)
MD5: 10c804145b2214f0264e3240e7811540
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TData
Group: Malware file
Last Updated: June 30, 2016
%PROGRAMFILES%\TDataDld\TData.exe File name: TData.exe
Size: 269.54 KB (269544 bytes)
MD5: 4f61a8b9f4ff885f8f5bd832f123df82
Detection count: 4
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\TDataDld
Group: Malware file
Last Updated: March 26, 2016
829cca8b6529840346fabd9fbd77c400 File name: 829cca8b6529840346fabd9fbd77c400
Size: 613.02 KB (613024 bytes)
MD5: 829cca8b6529840346fabd9fbd77c400
Detection count: 2
Group: Malware file
Last Updated: January 5, 2021
%PROGRAMFILES(x86)%\TDataDld\TData.exe File name: TData.exe
Size: 133.36 KB (133360 bytes)
MD5: 1f8883a4e6a0bad1e8c4b0287c6dc787
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\TDataDld
Group: Malware file
Last Updated: March 26, 2016
%PROGRAMFILES(x86)%\TData\TData.exe File name: TData.exe
Size: 104.68 KB (104680 bytes)
MD5: 530e38589f36602f5105ace8dc3e6de9
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\TData
Group: Malware file
Last Updated: March 26, 2016

Registry Modifications

The following newly produced Registry Values are:

CLSID{8DD92279-9B04-4C6F-A862-EF3C24603804}HKEY..\..\..\..{RegistryKeys}SOFTWARE\ihpmserverSOFTWARE\RayDldSOFTWARE\Wow6432Node\ihpmserverSOFTWARE\Wow6432Node\RayDldSYSTEM\ControlSet001\services\ihpmServerSYSTEM\ControlSet002\services\ihpmServerSYSTEM\CurrentControlSet\services\ihpmServer

Additional Information

The following directories were created:
%PROGRAMFILES%\RayDld%PROGRAMFILES%\RayDownload%PROGRAMFILES(x86)%\RayDld%PROGRAMFILES(x86)%\RayDownload

Related Posts

Loading...