Home Malware Programs Potentially Unwanted Programs (PUPs) SnapMyScreen

SnapMyScreen

Posted: October 28, 2014

Threat Metric

Ranking: 1,181
Threat Level: 1/10
Infected PCs: 51,557
First Seen: October 28, 2014
Last Seen: October 17, 2023
OS(es) Affected: Windows

SnapMyScreen is a potentially unwanted program (PUP) that offers the functions of taking screenshots of what's on your computer screen or desktop. As a toolbar, SnapMyScreen offers various quick functions of quick capture and snapping your screen where you can select and crop images displayed on your computer screen for quick saving. Computer users taking full advantage of all SnapMyScreen features may be required to obtain the SnapMyScreen supporting application. Otherwise, SnapMyScreen is part of your web browser application's add-on components and can be disabled or removed through your browser settings. SnapMyScreen was created and marketed by Mindspark Interactive Network, known for many other add-on components and toolbars for popular web browsers.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{0023203D-1EE3-4FFB-8C31-7E142FC5CA32}{1405C496-0E77-453D-A629-A2D45E2C5BAC}{14522BE0-421D-4804-BF47-883129E82ABB}{1500187C-0661-43B1-9765-AC0C01B0592E}{1A327208-15F5-4C84-BB37-AEFDB2E5B049}{26307A86-BF6D-485F-9859-875385C961D9}{292C13FB-0482-4E57-91C6-A23FBD80BB54}{2bd24259-5294-4e0d-8469-27ce1158c272}{2F64F67F-3ADE-49FE-95D1-511667B1679A}{3e991f5f-77b8-4e48-ba4e-7ba426ffb036}{4422543C-9F04-4E29-B29A-9E009F660ED8}{491F0A4E-B416-4C15-8AC7-EC9305C816A8}{4BE1D37F-2316-4857-9B2F-A523883F38B8}{56c33cec-cd9d-4656-8900-379b4bfe3190}{5E1904ED-A147-490E-A643-21A084E45B1C}{64DEC467-9869-4695-BF50-4F5B76A0F10E}{6807DB38-4598-4C86-AD26-444994F377D4}{692E8C91-3456-4DFE-9E3F-3BE70FBDF712}{6b1c6575-d21f-4902-a026-09c119c0c87e}{6c7b31f7-a830-4c86-a7a1-b2e1b1253547}{755052BA-D5FD-4152-AB3E-DB447A9D9EC8}{76ce4e76-6620-4ed3-9372-a4cf8b3b119f}{7C34AB4E-65CE-4DFB-8F79-854A4AAF0AD1}{7E5AE580-3435-4D29-B7F3-2957102DBF65}{8032b822-5453-479b-ae28-47d2b62de44d}{80385B90-FB28-4942-9E64-07653DB82859}{82c80e87-9daa-4b04-8455-aac9ea10f2b0}{86B37BFC-233A-4D67-B3BA-60559DEBAF57}{88521B9F-6F51-479B-990D-04FFC83453C0}{960B20A4-2C34-4AF8-B280-E45F9BE27500}{9646c642-4bbc-49b9-b332-f1073541e3e1}{a7567cad-49ed-4aed-94a8-4dcc24895222}{AA398903-C818-4EEA-92D4-44AE17838787}{aec668ad-ff7e-46b9-b11f-4a6b297e4cd2}{B1C3A46D-8934-4338-9D0D-68560227C984}{b8d6859e-e323-412c-89ff-9b05d262749a}{B9C39A03-DBC3-4158-BB1B-3ED9F1C98129}{BD238C78-0312-4E81-B0F7-8E96D21FA57A}{bd3b52cc-c53d-49b5-bceb-84b18ec2f48d}{bdffe389-a538-42f1-b36b-cbfb78e2d7fc}{c4d86c62-bcee-4886-9fb9-34b1db677726}{CAA1A27E-E33D-4D25-A24F-618D516FB671}{cd2389ad-e520-4db8-b436-fc082ee7d98c}{D61A691F-FCC2-4B11-9D2B-FDBDE39BE8CF}{D675A3DA-42CF-4D3D-A6C4-51688AF2C0E3}{DD50941D-708B-4434-ABA0-FDC9578513CF}{E18CB616-56DD-4C51-9C3A-71D637DEA5BE}{E24A46F2-943A-4E2B-ACF2-2EFF4D8250FA}{E259193B-1D00-42A0-8E66-87DFE3EE0BA5}{E41A6F86-420F-45E2-9237-6AAA2C72380B}{E942057E-BFE8-493D-98DB-681B15EF8ABD}{ED5C7EBB-E72B-4333-A546-F4944D982C58}{EFA0DFB6-66E5-4081-B607-BF6542818156}{F282368A-F145-4C0C-8691-B4DBF6DAEFCE}{f3b5e712-c267-49e0-8dfd-5b182ff08d90}File name without pathhttp_snapmyscreen.dl.myway.com_0.localstoragehttp_snapmyscreen.dl.myway.com_0.localstorage-journalhttp_snapmyscreen.dl.tb.ask.com_0.localstoragehttp_snapmyscreen.dl.tb.ask.com_0.localstorage-journalHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\SnapMyScreen_bfSOFTWARE\Google\Chrome\NativeMessagingHosts\com.mindspark.snapmyscreen_bfSoftware\Microsoft\Internet Explorer\Approved Extensions\{2BD24259-5294-4E0D-8469-27CE1158C272}Software\Microsoft\Internet Explorer\Approved Extensions\{3E991F5F-77B8-4E48-BA4E-7BA426FFB036}Software\Microsoft\Internet Explorer\Approved Extensions\{CD2389AD-E520-4DB8-B436-FC082EE7D98C}Software\Microsoft\Internet Explorer\DOMStorage\snapmyscreen.dl.myway.comSOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0023203d-1ee3-4ffb-8c31-7e142fc5ca32}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1eab99ef-d357-4d1a-b347-ee231b4141c4}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{755052ba-d5fd-4152-ab3e-db447a9d9ec8}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8032b822-5453-479b-ae28-47d2b62de44d}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e2e2622d-480c-4123-aed5-3e7740ad3d6d}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f7ea4bcc-6913-4fd3-88e8-3627671a1c77}Software\Microsoft\Internet Explorer\SearchScopes\{1f0dedf9-40da-40ad-ab2f-e538573fa7fc}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{cd2389ad-e520-4db8-b436-fc082ee7d98c}SOFTWARE\Microsoft\Tracing\SnapMyScreen_RASAPI32SOFTWARE\Microsoft\Tracing\SnapMyScreen_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{2bd24259-5294-4e0d-8469-27ce1158c272}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{3e991f5f-77b8-4e48-ba4e-7ba426ffb036}SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7ff60b80-2fbd-4411-91fb-d211ab728664}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2BD24259-5294-4E0D-8469-27CE1158C272}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3E991F5F-77B8-4E48-BA4E-7BA426FFB036}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CD2389AD-E520-4DB8-B436-FC082EE7D98C}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2BD24259-5294-4E0D-8469-27CE1158C272}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E991F5F-77B8-4E48-BA4E-7BA426FFB036}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CD2389AD-E520-4DB8-B436-FC082EE7D98C}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F3B5E712-C267-49E0-8DFD-5B182FF08D90}SOFTWARE\Microsoft\Windows\CurrentVersion\Run\SnapMyScreenSOFTWARE\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen AppIntegrator 32-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen AppIntegrator 64-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen EPM SupportSOFTWARE\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen Search Scope MonitorSoftware\SnapMyScreenSoftware\SnapMyScreen_bfSOFTWARE\Wow6432Node\Google\Chrome\NativeMessagingHosts\com.mindspark.snapmyscreen_bfSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0023203d-1ee3-4ffb-8c31-7e142fc5ca32}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1eab99ef-d357-4d1a-b347-ee231b4141c4}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{755052ba-d5fd-4152-ab3e-db447a9d9ec8}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8032b822-5453-479b-ae28-47d2b62de44d}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e2e2622d-480c-4123-aed5-3e7740ad3d6d}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f7ea4bcc-6913-4fd3-88e8-3627671a1c77}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{1f0dedf9-40da-40ad-ab2f-e538573fa7fc}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{cd2389ad-e520-4db8-b436-fc082ee7d98c}SOFTWARE\Wow6432Node\Microsoft\Tracing\SnapMyScreen_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\SnapMyScreen_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{2bd24259-5294-4e0d-8469-27ce1158c272}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{3e991f5f-77b8-4e48-ba4e-7ba426ffb036}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7ff60b80-2fbd-4411-91fb-d211ab728664}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\SnapMyScreenSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen AppIntegrator 32-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen AppIntegrator 64-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen EPM SupportSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\SnapMyScreen Search Scope MonitorSOFTWARE\Wow6432Node\SnapMyScreen_bfSYSTEM\ControlSet001\services\SnapMyScreen_bfServiceSYSTEM\ControlSet002\services\SnapMyScreen_bfServiceSYSTEM\CurrentControlSet\services\SnapMyScreen_bfServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Mindspark SnapMyScreenSnapMyScreen_bfbar Uninstall FirefoxSnapMyScreen_bfbar Uninstall Internet ExplorerSnapMyScreenTooltab Uninstall Internet Explorer

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\SnapMyScreen%LOCALAPPDATA%\SnapMyScreenTooltab%LocalAppdata%\SnapMyScreen_bf%PROGRAMFILES%\Mindspark\SnapMyScreen%PROGRAMFILES%\SnapMyScreen_bf%PROGRAMFILES%\SnapMyScreen_bfEI%PROGRAMFILES(x86)%\Mindspark\SnapMyScreen%PROGRAMFILES(x86)%\SnapMyScreen_bf%PROGRAMFILES(x86)%\SnapMyScreen_bfEI%USERPROFILE%\AppData\LocalLow\SnapMyScreen_bf%USERPROFILE%\Application Data\SnapMyScreen_bf
Loading...