Home Malware Programs Adware YoTuberAAdesRemOv

YoTuberAAdesRemOv

Posted: April 7, 2014

Threat Metric

Threat Level: 2/10
Infected PCs: 518
First Seen: April 7, 2014
Last Seen: January 19, 2023
OS(es) Affected: Windows


YoTuberAAdesRemOv Screenshot 1YoTuberAAdesRemOv is adware that may display unwanted pop-up advertisements carrying discount coupons, offers, sales and deals when computer users are shopping online on shopping-related websites or visiting other popular websites. YoTuberAAdesRemOv may install itself on Internet Explorer, Mozilla Firefox and Google Chrome without a PC user's approval. YoTuberAAdesRemOv may circulate and be delivered through packaged free applications that computer users can download from questionable download websites. When the PC user decides to install a free program, it may have extra toolbars, browser extensions, add-ons or plug-ins embedded in the installation package. These additional programs, particularly YoTuberAAdesRemOv, may be marked as optional tools, but if the PC user does not take a check box off for incorporating them, he may end up with undesired system alterations on the PC. YoTuberAAdesRemOv may trace the computer user's online surfing habits and transmit gathered browsing details for targeted advertising purposes.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\YYoTuberADsRemov\a.x64.dll File name: a.x64.dll
Size: 476.16 KB (476160 bytes)
MD5: 375d13cda690f85deb68275111248226
Detection count: 47
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\YYoTuberADsRemov
Group: Malware file
Last Updated: April 11, 2014
%ALLUSERSPROFILE%\YooTuberAdSRemov\iEBk8UGrf.x64.dll File name: iEBk8UGrf.x64.dll
Size: 477.18 KB (477184 bytes)
MD5: 79dc1f99eecea5aa23ca622a2c0b5a52
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\YooTuberAdSRemov
Group: Malware file
Last Updated: April 11, 2014
%ALLUSERSPROFILE%\YTubeAdsREmover\QB.dll File name: QB.dll
Size: 425.47 KB (425472 bytes)
MD5: a4acbf5385b6658bcd58fe1dd2bdab85
Detection count: 23
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\YTubeAdsREmover
Group: Malware file
Last Updated: April 11, 2014
%ALLUSERSPROFILE%\YTubeAdsRemoveerr\M0Rcrs.x64.dll File name: M0Rcrs.x64.dll
Size: 477.18 KB (477184 bytes)
MD5: c4a24b1b6a46c0d5584d4e4d56644261
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\YTubeAdsRemoveerr
Group: Malware file
Last Updated: April 11, 2014
%ALLUSERSPROFILE%\YoTuubeRAdsRemov\c3fV2OUL.dll File name: c3fV2OUL.dll
Size: 424.96 KB (424960 bytes)
MD5: d7166ddcfa4cc2b14c1b626e2cb476f5
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\YoTuubeRAdsRemov
Group: Malware file
Last Updated: April 11, 2014

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{39DF0523-3A7B-58E3-F668-58A8C94D359B}

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\UUTAdRemoivaloApp%ALLUSERSPROFILE%\YoTuberAdSRemov%PROGRAMFILES%\UtubeAAdiReemoval%PROGRAMFILES(x86)%\UtubeAAdiReemoval
Loading...