Home Malware Programs Adware 2YourFace

2YourFace

Posted: January 24, 2013

Threat Metric

Threat Level: 2/10
Infected PCs: 12,842
First Seen: January 24, 2013
Last Seen: June 4, 2024
OS(es) Affected: Windows

2YourFace is a browser extension/adware, which adds the functionality of video and audio calls to a PC user's Facebook chat. A browser add-on of 2YourFace is created by Outbrowse Ltd. and uses some misleading techniques to make money from unsuspecting computer users. 2YourFace displays unwanted ads in results pages of search engines and shows pop-up deals in a variety of online shopping websites. 2YourFace installs itself on the victim's computer system without the PC user's permission, and comes bundled with free programs downloaded from the Internet. 2YourFace shows unwanted pop-up ads and slows down web browsers (Mozilla FireFox, Google Chrome, and Internet Explorer). 2YourFace also installs the mixi.dj toolbar, which leads to annoying browser diversions to search.conduit.com. 2YourFace is advertised bundling it with freeware applications. Therefore, computer users should be very careful when downloading and installing free applications. They should always attentively check every installation window of such program and disallow any changes to be made to the settings of the web browser.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\ESD\AdwCleaner\Quarantine\C\Program Files\2YourFace\bho.dll.vir File name: bho.dll.vir
Size: 79.36 KB (79360 bytes)
MD5: 5994aaf65b8c64806d18a56350cfddfd
Detection count: 265
Mime Type: unknown/vir
Path: C:\ESD\AdwCleaner\Quarantine\C\Program Files\2YourFace\bho.dll.vir
Group: Malware file
Last Updated: November 25, 2020
C:\Users\<username>\Documents\Descargas\2YourFace_11_Smart.exe File name: 2YourFace_11_Smart.exe
Size: 614.76 KB (614760 bytes)
MD5: 174c7279ace317ea202a080f04bb90fb
Detection count: 47
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Documents\Descargas\2YourFace_11_Smart.exe
Group: Malware file
Last Updated: June 23, 2022
%PROGRAMFILES%\2YourFace\bho.dll File name: bho.dll
Size: 85.31 KB (85312 bytes)
MD5: c8fa2a24c2cd3fb3651865199f65a80a
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\2YourFace
Group: Malware file
Last Updated: February 1, 2020
%APPDATA%\2YourFace\Updater.exe File name: Updater.exe
Size: 198.14 KB (198144 bytes)
MD5: b128912661c75b8d908246ec39cae7e0
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\2YourFace
Group: Malware file
Last Updated: March 26, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{1185823F-F22F-4027-80E5-4F68ACD5DE5E}HKEY..\..\..\..{RegistryKeys}Software\2YourFaceSOFTWARE\Wow6432Node\Mozilla\Firefox\Extensions\support@2yourface.comHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}2YourFace

Additional Information

The following directories were created:
%APPDATA%\2YourFace%PROGRAMFILES%\2YourFace%PROGRAMFILES(x86)%\2YourFace

Related Posts

Loading...