Home Malware Programs Adware Adware.Windealist

Adware.Windealist

Posted: November 29, 2013

Threat Metric

Ranking: 19,509
Threat Level: 2/10
Infected PCs: 10,542
First Seen: November 29, 2013
Last Seen: February 7, 2025
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\windealist\Internet Explorer\swu.vbs File name: swu.vbs
Size: 3.01 KB (3012 bytes)
MD5: 8d93a3da9f2a0d3130f3d813b1a59212
Detection count: 4,979
Mime Type: unknown/vbs
Path: %PROGRAMFILES%\windealist\Internet Explorer
Group: Malware file
Last Updated: May 22, 2024
%PROGRAMFILES%\windealist\Internet Explorer\windealist.dll File name: windealist.dll
Size: 176.12 KB (176128 bytes)
MD5: 745479db5ec1ffe60faff8e5b99a70c6
Detection count: 152
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\windealist\Internet Explorer
Group: Malware file
Last Updated: April 21, 2020

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{B8F10001-9552-4F40-8F61-6765CD22DD9E}Regexp file mask%WINDIR%\System32\Tasks\windealistSWUHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\AppID\windealist.DLLSOFTWARE\Classes\Installer\Features\10001F8B255904F4F8167656DC22DDE9SOFTWARE\Classes\Installer\Products\10001F8B255904F4F8167656DC22DDE9SOFTWARE\Classes\Installer\UpgradeCodes\8DFC5FD49C4250E4DB6CD0710DF0DD07SOFTWARE\Classes\windealist.windealistBHOSOFTWARE\Classes\windealist.windealistBHO.1SOFTWARE\Classes\Wow6432Node\AppID\windealist.DLLSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\windealistSWUSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{B8F10001-9552-4F40-8F61-6765CD22DD9E}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B8F10001-9552-4F40-8F61-6765CD22DD9E}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B8F10001-9552-4F40-8F61-6765CD22DD9E}SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\8DFC5FD49C4250E4DB6CD0710DF0DD07SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{B8F10001-9552-4F40-8F61-6765CD22DD9E}SOFTWARE\Wow6432Node\Classes\AppID\windealist.DLLSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{B8F10001-9552-4F40-8F61-6765CD22DD9E}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{B8F10001-9552-4F40-8F61-6765CD22DD9E}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{B8F10001-9552-4F40-8F61-6765CD22DD9E}

Additional Information

The following directories were created:
%PROGRAMFILES%\windealist%PROGRAMFILES(x86)%\windealist
The following URL's were detected:
windealist
Loading...