Home Malware Programs Adware Albrechto

Albrechto

Posted: November 25, 2013

Threat Metric

Threat Level: 2/10
Infected PCs: 2,553
First Seen: November 25, 2013
Last Seen: March 27, 2024
OS(es) Affected: Windows

Albrechto is an adware that may show numerous unwanted pop-up advertisements on the computer while the PC user is browsing the net. Albrechto can be installed in Internet Explorer, Mozilla Firefox and Google Chrome web browsers. Once Albrechto enters the computer system, it may show random pop-up adverts and messages that encompass sponsored links while the web user is surfing online shopping or any other websites. If the PC user clicks on these random pop-up messages and adverts, he may get diverted to suspicious advertising websites. The main purpose of Albrechto might be to increase traffic of dubious advertising websites. Albrechto may access the computer packed with free software products. PC users can avoid this if they are careful enough while installing various freeware and unchecking all options to install other unfamiliar free applications. However, many PC users often skip the steps of installation to make install the free program as quickly as possible. Albrechto may gather information about the computer user's browsing routine and then send this data to the third-parties to use it for a variety of targeted marketing purposes.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{1881a451-f7fb-44bc-85b2-fcea4b1403e3}{33245300-D6A0-4F27-B1DE-CD4C97380218}File name without pathhttp_static.albrechto.co_0.localstoragehttp_static.albrechto.co_0.localstorage-journalHKEY..\..\..\..{RegistryKeys}Software\albrechtoSoftware\Microsoft\Internet Explorer\Approved Extensions\{1881a451-f7fb-44bc-85b2-fcea4b1403e3}Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\albrechto.coSOFTWARE\Microsoft\Tracing\updatealbrechto_RASAPI32SOFTWARE\Microsoft\Tracing\updatealbrechto_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{1881A451-F7FB-44BC-85B2-FCEA4B1403E3}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1881A451-F7FB-44BC-85B2-FCEA4B1403E3}SOFTWARE\Wow6432Node\albrechtoSOFTWARE\Wow6432Node\Microsoft\Tracing\updatealbrechto_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updatealbrechto_RASMANCSSYSTEM\ControlSet001\services\eventlog\Application\Update albrechtoSYSTEM\ControlSet001\services\Update albrechtoSYSTEM\ControlSet002\services\eventlog\Application\Update albrechtoSYSTEM\ControlSet002\services\Update albrechtoSYSTEM\CurrentControlSet\services\eventlog\Application\Update albrechtoSYSTEM\CurrentControlSet\services\Update albrechtoHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}albrechto

Additional Information

The following directories were created:
%ProgramFiles%\albrechto%ProgramFiles(x86)%\albrechto
Loading...