Home Malware Programs Adware BeatTool

BeatTool

Posted: March 24, 2014

Threat Metric

Threat Level: 2/10
Infected PCs: 604
First Seen: March 24, 2014
Last Seen: July 20, 2024
OS(es) Affected: Windows


BeatTool Screenshot 1BeatTool is adware that may show disturbing pop-up advertisements and notifications in the Web browser pertaining to the PC user's online surfing routine when the computer user is visiting various potentially commercial websites. The BeatTool ads and notifications may signify that the computer system is affected by adware or a PUP (potentially unwanted program). BeatTool may be distributed and install itself onto the computer system packaged with numerous freeware, which computer users can download and install from the Internet. Freeware may often include numerous extra programs, which may be unnecessary for the computer user. Therefore, when the PC user installs any free application, he should carefully follow what he is going to install together with the desired tool that he has selected. Upon installation, BeatTool may highlight words on the websites that are visited by computer users replacing them with hyperlinks. The BeatTool links may be embedded within the text, and may come with a double underline to make them different from common links.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\BeatTool\BeatTool.FirstRun.exe File name: BeatTool.FirstRun.exe
Size: 1.12 MB (1121560 bytes)
MD5: 75da6a450d25ef1eea8492059378ca74
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\BeatTool
Group: Malware file
Last Updated: April 7, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{6AEA7031-A51D-403C-A72F-FD30BEA99B5B}{7B325B67-96F6-415B-9103-254F1A023232}{95ffef7e-d5b7-4afb-9b49-da6f9ee962d0}HKEY..\..\..\..{RegistryKeys}Software\BeatToolSoftware\Microsoft\Internet Explorer\Approved Extensions\{95FFEF7E-D5B7-4AFB-9B49-DA6F9EE962D0}Software\Microsoft\Internet Explorer\Approved Extensions\{A69458C7-9E63-4845-BE59-16319A0056BC}SOFTWARE\Microsoft\Tracing\BeatTool_RASAPI32SOFTWARE\Microsoft\Tracing\BeatTool_RASMANCSSOFTWARE\Microsoft\Tracing\updateBeatTool_RASAPI32SOFTWARE\Microsoft\Tracing\updateBeatTool_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{95FFEF7E-D5B7-4AFB-9B49-DA6F9EE962D0}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95FFEF7E-D5B7-4AFB-9B49-DA6F9EE962D0}SOFTWARE\Wow6432Node\BeatToolSOFTWARE\Wow6432Node\Microsoft\Tracing\BeatTool_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\BeatTool_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateBeatTool_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBeatTool_RASMANCSSYSTEM\ControlSet001\services\eventlog\Application\Update BeatToolSYSTEM\ControlSet001\services\Update BeatToolSYSTEM\CurrentControlSet\services\eventlog\Application\Update BeatToolSYSTEM\CurrentControlSet\services\Update BeatTool

Additional Information

The following directories were created:
%PROGRAMFILES%\BeatTool%PROGRAMFILES(x86)%\BeatTool
The following URL's were detected:
BeatTool
Loading...