Posted: July 30, 2012

Threat Metric

Ranking: 11,547
Threat Level: 2/10
Infected PCs: 4,562
First Seen: July 30, 2012
Last Seen: October 6, 2023
OS(es) Affected: Windows

Boxore adware is an adware application that displays pop-up error messages and ads on the affected PC. Boxore adware infiltrates into the infected computer system via free movies sharing websites. Boxore adware can also drop other malware threats on the corrupted machine. To watch the movies, you will be asked to download either plugin or video player, particularly a free multimedia player called Player Plus. Once you installed the plugin and player, Boxore adware is also installed on your PC. Boxore adware adds a toolbar in your web browser. Boxore adware installs boxore.exe and update.exe services in your computer system. Both .exe services run automatically every time you start your computer. Boxore adware strives to sell videos, music, software, games, and other stuff that normal web user buys online. Boxore adware can redirect your web browser to suspicious websites.

Technical Details

File System Modifications

The following files were created in the system:

C:\Program Files\Boxore\BoxoreClient File name: C:\Program Files\Boxore\BoxoreClient
Group: Malware file
C:\Program Files\Boxore File name: C:\Program Files\Boxore
Group: Malware file
C:\Program Files\Boxore\BoxoreClient\boxore.exe File name: C:\Program Files\Boxore\BoxoreClient\boxore.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
C:\Program Files\Boxore\BoxoreClient\rules.dat File name: C:\Program Files\Boxore\BoxoreClient\rules.dat
Mime Type: unknown/dat
Group: Malware file
C:\Program Files\Boxore\BoxoreClient\index.dat File name: C:\Program Files\Boxore\BoxoreClient\index.dat
File type: Data file
Mime Type: unknown/dat
Group: Malware file
C:\Program Files\Boxore\BoxoreClient\COPYING File name: C:\Program Files\Boxore\BoxoreClient\COPYING
Group: Malware file
C:\Program Files\Boxore\SmartDisplay\SmartExtensions\GoogleChrome\SmartDisplayExtension.crx File name: C:\Program Files\Boxore\SmartDisplay\SmartExtensions\GoogleChrome\SmartDisplayExtension.crx
Mime Type: unknown/crx
Group: Malware file

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SOFTWARE\Boxore\BoxoreClientHKEY_LOCAL_MACHINE\SOFTWARE\BoxoreHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Boxore Client"HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\jeaihkehdlhkocphopopahkfjcfcphef

Additional Information

The following URL's were detected: