Home Malware Programs Potentially Unwanted Programs (PUPs) Discover Ancestry Toolbar

Discover Ancestry Toolbar

Posted: June 17, 2015

Threat Metric

Ranking: 2,755
Threat Level: 1/10
Infected PCs: 26,501
First Seen: December 22, 2014
Last Seen: October 17, 2023
OS(es) Affected: Windows

DiscoverAncestry Toolbar is a potentially unwanted program (PUP) created and marketed by Mindspark Interactive Network, Inc., known for offering several similar toolbar add-ons for popular web browser applications. DiscoverAncestry Toolbar is promoted as being an assistant for finding ancestry information on the Internet. Use of the quick access buttons on the DiscoverAncestry Toolbar may load content that offers various ancestry services through the internet. The activities of DiscoverAncestry Toolbar may be unnecessary to some, which is one of the reasons why DiscoverAncestry Toolbar is considered to be a potentially unwanted program. If you are one of the people who don't find much use of DiscoverAncestry Toolbar's services, then you may wish to remove this software from your computer. The removal of DiscoverAncestry Toolbar is a task that can be handled either manually, or by running an automatic tool that specializes in disposing of PUPs.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{014d8137-9473-4d0b-a89c-485ead1f1d38}{0a666c8a-3961-40c4-847c-ccc889dd4591}{10322192-AA77-4648-B2FF-17968BE3A5A0}{10BE9380-1B03-4DB8-ADA9-DDF9ADBC706F}{12BAA10F-5145-4E91-AEA5-015D66635CF5}{13963B35-E24F-408E-9C6D-9896CDE89B1B}{184FD6CF-C487-489F-A752-0E6C6D620EF8}{1b75db18-1552-48c8-b089-041fd71a6307}{1BF3284B-484C-45F8-B1C6-6EB95D3520CB}{1CA19368-6D2A-405F-8AF1-CB296FD1FFBE}{1ed30f3b-cd64-4f78-a35e-95f8f15eea04}{1F675893-849C-45AA-AE95-3CAC8C6084AF}{23F6491D-2DD8-4D70-9044-5BD0201DD5CD}{29213EAE-4BEB-40D2-905C-53EAA4065789}{2B217E9B-7C07-4215-B5CB-4A755DCE49E0}{2C04E309-E955-43FD-894F-C1CE7C93A6C5}{36828718-8B9D-424C-B96A-C0C4EF4869A6}{36932ddb-3710-4512-ac1e-1bcf199d6b90}{39D21E5C-9670-47B1-91DD-CFE290C65587}{3B45926C-9DF4-4257-8AE5-0DE5A0486B76}{452CB747-527F-45F4-89FD-1540FAA04069}{46A9A351-7319-4DA4-8A11-E5015DAE6324}{47A0EDE2-CD19-4838-A35D-84ACF4C0375A}{53953C68-23E0-4779-A068-E10309D06E3A}{5902BD32-A115-46D4-B20E-08F3BC985BAE}{63235FE4-24B2-410F-9038-13CC1D71B378}{6ffa4cac-5ad4-42f5-bd18-7cd228761d1a}{73E16E0C-768F-478A-A6E1-B7E2E5936634}{8DDCA9EF-F8BB-4D34-ADD6-51BA78464022}{8eaff39e-95fa-48e7-b465-74f985754e6c}{9C6DD8FA-D20D-4496-AD11-BBAF93E3CFD1}{AA8F8C45-FEBE-44A6-BE8E-B92184AF42B3}{AB634212-8A5A-41C4-87E8-F1E50A668106}{ad20fd36-6e95-48b5-95f8-91926c5c741e}{C753773D-DC79-48D5-AB08-64100965F7F5}{D071433E-76C2-42C9-B9E2-530BA1455A09}{d9712913-5fe6-4956-b291-7a6689170736}{de180c56-7010-4130-9911-9ef34d6f6c4c}{E02B22B4-2D88-409B-8661-7DB65DABEA74}{E034D6D6-99AC-4DE5-9C98-61AB31F8126D}{e1b0454e-e89e-4205-97f4-76cc00f3f34f}{E2991E83-F06B-42A0-B245-A5B9B395D6AD}{E2FC35A5-E9E5-4796-B152-B2B54925FC3F}{e5acd583-d07f-42ac-ad70-32d39193f2ef}{ea23de73-8588-414a-b5c5-e4c9800df040}{eb1468ea-2c60-494a-ae50-83796a56ccf8}{ee9c0523-6dcb-4490-8325-4815b8ba18c3}{F05AA909-B78A-4DDA-AF57-4EA5E3EE378B}{F1AFD64C-CEED-4C98-80EC-FEB044E43591}{f87e9f00-1b14-4ea2-ba60-fb8679e00824}{FAD6CE33-9581-4B55-97C6-F2A6E6C12605}File name without pathhttp_DiscoverAncestry.dl.tb.ask.com_0.localstoragehttp_DiscoverAncestry.dl.tb.ask.com_0.localstorage-journalHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\DiscoverAncestry_chSoftware\DiscoverAncestry_chSoftware\Microsoft\Internet Explorer\Approved Extensions\{6FFA4CAC-5AD4-42F5-BD18-7CD228761D1A}Software\Microsoft\Internet Explorer\Approved Extensions\{8EAFF39E-95FA-48E7-B465-74F985754E6C}Software\Microsoft\Internet Explorer\Approved Extensions\{D9712913-5FE6-4956-B291-7A6689170736}Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{6FFA4CAC-5AD4-42F5-BD18-7CD228761D1A}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{6ffa4cac-5ad4-42f5-bd18-7cd228761d1a}SOFTWARE\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry AppIntegrator 32-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry AppIntegrator 64-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry EPM SupportSOFTWARE\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry Search Scope MonitorSOFTWARE\Wow6432Node\DiscoverAncestry_chSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{6ffa4cac-5ad4-42f5-bd18-7cd228761d1a}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{8eaff39e-95fa-48e7-b465-74f985754e6c}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{d9712913-5fe6-4956-b291-7a6689170736}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry AppIntegrator 32-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry AppIntegrator 64-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry EPM SupportSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\DiscoverAncestry Search Scope MonitorSYSTEM\ControlSet001\services\DiscoverAncestry_chServiceSYSTEM\ControlSet002\services\DiscoverAncestry_chServiceSYSTEM\CurrentControlSet\services\DiscoverAncestry_chService

Additional Information

The following directories were created:
%LOCALAPPDATA%\DiscoverAncestryTooltab%PROGRAMFILES%\DiscoverAncestry_chEI%PROGRAMFILES(x86)%\DiscoverAncestry_chEI%USERPROFILE%\AppData\LocalLow\DiscoverAncestry_ch%USERPROFILE%\AppData\LocalLow\DiscoverAncestry_chIE
Loading...