Home Malware Programs Browser Hijackers EliteBar

EliteBar

Posted: April 7, 2005

Threat Metric

Ranking: 16,570
Threat Level: 5/10
Infected PCs: 1,298
First Seen: July 24, 2009
Last Seen: July 31, 2023
OS(es) Affected: Windows

EliteBar is a web browser toolbar that may redirect your search requests, change your home page, delete previously installed toolbars, modify your favorites/bookmarks, and display pop-up advertisements. EliteBar may capture credit card information, email addresses, and other information through its auto-fill feature. EliteBar may also automatically download and install adware without your knowledge or permission.

Aliases

PAK_Generic.001 [TrendMicro]Adware.Purityscan [Symantec]ClickSpring.PuritySCAN [Sunbelt]ClickSpring [Sophos]Medium Risk Malware Downloader [Prevx1]Adware/PurityScan [Panda]Win32/TrojanDownloader.PurityScan [NOD32]Adware:Win32/Clickspring.B [Microsoft]Trojan.Downloader.Gen [McAfee-GW-Edition]Generic!Artemis [McAfee+Artemis]Downloader-EV [McAfee]Trojan-Downloader.Win32.PurityScan [Ikarus]W32/EV!tr.dldr [Fortinet]Trojan-Downloader.Win32.PurityScan.fe [F-Secure]Win32/Clspring!generic [eTrust-Vet]
More aliases (62)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



wuauclt.exe File name: wuauclt.exe
Size: 72.7 KB (72704 bytes)
MD5: 2254457213510df63c482be5a95f2625
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
pokapoka79.exe File name: pokapoka79.exe
Size: 148.48 KB (148480 bytes)
MD5: 807fcb10c817836af1f0f6f5e9b944f4
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
nt_hide79.dll File name: nt_hide79.dll
Size: 49.15 KB (49152 bytes)
MD5: 3bfe5760545429dd1d9d0ba7feae3f8b
Detection count: 28
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
E:\Folder 01\VirusShare_02b601aba63bf920282db6bb831e0235 File name: VirusShare_02b601aba63bf920282db6bb831e0235
Size: 184.32 KB (184320 bytes)
MD5: 02b601aba63bf920282db6bb831e0235
Detection count: 7
Path: E:\Folder 01\VirusShare_02b601aba63bf920282db6bb831e0235
Group: Malware file
Last Updated: January 20, 2022

Registry Modifications

The following newly produced Registry Values are:

CLSID{0A1D22C3-37BE-470C-9C29-E3074EE0574B}{4AFF987A-773B-48E4-AEE8-08EBDDBDADF8}{825CF5BD-8862-4430-B771-0C15C5CA880F}{8AA59E15-6E81-415C-B299-1ADFB50C8E1A}{BE8D0059-D24D-4919-B76F-99F4A2203647}{CAAB3B3F-E815-47D9-94FD-8BB9143C0077}

Related Posts

Loading...