Home Malware Programs Adware Freeven

Freeven

Posted: March 10, 2014

Threat Metric

Ranking: 384
Threat Level: 2/10
Infected PCs: 148,349
First Seen: March 10, 2014
Last Seen: October 17, 2023
OS(es) Affected: Windows


Freeven is adware that may circulate and enter the PC through bundled free software that the computer user can download from unreliable download websites. Freeven may claim to be able to improve the PC user's Internet surfing experience. Freeven may display unwanted pop-up ads, sales, deals, banners and offers. Freeven may take over any Web browser installed on the PC and change the default browser settings. Freeven may also replace the default homepage and search engine or a new tab page with a suspicious website that may be produced for commercial purposes to benefit from ad clicks and raised website traffic. Freeven may collect data of the PC user's surfing habits and send and use it when showing targeted pop-up advertisements and messages. Freeven may install itself on the Web browser as an add-on, plug-in, or browser extension.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\b7b0b362-c769-4452-ad4a-5f5ac30fd31b-5.exe File name: b7b0b362-c769-4452-ad4a-5f5ac30fd31b-5.exe
Size: 460.64 KB (460648 bytes)
MD5: d2aa58c967cc5d6eaeb3314df82de683
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-nova.exe File name: Free_Ven_s_pro 25-nova.exe
Size: 592.23 KB (592232 bytes)
MD5: e6fdf6195e3310e44b7510af3e31536f
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: February 13, 2023
%PROGRAMFILES%\Free_Ven_s_pro 25\5252e8da-5981-4451-8d83-dddb350eb483-4.exe File name: 5252e8da-5981-4451-8d83-dddb350eb483-4.exe
Size: 836.96 KB (836968 bytes)
MD5: 1fadd3c6172a28c76b51bdfcd863e962
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: February 13, 2023
%PROGRAMFILES%\Free_Ven_s_pro 25\5252e8da-5981-4451-8d83-dddb350eb483-5.exe File name: 5252e8da-5981-4451-8d83-dddb350eb483-5.exe
Size: 461.67 KB (461672 bytes)
MD5: befcde3afbbbdbcc24b1965ce23f3730
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\b7b0b362-c769-4452-ad4a-5f5ac30fd31b-4.exe File name: b7b0b362-c769-4452-ad4a-5f5ac30fd31b-4.exe
Size: 836.96 KB (836968 bytes)
MD5: 5c69500212aa7f2d2df1ef79236db019
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-nova.exe File name: Free_Ven_s_pro 25-nova.exe
Size: 596.84 KB (596840 bytes)
MD5: d1a1be9f45e40c47f8b833e57de6075c
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES%\Free_Ven_s_pro 25\cb42977d-2472-4789-90ad-4cb2f162fbbf-2.exe File name: cb42977d-2472-4789-90ad-4cb2f162fbbf-2.exe
Size: 362.85 KB (362856 bytes)
MD5: 985288cdeefecb455512cc37e9c3aa08
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-codedownloader.exe File name: Free_Ven_s_pro 25-codedownloader.exe
Size: 512.36 KB (512360 bytes)
MD5: 3abc6eea2403a13323aaae777672bfb9
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\cb42977d-2472-4789-90ad-4cb2f162fbbf-11.exe File name: cb42977d-2472-4789-90ad-4cb2f162fbbf-11.exe
Size: 1.89 MB (1898856 bytes)
MD5: 266a6f563e58e9f406f955e8792fd588
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-bho.dll File name: Free_Ven_s_pro 25-bho.dll
Size: 543.08 KB (543080 bytes)
MD5: 63a9853c8c40442cbd6f0d41a82dca57
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-bho64.dll File name: Free_Ven_s_pro 25-bho64.dll
Size: 734.05 KB (734056 bytes)
MD5: ddf65ebb042062241c07bf42986c7979
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\free_ven_s_pro 25\free_ven_s_pro 25-bg.exe File name: free_ven_s_pro 25-bg.exe
Size: 559.97 KB (559976 bytes)
MD5: a7eec11abdf1392a6718488259e88533
Detection count: 11
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\free_ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-bho64.dll File name: Free_Ven_s_pro 25-bho64.dll
Size: 733.54 KB (733544 bytes)
MD5: ce4db9e083229ee7b8aaca4475c578a7
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-bho.dll File name: Free_Ven_s_pro 25-bho.dll
Size: 541.54 KB (541544 bytes)
MD5: da1a1cb01546c479092dc1ee10d95416
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\Uninstall.exe File name: Uninstall.exe
Size: 84.32 KB (84328 bytes)
MD5: c7698ceef06aa5b78680bfa7f5f21f35
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: February 13, 2023
%PROGRAMFILES%\free_ven_s_pro 25\free_ven_s_pro 25-bg.exe File name: free_ven_s_pro 25-bg.exe
Size: 559.97 KB (559976 bytes)
MD5: 2b8cbe2d147dc0ca5b6e9b44d08ef74a
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\free_ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-bho.dll File name: Free_Ven_s_pro 25-bho.dll
Size: 541.03 KB (541032 bytes)
MD5: fda73158f23ba67f7556e5ad3caf29f0
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\free_ven_s_pro 25\free_ven_s_pro 25-bg.exe File name: free_ven_s_pro 25-bg.exe
Size: 564.07 KB (564072 bytes)
MD5: 9c5fd9a93a094652065d4e4dd020a4b4
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\free_ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{11111111-1111-1111-1111-110511421148}{11111111-1111-1111-1111-110511421153}{11111111-1111-1111-1111-110511421155}{11111111-1111-1111-1111-110511421156}{11111111-1111-1111-1111-110511801126}{11111111-1111-1111-1111-110511801128}{22222222-2222-2222-2222-220522422248}{22222222-2222-2222-2222-220522422253}{22222222-2222-2222-2222-220522422255}{22222222-2222-2222-2222-220522422256}{22222222-2222-2222-2222-220522802226}{22222222-2222-2222-2222-220522802228}{44444444-4444-4444-4444-440544424448}{44444444-4444-4444-4444-440544424453}{44444444-4444-4444-4444-440544424455}{44444444-4444-4444-4444-440544424456}{44444444-4444-4444-4444-440544804426}{44444444-4444-4444-4444-440544804428}{55555555-5555-5555-5555-550555425548}{55555555-5555-5555-5555-550555425553}{55555555-5555-5555-5555-550555425555}{55555555-5555-5555-5555-550555425556}{55555555-5555-5555-5555-550555805526}{55555555-5555-5555-5555-550555805528}{66666666-6666-6666-6666-660566426648}{66666666-6666-6666-6666-660566426653}{66666666-6666-6666-6666-660566426655}{66666666-6666-6666-6666-660566426656}{66666666-6666-6666-6666-660566806626}{66666666-6666-6666-6666-660566806628}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\Crossrider\onBeforeNavigate\54253Software\AppDataLow\Software\Crossrider\onBeforeNavigate\54255Software\AppDataLow\Software\Crossrider\onBeforeNavigate\54256Software\AppDataLow\Software\Crossrider\onBeforeNavigate\58026Software\AppDataLow\Software\Crossrider\onBeforeNavigate\58028Software\AppDataLow\Software\Crossrider\onRequest\54253Software\AppDataLow\Software\Crossrider\onRequest\54255Software\AppDataLow\Software\Crossrider\onRequest\54256Software\AppDataLow\Software\Crossrider\onRequest\58026Software\AppDataLow\Software\Crossrider\onRequest\58028Software\AppDataLow\Software\free venSOFTWARE\Classes\CrossriderApp0054248.BHOSOFTWARE\Classes\CrossriderApp0054248.BHO.1SOFTWARE\Classes\CrossriderApp0054248.SandboxSOFTWARE\Classes\CrossriderApp0054248.Sandbox.1SOFTWARE\Classes\CrossriderApp0054253.BHOSOFTWARE\Classes\CrossriderApp0054253.BHO.1SOFTWARE\Classes\CrossriderApp0054253.SandboxSOFTWARE\Classes\CrossriderApp0054253.Sandbox.1SOFTWARE\Classes\CrossriderApp0054255.BHOSOFTWARE\Classes\CrossriderApp0054255.BHO.1SOFTWARE\Classes\CrossriderApp0054255.SandboxSOFTWARE\Classes\CrossriderApp0054255.Sandbox.1SOFTWARE\Classes\CrossriderApp0054256.BHOSOFTWARE\Classes\CrossriderApp0054256.BHO.1SOFTWARE\Classes\CrossriderApp0054256.SandboxSOFTWARE\Classes\CrossriderApp0054256.Sandbox.1SOFTWARE\Classes\CrossriderApp0058026.BHOSOFTWARE\Classes\CrossriderApp0058026.BHO.1SOFTWARE\Classes\CrossriderApp0058026.SandboxSOFTWARE\Classes\CrossriderApp0058026.Sandbox.1SOFTWARE\Classes\CrossriderApp0058028.BHOSOFTWARE\Classes\CrossriderApp0058028.BHO.1SOFTWARE\Classes\CrossriderApp0058028.SandboxSOFTWARE\Classes\CrossriderApp0058028.Sandbox.1Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\free venSOFTWARE\InstalledBrowserExtensions\21636Software\InstalledBrowserExtensions\freevenSoftware\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421148}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421155}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421156}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511801126}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511801128}SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\free ven-bg.exeSoftware\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511161182}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511801126}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511801128}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421148}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421155}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421156}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511801126}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511801128}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421148}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421155}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421156}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511801128}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421148}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421153}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421155}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421156}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511801126}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511801128}SOFTWARE\Wow6432Node\free venSOFTWARE\Wow6432Node\InstalledBrowserExtensions\21636SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\free ven-bg.exeSoftware\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511161182}Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421153}Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511801128}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421153}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421155}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421156}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}free ven

Additional Information

The following directories were created:
%PROGRAMFILES%\Freeven pro%PROGRAMFILES%\free ven%PROGRAMFILES(x86)%\Freeven pro%PROGRAMFILES(x86)%\free ven
The following URL's were detected:
free ven
Loading...