Home Malware Programs Adware Freeven

Freeven

Posted: March 10, 2014

Threat Metric

Ranking: 1,385
Threat Level: 2/10
Infected PCs: 157,996
First Seen: March 10, 2014
Last Seen: March 10, 2025
OS(es) Affected: Windows


Freeven is adware that may circulate and enter the PC through bundled free software that the computer user can download from unreliable download websites. Freeven may claim to be able to improve the PC user's Internet surfing experience. Freeven may display unwanted pop-up ads, sales, deals, banners and offers. Freeven may take over any Web browser installed on the PC and change the default browser settings. Freeven may also replace the default homepage and search engine or a new tab page with a suspicious website that may be produced for commercial purposes to benefit from ad clicks and raised website traffic. Freeven may collect data of the PC user's surfing habits and send and use it when showing targeted pop-up advertisements and messages. Freeven may install itself on the Web browser as an add-on, plug-in, or browser extension.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\39e01112-1e6c-4a8f-9969-795765e070fb-5.exe File name: 39e01112-1e6c-4a8f-9969-795765e070fb-5.exe
Size: 462.69 KB (462696 bytes)
MD5: dd67f29865b0d270fa72990a4670216a
Detection count: 119
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\39e01112-1e6c-4a8f-9969-795765e070fb-4.exe File name: 39e01112-1e6c-4a8f-9969-795765e070fb-4.exe
Size: 838.5 KB (838504 bytes)
MD5: 76a28906f3aaca58b1694e19ee7ce6aa
Detection count: 110
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\39e01112-1e6c-4a8f-9969-795765e070fb-2.exe File name: 39e01112-1e6c-4a8f-9969-795765e070fb-2.exe
Size: 364.9 KB (364904 bytes)
MD5: d2f1eadc5c290966b692ce134192e723
Detection count: 105
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\39e01112-1e6c-4a8f-9969-795765e070fb-3.exe File name: 39e01112-1e6c-4a8f-9969-795765e070fb-3.exe
Size: 1.9 MB (1900392 bytes)
MD5: 23731d434fa0738085e58843a98e0341
Detection count: 103
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\bc2afd1b-6998-4d36-a8a0-7b6fc48ecf44-11.exe File name: bc2afd1b-6998-4d36-a8a0-7b6fc48ecf44-11.exe
Size: 1.89 MB (1897832 bytes)
MD5: 588c890a9d1f6faa9d75dbe06f8ad540
Detection count: 63
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\a2480ea6-2997-4ce5-ac7d-5ed5e7ca4b8f-4.exe File name: a2480ea6-2997-4ce5-ac7d-5ed5e7ca4b8f-4.exe
Size: 838.5 KB (838504 bytes)
MD5: c9c0ad1c6e0d785ba3ed21556e2c3b35
Detection count: 47
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\b7b0b362-c769-4452-ad4a-5f5ac30fd31b-5.exe File name: b7b0b362-c769-4452-ad4a-5f5ac30fd31b-5.exe
Size: 460.64 KB (460648 bytes)
MD5: d2aa58c967cc5d6eaeb3314df82de683
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES%\Free_Ven_s_pro 25\a2480ea6-2997-4ce5-ac7d-5ed5e7ca4b8f-5.exe File name: a2480ea6-2997-4ce5-ac7d-5ed5e7ca4b8f-5.exe
Size: 461.16 KB (461160 bytes)
MD5: 45fe1e720565a7006c8f79fe8ddc8b66
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\5252e8da-5981-4451-8d83-dddb350eb483-4.exe File name: 5252e8da-5981-4451-8d83-dddb350eb483-4.exe
Size: 836.96 KB (836968 bytes)
MD5: 1fadd3c6172a28c76b51bdfcd863e962
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: February 13, 2023
%PROGRAMFILES%\Free_Ven_s_pro 25\5252e8da-5981-4451-8d83-dddb350eb483-5.exe File name: 5252e8da-5981-4451-8d83-dddb350eb483-5.exe
Size: 461.67 KB (461672 bytes)
MD5: befcde3afbbbdbcc24b1965ce23f3730
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\b7b0b362-c769-4452-ad4a-5f5ac30fd31b-4.exe File name: b7b0b362-c769-4452-ad4a-5f5ac30fd31b-4.exe
Size: 836.96 KB (836968 bytes)
MD5: 5c69500212aa7f2d2df1ef79236db019
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-nova.exe File name: Free_Ven_s_pro 25-nova.exe
Size: 596.84 KB (596840 bytes)
MD5: d1a1be9f45e40c47f8b833e57de6075c
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES%\Free_Ven_s_pro 25\cb42977d-2472-4789-90ad-4cb2f162fbbf-2.exe File name: cb42977d-2472-4789-90ad-4cb2f162fbbf-2.exe
Size: 362.85 KB (362856 bytes)
MD5: 985288cdeefecb455512cc37e9c3aa08
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\cb42977d-2472-4789-90ad-4cb2f162fbbf-11.exe File name: cb42977d-2472-4789-90ad-4cb2f162fbbf-11.exe
Size: 1.89 MB (1898856 bytes)
MD5: 266a6f563e58e9f406f955e8792fd588
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-bho.dll File name: Free_Ven_s_pro 25-bho.dll
Size: 543.08 KB (543080 bytes)
MD5: 63a9853c8c40442cbd6f0d41a82dca57
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\Free_Ven_s_pro 25-bho64.dll File name: Free_Ven_s_pro 25-bho64.dll
Size: 734.05 KB (734056 bytes)
MD5: ddf65ebb042062241c07bf42986c7979
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES(x86)%\Free_Ven_s_pro 25\Uninstall.exe File name: Uninstall.exe
Size: 84.32 KB (84328 bytes)
MD5: c7698ceef06aa5b78680bfa7f5f21f35
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Free_Ven_s_pro 25
Group: Malware file
Last Updated: February 13, 2023
%PROGRAMFILES(x86)%\free_ven_s_pro 25\free_ven_s_pro 25-bg.exe File name: free_ven_s_pro 25-bg.exe
Size: 564.07 KB (564072 bytes)
MD5: 9c5fd9a93a094652065d4e4dd020a4b4
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\free_ven_s_pro 25
Group: Malware file
Last Updated: June 16, 2020

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{11111111-1111-1111-1111-110511421148}{11111111-1111-1111-1111-110511421153}{11111111-1111-1111-1111-110511421155}{11111111-1111-1111-1111-110511421156}{11111111-1111-1111-1111-110511801126}{11111111-1111-1111-1111-110511801128}{22222222-2222-2222-2222-220522422248}{22222222-2222-2222-2222-220522422253}{22222222-2222-2222-2222-220522422255}{22222222-2222-2222-2222-220522422256}{22222222-2222-2222-2222-220522802226}{22222222-2222-2222-2222-220522802228}{44444444-4444-4444-4444-440544424448}{44444444-4444-4444-4444-440544424453}{44444444-4444-4444-4444-440544424455}{44444444-4444-4444-4444-440544424456}{44444444-4444-4444-4444-440544804426}{44444444-4444-4444-4444-440544804428}{55555555-5555-5555-5555-550555425548}{55555555-5555-5555-5555-550555425553}{55555555-5555-5555-5555-550555425555}{55555555-5555-5555-5555-550555425556}{55555555-5555-5555-5555-550555805526}{55555555-5555-5555-5555-550555805528}{66666666-6666-6666-6666-660566426648}{66666666-6666-6666-6666-660566426653}{66666666-6666-6666-6666-660566426655}{66666666-6666-6666-6666-660566426656}{66666666-6666-6666-6666-660566806626}{66666666-6666-6666-6666-660566806628}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\Crossrider\onBeforeNavigate\54253Software\AppDataLow\Software\Crossrider\onBeforeNavigate\54255Software\AppDataLow\Software\Crossrider\onBeforeNavigate\54256Software\AppDataLow\Software\Crossrider\onBeforeNavigate\58026Software\AppDataLow\Software\Crossrider\onBeforeNavigate\58028Software\AppDataLow\Software\Crossrider\onRequest\54253Software\AppDataLow\Software\Crossrider\onRequest\54255Software\AppDataLow\Software\Crossrider\onRequest\54256Software\AppDataLow\Software\Crossrider\onRequest\58026Software\AppDataLow\Software\Crossrider\onRequest\58028Software\AppDataLow\Software\free venSOFTWARE\Classes\CrossriderApp0054248.BHOSOFTWARE\Classes\CrossriderApp0054248.BHO.1SOFTWARE\Classes\CrossriderApp0054248.SandboxSOFTWARE\Classes\CrossriderApp0054248.Sandbox.1SOFTWARE\Classes\CrossriderApp0054253.BHOSOFTWARE\Classes\CrossriderApp0054253.BHO.1SOFTWARE\Classes\CrossriderApp0054253.SandboxSOFTWARE\Classes\CrossriderApp0054253.Sandbox.1SOFTWARE\Classes\CrossriderApp0054255.BHOSOFTWARE\Classes\CrossriderApp0054255.BHO.1SOFTWARE\Classes\CrossriderApp0054255.SandboxSOFTWARE\Classes\CrossriderApp0054255.Sandbox.1SOFTWARE\Classes\CrossriderApp0054256.BHOSOFTWARE\Classes\CrossriderApp0054256.BHO.1SOFTWARE\Classes\CrossriderApp0054256.SandboxSOFTWARE\Classes\CrossriderApp0054256.Sandbox.1SOFTWARE\Classes\CrossriderApp0058026.BHOSOFTWARE\Classes\CrossriderApp0058026.BHO.1SOFTWARE\Classes\CrossriderApp0058026.SandboxSOFTWARE\Classes\CrossriderApp0058026.Sandbox.1SOFTWARE\Classes\CrossriderApp0058028.BHOSOFTWARE\Classes\CrossriderApp0058028.BHO.1SOFTWARE\Classes\CrossriderApp0058028.SandboxSOFTWARE\Classes\CrossriderApp0058028.Sandbox.1Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\free venSOFTWARE\InstalledBrowserExtensions\21636Software\InstalledBrowserExtensions\freevenSoftware\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421148}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421155}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421156}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511801126}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511801128}SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\free ven-bg.exeSoftware\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511161182}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511801126}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511801128}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421148}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421155}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421156}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511801126}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511801128}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421148}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421153}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421155}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421156}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511801128}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421148}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421153}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421155}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421156}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511801126}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511801128}SOFTWARE\Wow6432Node\free venSOFTWARE\Wow6432Node\InstalledBrowserExtensions\21636SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\free ven-bg.exeSoftware\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511161182}Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421153}Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511801128}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421153}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421155}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421156}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}free ven

Additional Information

The following directories were created:
%PROGRAMFILES%\Freeven pro%PROGRAMFILES%\free ven%PROGRAMFILES(x86)%\Freeven pro%PROGRAMFILES(x86)%\free ven
The following URL's were detected:
free ven
Loading...