Home Malware Programs Adware Gabpath

Gabpath

Posted: November 30, 2010

Threat Metric

Ranking: 19,106
Threat Level: 2/10
Infected PCs: 3,665
First Seen: November 30, 2010
Last Seen: December 27, 2024
OS(es) Affected: Windows

Gabpath is a malicious adware program Gabpath is advertised as a browser application that allegedly finds offers for you based on what you're looking for on the Internet. Gabpath looks and works as badware in many important ways.
The most annoying effect of Gabpath is the endless pop-up alerts that it creates as you're browsing the Internet. These pop-up messages might be completely random. You will also get lots of fake browser alerts using tricky marketing practices to make you to click links, download something, or pay money.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%Mozilla Firefoxcomponentsgpff.dll
    2 [%APPDATA%]\Microsoft\Windows\aigcvm.exe
    3 [%APPDATA%]\Microsoft\Windows\atnnuqm.exe
    4 [%APPDATA%]\Microsoft\Windows\avnucb.exe
    5 [%APPDATA%]\Microsoft\Windows\ayvnglj.exe
    6 [%APPDATA%]\Microsoft\Windows\ccgdgydy.exe
    7 [%APPDATA%]\Microsoft\Windows\dusqqdli.exe
    8 [%APPDATA%]\Microsoft\Windows\eeiocpcn.exe
    9 [%APPDATA%]\Microsoft\Windows\ehkgetpr.exe
    10 [%APPDATA%]\Microsoft\Windows\fjelike.exe
    11 [%APPDATA%]\Microsoft\Windows\fkvqyowp.exe
    12 [%APPDATA%]\Microsoft\Windows\hctbmq.exe
    13 [%APPDATA%]\Microsoft\Windows\hdbsod.exe
    14 [%APPDATA%]\Microsoft\Windows\ibgejtpmk.exe
    15 [%APPDATA%]\Microsoft\Windows\iwlyvwd.exe
    16 [%APPDATA%]\Microsoft\Windows\jiqepc.exe
    17 [%APPDATA%]\Microsoft\Windows\jmyxls.exe
    18 [%APPDATA%]\Microsoft\Windows\jsibdlqn.exe
    19 [%APPDATA%]\Microsoft\Windows\kdpuqwpw.exe
    20 [%APPDATA%]\Microsoft\Windows\lclbfkex.exe
    21 [%APPDATA%]\Microsoft\Windows\levvyhm.exe
    22 [%APPDATA%]\Microsoft\Windows\lhmxonff.exe
    23 [%APPDATA%]\Microsoft\Windows\lqvegr.exe
    24 [%APPDATA%]\Microsoft\Windows\mclojjec.exe
    25 [%APPDATA%]\Microsoft\Windows\mhujkw.exe
    26 [%APPDATA%]\Microsoft\Windows\mmqwwn.exe
    27 [%APPDATA%]\Microsoft\Windows\mnbaebfps.exe
    28 [%APPDATA%]\Microsoft\Windows\modxfpa.exe
    29 [%APPDATA%]\Microsoft\Windows\mpyemic.exe
    30 [%APPDATA%]\Microsoft\Windows\njhlac.exe
    31 [%APPDATA%]\Microsoft\Windows\ooelpelba.exe
    32 [%APPDATA%]\Microsoft\Windows\pbktfeqfv.exe
    33 [%APPDATA%]\Microsoft\Windows\pjmxeqhse.exe
    34 [%APPDATA%]\Microsoft\Windows\pqtrbgfs.exe
    35 [%APPDATA%]\Microsoft\Windows\pxhwkxr.exe
    36 [%APPDATA%]\Microsoft\Windows\qhmsijo.exe
    37 [%APPDATA%]\Microsoft\Windows\qjfiknjj.exe
    38 [%APPDATA%]\Microsoft\Windows\qlowbg.exe
    39 [%APPDATA%]\Microsoft\Windows\qlttlcrcw.exe
    40 [%APPDATA%]\Microsoft\Windows\qtjada.exe
    41 [%APPDATA%]\Microsoft\Windows\qxjliycp.exe
    42 [%APPDATA%]\Microsoft\Windows\rglvat.exe
    43 [%APPDATA%]\Microsoft\Windows\rlxotmp.exe
    44 [%APPDATA%]\Microsoft\Windows\sgxfnfiq.exe
    45 [%APPDATA%]\Microsoft\Windows\sjaftaih.exe
    46 [%APPDATA%]\Microsoft\Windows\sqjioxep.exe
    47 [%APPDATA%]\Microsoft\Windows\tichod.exe
    48 [%APPDATA%]\Microsoft\Windows\tmwptvupa.exe
    49 [%APPDATA%]\Microsoft\Windows\tyalmdx.exe
    50 [%APPDATA%]\Microsoft\Windows\ufbtaemk.exe
    51 [%APPDATA%]\Microsoft\Windows\ufconnq.exe
    52 [%APPDATA%]\Microsoft\Windows\uwlrajsf.exe
    53 [%APPDATA%]\Microsoft\Windows\vctxfjek.exe
    54 [%APPDATA%]\Microsoft\Windows\vlpymen.exe
    55 [%APPDATA%]\Microsoft\Windows\vrggtj.exe
    56 [%APPDATA%]\Microsoft\Windows\wesendgpi.exe
    57 [%APPDATA%]\Microsoft\Windows\wvyaopw.exe
    58 [%APPDATA%]\Microsoft\Windows\wyjpcgdg.exe
    59 [%APPDATA%]\Microsoft\Windows\xcijgdvl.exe
    60 [%APPDATA%]\Microsoft\Windows\ydpivgfu.exe
    61 [%APPDATA%]\Microsoft\Windows\yjtlqxl.exe
    62 [%APPDATA%]\Microsoft\Windows\yprbcd.exe
    63 [%APPDATA%]\Microsoft\Windows\yqafcnw.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}[%APPDATA%]\GabPath[%SYSTEM_DRIVE%]\Users\?¬??\AppData\Roaming\GabPath

Aliases

Generic4.AIUQ [AVG]TR/Dldr.Agent.dwxx [AntiVir]Trojan-Downloader.Win32.Agent.dwxx [Kaspersky]Artemis!8ACE4599C497 [McAfee]Adware/Gabpath.A.1266 [AntiVir]Trojan.Win32.Gabba.dhl [Kaspersky]Adware/Gabpath.A.2667 [AntiVir]not-a-virus:AdWare.Win32.Gaba.gfs [Kaspersky]Win32.Trojan [eSafe]Win32:Gabpath-EW [Avast]Artemis!D352E363B148 [McAfee]Adware/GabPath.S.34 [AntiVir]Artemis!6344F23D3C82 [McAfee]TR/Graftor.48688.12 [AntiVir]Trojan.Win32.FakeAV.oaid [Kaspersky]
More aliases (1143)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\WhereSphere\wheresphere.exe File name: wheresphere.exe
Size: 1.14 MB (1146880 bytes)
MD5: 3eabf58796dc856b4da74b7412da7a67
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\WhereSphere
Group: Malware file
Last Updated: March 12, 2013
%WINDIR%\system32\4778.dll File name: 4778.dll
Size: 806.91 KB (806912 bytes)
MD5: 23126d1e6f6f9c00f9b2985d3e2d6a3e
Detection count: 75
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: October 17, 2011
%APPDATA%\Microsoft\Windows\nsaEBBA.exe File name: nsaEBBA.exe
Size: 245.76 KB (245760 bytes)
MD5: 54d6a0de212865fe927eacf4347c380c
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: December 12, 2011
%APPDATA%\Microsoft\Windows\uawesqdx.exe File name: uawesqdx.exe
Size: 249.85 KB (249856 bytes)
MD5: 2f11b75f018e56e6b2800dd4c0d95005
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: July 11, 2011
%APPDATA%\Minoral\minoral.exe File name: minoral.exe
Size: 749.56 KB (749568 bytes)
MD5: c43e87365d142f7d0a023bc82800c00c
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Minoral
Group: Malware file
Last Updated: November 26, 2012
%APPDATA%\Microsoft\Windows\oulwsvm.exe File name: oulwsvm.exe
Size: 286.72 KB (286720 bytes)
MD5: 73377916de2934cb21e2e918fbb526e9
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: November 26, 2012
%APPDATA%\Microsoft\Windows\ctkseftv.exe File name: ctkseftv.exe
Size: 258.04 KB (258048 bytes)
MD5: deba3d81e91be9335f5da0e39a546023
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: February 22, 2013
%APPDATA%\Microsoft\Windows\fatkidb.exe File name: fatkidb.exe
Size: 245.76 KB (245760 bytes)
MD5: 5394e1e4313881b5eb7b0ecf065462d9
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: April 2, 2013
%APPDATA%\Microsoft\Windows\bcfiugj.exe File name: bcfiugj.exe
Size: 233.47 KB (233472 bytes)
MD5: bc486977a42b54b47a5256d863a9432d
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: January 31, 2013
%APPDATA%\Microsoft\Windows\efogwqla.exe File name: efogwqla.exe
Size: 233.47 KB (233472 bytes)
MD5: ff5ebcd630e69d690c31d4dd8b62ef7c
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: January 10, 2012
%APPDATA%\Microsoft\Windows\lqginlcsi.exe File name: lqginlcsi.exe
Size: 245.76 KB (245760 bytes)
MD5: 239138e74f55d5b3114c3d07b7a09873
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: May 6, 2011
%APPDATA%\Microsoft\Windows\mtjmlhm.exe File name: mtjmlhm.exe
Size: 253.95 KB (253952 bytes)
MD5: 66768e2d5c5ce3eb860fd7a2afca287d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: May 18, 2011
%APPDATA%\Microsoft\Windows\egwegip.exe File name: egwegip.exe
Size: 253.95 KB (253952 bytes)
MD5: 3b9e761ec8022eb2a786f3b16e299bed
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: May 6, 2011
%APPDATA%\Microsoft\Windows\prcrnns.exe File name: prcrnns.exe
Size: 249.85 KB (249856 bytes)
MD5: 225902081f9f3cedbd71be5531fafadd
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: January 11, 2012
%APPDATA%\Microsoft\Windows\pcwkyaukg.exe File name: pcwkyaukg.exe
Size: 233.47 KB (233472 bytes)
MD5: 1414ab3b615eb9b5f04887344629e66d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: January 8, 2013
%APPDATA%\Microsoft\Windows\iabnjr.exe File name: iabnjr.exe
Size: 233.47 KB (233472 bytes)
MD5: 5acb6d5d6e21c8bbf905e7e656c07c64
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: February 25, 2013
%APPDATA%\Microsoft\Windows\rkopud.exe File name: rkopud.exe
Size: 249.85 KB (249856 bytes)
MD5: 51a752a3484f05f9b8bd374d1ef1ca03
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: March 21, 2013
%APPDATA%\Microsoft\Windows\AdvService.exe File name: AdvService.exe
Size: 434.17 KB (434176 bytes)
MD5: 83d5c5bef22d644fcbe4af7704b30a3c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: March 13, 2013

More files

Related Posts

Loading...