Home Malware Programs Adware HulaToo

HulaToo

Posted: April 7, 2014

Threat Metric

Threat Level: 2/10
Infected PCs: 6,125
First Seen: April 7, 2014
Last Seen: November 25, 2024
OS(es) Affected: Windows


HulaToo is adware that may declare to help PC users save time and money while they are shopping on the Internet on online shopping related websites. HulaToo may spread and install itself on the computer system through packaged free applications that PC users can download from unreliable download websites. HulaToo may be downloaded and installed on the computer system without the PC user's authorization. HulaToo may show random pop-up advertisements and banners including offers, sales, discount coupons and deals, or the ones linked to the computer user's Internet surfing habits. HulaToo may compromise any Web browser installed on the PC and make changes to the default browser settings. HulaToo may also modify the default start page and search service or a new tab window with a questionable website that was produced to possibly benefit from commercial ad clicks and increased web traffic.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\HulaToo\bin\HulaToo.PurBrowse.exe File name: HulaToo.PurBrowse.exe
Size: 239.38 KB (239384 bytes)
MD5: 2823bb66d80cdb7fbd3814d68d0dc0d6
Detection count: 164
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\HulaToo\bin
Group: Malware file
Last Updated: May 28, 2014
system32\drivers\{3f538614-b636-4023-9ec2-564ada4b07b3}t64.sys File name: {3f538614-b636-4023-9ec2-564ada4b07b3}t64.sys
Size: 60.08 KB (60088 bytes)
MD5: 03ef8e9dc4e9e48c446e2dfd052c4e89
Detection count: 62
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 11, 2014
%TEMP%\HulaToo\HulaToo_Setup.exe File name: HulaToo_Setup.exe
Size: 2.05 MB (2056480 bytes)
MD5: 9afa54678176797b3bd4f1503b7d693a
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\HulaToo
Group: Malware file
Last Updated: May 28, 2014
%PROGRAMFILES%\HulaToo\updater.exe File name: updater.exe
Size: 109.56 KB (109568 bytes)
MD5: b883ac29f5dd0d4017c6fcf22e634c1c
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\HulaToo
Group: Malware file
Last Updated: June 3, 2014
%PROGRAMFILES%\HulaToo\HulaToouninstall.exe File name: HulaToouninstall.exe
Size: 241.51 KB (241518 bytes)
MD5: 9f26f5d7ec70b25ef53b6556cdf467fc
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\HulaToo
Group: Malware file
Last Updated: May 28, 2014
system32\drivers\{3f538614-b636-4023-9ec2-564ada4b07b3}Gt64.sys File name: {3f538614-b636-4023-9ec2-564ada4b07b3}Gt64.sys
Size: 60.08 KB (60088 bytes)
MD5: ef06501e0254fed086a79df9b88ddd2f
Detection count: 1
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: July 11, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{254EC5E9-9BD6-4CFD-917B-053AD6F4918A}HKEY..\..\..\..{RegistryKeys}Software\HulaTooSoftware\Microsoft\Internet Explorer\Approved Extensions\{3CF97276-ED63-4A58-9A3A-1FC58F19CC3C}Software\Microsoft\Internet Explorer\Approved Extensions\{718C8760-6E05-4C6E-A994-912579D0C532}SOFTWARE\Microsoft\Tracing\updateHulaToo_RASAPI32SOFTWARE\Microsoft\Tracing\updateHulaToo_RASMANCSSOFTWARE\Wow6432Node\HulaTooSOFTWARE\Wow6432Node\Microsoft\Tracing\updateHulaToo_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateHulaToo_RASMANCSSYSTEM\ControlSet001\services\eventlog\Application\Update HulaTooSYSTEM\ControlSet001\services\Update HulaTooSYSTEM\ControlSet002\services\eventlog\Application\Update HulaTooSYSTEM\ControlSet002\services\Update HulaTooSYSTEM\CurrentControlSet\services\eventlog\Application\Update HulaTooSYSTEM\CurrentControlSet\services\Update HulaTooHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}HulaToo

Additional Information

The following directories were created:
%PROGRAMFILES%\HulaToo%PROGRAMFILES(x86)%\HulaToo
The following URL's were detected:
HulaToo
Loading...