Home Malware Programs Adware Jelbrus

Jelbrus

Posted: April 10, 2015

Threat Metric

Ranking: 14,655
Threat Level: 2/10
Infected PCs: 19,817
First Seen: February 19, 2015
Last Seen: January 3, 2025
OS(es) Affected: Windows

Jelbrus is an adware application that may shell out several advertisement pop-ups when a user is surfing the internet. The Jelbrus program is usually installed automatically through a freeware program or other bundled software obtained from a downloads site on the internet. Use of Jelbrus ads may cause unwanted redirects to load up sites that have questionable content. The removal of Jelbrus ads may require using an antispyware tool to seek out any related components belonging to Jelbrus and then automatically remove them.

Aliases

Trj/Genetic.gen [Panda]Riskware/PUP_z [Fortinet]Win32.SuspectCrc [Ikarus]TROJ_GEN.R02KC0OGA15 [TrendMicro]Gen:Variant.Adware.Graftor [F-Secure]Win32:Adware-gen [Adw] [Avast]RDN/Generic PUP.z!gv [McAfee]Artemis!6FF7F7EB3BD6 [McAfee]Artemis [McAfee-GW-Edition]Win32:Malware-gen [Avast]Trojan.Gen.2 [Symantec]Driver Support [Sophos]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Local\Temp\hp2_1001.exe File name: hp2_1001.exe
Size: 541.69 KB (541696 bytes)
MD5: cc3a3e9c90648165a934128b23860908
Detection count: 180
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\hp2_1001.exe
Group: Malware file
Last Updated: May 10, 2023
%PROGRAMFILES%\Beta Secure Web\jswtask.exe File name: jswtask.exe
Size: 176.12 KB (176128 bytes)
MD5: 99025231bddebfba40f8a432a9a0a07b
Detection count: 105
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Beta Secure Web
Group: Malware file
Last Updated: May 27, 2017
%PROGRAMFILES%\Video Update\VideoUpdate.exe File name: VideoUpdate.exe
Size: 450.04 KB (450048 bytes)
MD5: 5c0d44ae0db03660aa6188e60cd5a64d
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Video Update
Group: Malware file
Last Updated: February 20, 2016
%PROGRAMFILES%\Media Defender\MediaDefender.exe File name: MediaDefender.exe
Size: 480.25 KB (480256 bytes)
MD5: f905565b14be2866e10840367e806165
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Media Defender
Group: Malware file
Last Updated: February 20, 2016
%PROGRAMFILES%\System Service\SystemService.exe File name: SystemService.exe
Size: 470.01 KB (470016 bytes)
MD5: cd07a0931a2c5cee77d6f504aa5302d1
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\System Service
Group: Malware file
Last Updated: February 20, 2016
%PROGRAMFILES%\PC Update\PCUpdate.exe File name: PCUpdate.exe
Size: 422.4 KB (422400 bytes)
MD5: d2a9c4b2802f8fc45a6bc034d69e9725
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\PC Update
Group: Malware file
Last Updated: February 20, 2016
%PROGRAMFILES(x86)%\Application Software\ApplicationSoftware.exe File name: ApplicationSoftware.exe
Size: 480.25 KB (480256 bytes)
MD5: bec7e1f621aa1b234b42f08e58c3ea53
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Application Software
Group: Malware file
Last Updated: February 20, 2016
%PROGRAMFILES%\Personal Computer Security\Personal ComputerSecurity.exe File name: Personal ComputerSecurity.exe
Size: 422.4 KB (422400 bytes)
MD5: c21dc4cf456865f4fd88f71212529cc5
Detection count: 20
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Personal Computer Security
Group: Malware file
Last Updated: February 20, 2016
%PROGRAMFILES%\Safesoft Protector\sswworker.exe File name: sswworker.exe
Size: 145.92 KB (145920 bytes)
MD5: 67ca6070d0afd2008173f9ee2f29750d
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Safesoft Protector
Group: Malware file
Last Updated: June 23, 2021
%PROGRAMFILES(x86)%\Upload Software\UploadSoftware.exe File name: UploadSoftware.exe
Size: 470.01 KB (470016 bytes)
MD5: ffb90849727a90ba166bd9ec1fc3260d
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Upload Software
Group: Malware file
Last Updated: February 20, 2016
%PROGRAMFILES%\Performance Security\PerformanceSecurity.exe File name: PerformanceSecurity.exe
Size: 415.74 KB (415744 bytes)
MD5: 3b61d9c11d20e82bc80ddc610f8ca67b
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Performance Security
Group: Malware file
Last Updated: February 20, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{2F137995-4D26-44AD-9C4E-91055090A817}{A1E7709A-3AFB-49B8-8719-CCBF3F73CCB1}{D3C24E2B-C820-4492-9B69-11BF7163F998}Regexp file mask%WINDIR%\System32\Tasks\Megasoft Security ViewerHKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Jelbrus Secure Web TaskSystem\ControlSet001\Services\Live Malware ProtectionSystem\ControlSet002\Services\Live Malware ProtectionSystem\CurrentControlSet\Services\Live Malware ProtectionHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{A428B273-73B2-E11F-895C-669BA9344EE5}

Additional Information

The following directories were created:
%PROGRAMFILES%\AFC Secure Net%PROGRAMFILES%\Alfasistem Memory%PROGRAMFILES%\Beta Task Menager%PROGRAMFILES%\Computer Task Menager%PROGRAMFILES%\Gamma Task Menager%PROGRAMFILES%\InternetSoft Secure Web%PROGRAMFILES%\InternetSoft Security%PROGRAMFILES%\Jelbrus Secure Web%PROGRAMFILES%\Jelbruss Secure Web%PROGRAMFILES%\Megasoft Security%PROGRAMFILES%\MightySoft Safe Network%PROGRAMFILES%\Omega Secure Net%PROGRAMFILES%\SKF Safe Network%PROGRAMFILES%\Safesoft Protector%PROGRAMFILES%\SmartComp Safe Network%PROGRAMFILES%\Techsmart Computer%PROGRAMFILES(x86)%\AFC Secure Net%PROGRAMFILES(x86)%\Alfasistem Memory%PROGRAMFILES(x86)%\Beta Task Menager%PROGRAMFILES(x86)%\Computer Task Menager%PROGRAMFILES(x86)%\Gamma Task Menager%PROGRAMFILES(x86)%\InternetSoft Secure Web%PROGRAMFILES(x86)%\InternetSoft Security%PROGRAMFILES(x86)%\Jelbrus Secure Web%PROGRAMFILES(x86)%\Jelbruss Secure Web%PROGRAMFILES(x86)%\Megasoft Security%PROGRAMFILES(x86)%\MightySoft Computer%PROGRAMFILES(x86)%\MightySoft Safe Network%PROGRAMFILES(x86)%\Omega Secure Net%PROGRAMFILES(x86)%\SKF Safe Network%PROGRAMFILES(x86)%\SKF Secure Net%PROGRAMFILES(x86)%\Safesoft Protector%PROGRAMFILES(x86)%\Smart Secure Web%PROGRAMFILES(x86)%\SmartComp Safe Network%PROGRAMFILES(x86)%\Techsmart Computer
The following cookies were detected:
majuwe.com
Loading...