Home Malware Programs Browser Plugins Linkury Smartbar

Linkury Smartbar

Posted: March 7, 2013

Threat Metric

Ranking: 5,559
Threat Level: 2/10
Infected PCs: 589,359
First Seen: March 7, 2013
Last Seen: March 3, 2025
OS(es) Affected: Windows

Linkury Smartbar is a web browser plugin and potentially threatening content management app. Through Linkury Smartbar computer users may take notice to annoying commercial pop-ups and other activities conducted that ware unwanted. Some computer users may find Linkury Smartbar to be more of a nuisance than an actually helping browser add-on. The questionable behavior of Linkury Smartbar may be the deal breaker for many computer users in wanting to remove Linkury Smartbar. Removal of Linkury Smartbar may be accomplished using antispyware tools.

Aliases

PUP/LinkUry [Panda]ApplicUnwnt [Comodo]not-a-virus:AdWare.MSIL [Ikarus]Adware/MSIL_Agent [Fortinet]Trojan.MulDrop4.24551 [DrWeb]not-a-virus:AdWare.MSIL.Agent.af [Kaspersky]WS.Reputation.1 [Symantec]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%COMMONPROGRAMFILES%\light-lab\uninstall.exe File name: uninstall.exe
Size: 3.62 MB (3622912 bytes)
MD5: 5b5380b129110f1ca8fe26b57543ffec
Detection count: 14,198
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\light-lab\uninstall.exe
Group: Malware file
Last Updated: February 22, 2024
C:\Users\<username>\Desktop\dati salvati\AppData\Local\Smartbar\Application\Smartbar.exe File name: Smartbar.exe
Size: 28.96 KB (28968 bytes)
MD5: 1135b0ba618108cd838c0250a779d38b
Detection count: 5,195
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop\dati salvati\AppData\Local\Smartbar\Application\Smartbar.exe
Group: Malware file
Last Updated: August 9, 2023
%SYSTEMDRIVE%\AdwCleaner\FileQuarantine\C\ProgramData\Quoteex\Warmdom.exe.vir File name: Warmdom.exe.vir
Size: 138.75 KB (138752 bytes)
MD5: 5770b1beabdc8aa2eef68cff0420d5f0
Detection count: 2,195
Mime Type: unknown/vir
Path: %SYSTEMDRIVE%\AdwCleaner\FileQuarantine\C\ProgramData\Quoteex\Warmdom.exe.vir
Group: Malware file
Last Updated: January 26, 2025
C:\ProgramData\Packer\Files\ServiceInstall\ServiceInstall.exe File name: ServiceInstall.exe
Size: 35.84 KB (35840 bytes)
MD5: db2b2ab65f30a17e8e1b271ede182186
Detection count: 1,457
File type: Executable File
Mime Type: unknown/exe
Path: C:\ProgramData\Packer\Files\ServiceInstall\ServiceInstall.exe
Group: Malware file
Last Updated: August 19, 2022
%LOCALAPPDATA%\Smartbar\Application\Linkury.exe File name: Linkury.exe
Size: 13.82 KB (13824 bytes)
MD5: bee18a2821f6fffd15ed9e51f2adcbb8
Detection count: 1,401
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Smartbar\Application
Group: Malware file
Last Updated: July 16, 2021
%LOCALAPPDATA%\Smartbar\Application\WhiteSmoke.exe File name: WhiteSmoke.exe
Size: 13.31 KB (13312 bytes)
MD5: 3642d100e0e1cd5f9936b5bff40fb5d7
Detection count: 290
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Smartbar\Application
Group: Malware file
Last Updated: March 14, 2014
%LOCALAPPDATA%\Smartbar\Application\Luckysave.exe File name: Luckysave.exe
Size: 13.82 KB (13824 bytes)
MD5: 490c0bcd71a7ef5118a5ab18f6cd768f
Detection count: 274
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Smartbar\Application
Group: Malware file
Last Updated: April 8, 2014
%LOCALAPPDATA%\Smartbar\Application\SnapDo.exe File name: SnapDo.exe
Size: 21.53 KB (21536 bytes)
MD5: bcc5abf0b510dfd0d77bd5680db8f175
Detection count: 162
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Smartbar\Application
Group: Malware file
Last Updated: April 8, 2014
C:\System Volume Information\_restore{7B9D3E36-6E9B-4FF9-BDD9-C28116800B95}\RP316\A0118661.exe File name: A0118661.exe
Size: 20.27 KB (20272 bytes)
MD5: 68eb124634a8e03d0d49320abf6f90be
Detection count: 138
File type: Executable File
Mime Type: unknown/exe
Path: C:\System Volume Information\_restore{7B9D3E36-6E9B-4FF9-BDD9-C28116800B95}\RP316\A0118661.exe
Group: Malware file
Last Updated: August 28, 2023
%LOCALAPPDATA%\Smartbar\Application\QuickShare.exe File name: QuickShare.exe
Size: 20.24 KB (20248 bytes)
MD5: aa53e382caee48ef696c37e1f01a7787
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Smartbar\Application
Group: Malware file
Last Updated: October 28, 2013

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{0ED2C1F5-0D52-3528-8D19-2B3810844C64}{48791EE8-18B0-3225-94A7-2E912681434F}{C0525F65-37A6-3CB1-B930-D0AD83655FCD}{F149A3F1-9BED-3E8D-886C-AC801394E432}HKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\LinkurySmartBar.BandObjectAttributeSOFTWARE\Classes\LinkurySmartBar.DockingPanelSOFTWARE\Classes\LinkurySmartBar.LinkuryMenuFormSOFTWARE\Classes\LinkurySmartBar.LinkurySmartBarBandObjectSoftware\LinkurySoftware\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\Linkury.exeSOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Browser Infrastructure HelperSOFTWARE\Microsoft\Tracing\Linkury_RASAPI32SOFTWARE\Microsoft\Tracing\Linkury_RASMANCSSOFTWARE\Microsoft\Tracing\Mntz_Installer_RASAPI32SOFTWARE\Microsoft\Tracing\Mntz_Installer_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\Run\Linkury Chrome SmartbarSOFTWARE\mtPlusdaxSOFTWARE\mtSnorlerSOFTWARE\Wow6432Node\Microsoft\Tracing\Linkury_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Linkury_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\Mntz_Installer_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Mntz_Installer_RASMANCSSOFTWARE\Wow6432Node\mtPlusdaxSOFTWARE\Wow6432Node\mtSnorlerSYSTEM\CurrentControlSet\services\sulpnarHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{4E732E5D-E577-451A-9BB1-CBE64A2CBC2F}{D96EBFC0-C680-4463-B4F0-299E48771819}

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Linkury%ALLUSERSPROFILE%\MachineHelper%ALLUSERSPROFILE%\Snorler%ALLUSERSPROFILE%\Snorlers%ALLUSERSPROFILE%\afoir%ALLUSERSPROFILE%\sulpnar%COMMONPROGRAMFILES%\Doubleplus%COMMONPROGRAMFILES%\Graveity%COMMONPROGRAMFILES%\Nimlam%COMMONPROGRAMFILES%\Sanstring%COMMONPROGRAMFILES%\StanAir%COMMONPROGRAMFILES%\Trippletop%COMMONPROGRAMFILES%\Truejob%COMMONPROGRAMFILES%\Vilalex%COMMONPROGRAMFILES%\Vivatax%COMMONPROGRAMFILES%\Zennix%COMMONPROGRAMFILES(X86)%\Lightfan%COMMONPROGRAMFILES(x86)%\Doubleplus%COMMONPROGRAMFILES(x86)%\Graveity%COMMONPROGRAMFILES(x86)%\Nimlam%COMMONPROGRAMFILES(x86)%\Sanstring%COMMONPROGRAMFILES(x86)%\StanAir%COMMONPROGRAMFILES(x86)%\Trippletop%COMMONPROGRAMFILES(x86)%\Truejob%COMMONPROGRAMFILES(x86)%\Vilalex%COMMONPROGRAMFILES(x86)%\Vivatax%COMMONPROGRAMFILES(x86)%\Zennix%COMMONPROGRAMFILES(x86)%\light-lab%LOCALAPPDATA%\Linkury%PROGRAMFILES%\Linkury%PROGRAMFILES%\Stpro%PROGRAMFILES(x86)%\Linkury%PROGRAMFILES(x86)%\Stpro%Temp%\Shuka
The following URL's were detected:
Linkury Smartbar
Loading...