Home Malware Programs Adware LuckyTab

LuckyTab

Posted: November 27, 2014

Threat Metric

Ranking: 12,334
Threat Level: 2/10
Infected PCs: 25,845
First Seen: November 10, 2014
Last Seen: February 4, 2025
OS(es) Affected: Windows

LuckyTab is an adware-related browser plugin, add-on or extension that is created and published by Red Sky Sp. z o.o. Such applications are known to inject a large number of unwanted advertisements. Users may decide not to install LuckyTab no matter how well-advertised it is since it is clearly stated that it injects various types of ads without limitation. Advertisements by LuckyTab may be search-related, banners, pop-ups, coupons, discounts and offers and even video ads. LuckyTab is known to run as a background process with booting the system. LuckyTab may also cause unwanted redirects while browsing the Internet in order to generate online traffic of a certain domain. Since there have been malware detected in this program, computer security specialists advise users to remove it using a legitimate anti-malware program.

Aliases

BehavesLike.Win32.BadFile.tc [McAfee-GW-Edition]Virus.Win32.Virut.CE [Comodo]Lucky Tab [Sophos]WS.Reputation.1 [Symantec]Artemis!362BA74444E4 [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\BACKUP ALEXANDRE\Bachup 10-05-2019\COPIA HD CASA ALEXANDRE 02\Users\<username>\AppData\Local\Temp\1IcItnb5Id.tmp File name: 1IcItnb5Id.tmp
Size: 1.4 MB (1409984 bytes)
MD5: 362ba74444e406fa147f756c52f368d9
Detection count: 9,582
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\BACKUP ALEXANDRE\Bachup 10-05-2019\COPIA HD CASA ALEXANDRE 02\Users\<username>\AppData\Local\Temp\1IcItnb5Id.tmp
Group: Malware file
Last Updated: December 22, 2024
C:\Users\<username>\AppData\Local\Temp\AldWktaG0B.tmp File name: AldWktaG0B.tmp
Size: 371.71 KB (371712 bytes)
MD5: 1b056d5043f510b08a7e88942fabc98e
Detection count: 1,930
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Local\Temp\AldWktaG0B.tmp
Group: Malware file
Last Updated: April 16, 2024
C:\Users\<username>\AppData\Local\Temp\Bp2f8mOjb3.tmp File name: Bp2f8mOjb3.tmp
Size: 957.95 KB (957952 bytes)
MD5: bd2e42b70303f23a894eb7e713fb940d
Detection count: 752
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Local\Temp\Bp2f8mOjb3.tmp
Group: Malware file
Last Updated: January 7, 2022
%PROGRAMFILES%\LuckyTab\LuckyTab.exe File name: LuckyTab.exe
Size: 1.39 MB (1394112 bytes)
MD5: ee89c37baddca1996f6d8ce33cc8d933
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\LuckyTab
Group: Malware file
Last Updated: March 23, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\LuckyTabSoftware\Wow6432Node\LuckyTabHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}LuckyTab

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\LuckyTab%PROGRAMFILES%\LuckyTab%PROGRAMFILES(x86)%\LuckyTab
The following URL's were detected:
lucky-tab.com

Related Posts

Loading...