Home Possibly Unwanted Program MyStart Toolbar

MyStart Toolbar

Posted: October 9, 2014

Threat Metric

Ranking: 7,527
Threat Level: 2/10
Infected PCs: 49,971
First Seen: October 9, 2014
Last Seen: March 10, 2025
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Local\Setup Wizard\468e012c-4438-4f6b-8474-0573214beac2\mystarttb_5.5.0.2_samba.exe File name: mystarttb_5.5.0.2_samba.exe
Size: 4.27 MB (4279568 bytes)
MD5: 1aad756d03823220f833862c12b78c63
Detection count: 431
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Setup Wizard\468e012c-4438-4f6b-8474-0573214beac2\mystarttb_5.5.0.2_samba.exe
Group: Malware file
Last Updated: December 5, 2023
C:\Users\<username>\AppData\Local\Temp\91A0tmp\mystarttb_5.4.1.4_sambamedia.exe File name: mystarttb_5.4.1.4_sambamedia.exe
Size: 5.46 MB (5464760 bytes)
MD5: 0bf4df5eea355a176d50139360a68ea0
Detection count: 180
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\91A0tmp\mystarttb_5.4.1.4_sambamedia.exe
Group: Malware file
Last Updated: September 25, 2024
%USERPROFILE%\Downloads\mystartTb (10).exe File name: mystartTb (10).exe
Size: 5.38 MB (5384576 bytes)
MD5: 61f65484356c7d19dffd4a0dc9eb17c3
Detection count: 79
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Downloads
Group: Malware file
Last Updated: February 13, 2016
C:\Users\<username>\AppData\Local\Temp\nsn3CD9.tmp\mystartTb_5.2.1.2_manycam.exe File name: mystartTb_5.2.1.2_manycam.exe
Size: 4.45 MB (4459816 bytes)
MD5: 538f108ec799b604ecee84951ff6247a
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\nsn3CD9.tmp\mystartTb_5.2.1.2_manycam.exe
Group: Malware file
Last Updated: April 2, 2022

More files

Registry Modifications

The following newly produced Registry Values are:

File name without pathhttps_www.mystart.com_0.localstoragehttps_www.mystart.com_0.localstorage-journalmystarttb_Install_Log.txtHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\mystarttbSoftware\Microsoft\Internet Explorer\DOMStorage\mystart.comSOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\${ieUtilsLightElevationPolicyID}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0C5365B7-358F-402d-A440-F1270AEF1175}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{607b689f-7600-45e4-b8e5-887f72dab15c}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2159D33-3CE2-401B-8967-1B270628A311}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0D4A4BC-F7CD-436E-B1FA-25637BA0F5BE}SOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystart.comSoftware\Microsoft\Internet Explorer\LowRegistry\DOMStorage\toolbar.mystart.comSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.mystart.comSOFTWARE\mystarttbSOFTWARE\Wow6432Node\Google\Chrome\Extensions\higmobnhnmdjomklfkmhpmmcoediaaocSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\${ieUtilsLightElevationPolicyID}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0C5365B7-358F-402d-A440-F1270AEF1175}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{607b689f-7600-45e4-b8e5-887f72dab15c}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2159D33-3CE2-401B-8967-1B270628A311}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0D4A4BC-F7CD-436E-B1FA-25637BA0F5BE}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}SOFTWARE\Wow6432Node\mystarttbHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}mystarttb

Additional Information

The following directories were created:
%LOCALAPPDATA%\Packages\windows_ie_ac_001\AC\mystarttb%PROGRAMFILES%\mystarttb%PROGRAMFILES(x86)%\mystarttb%USERPROFILE%\AppData\LocalLow\mystarttb%appdata%\mystarttb

Related Posts

Loading...