Home Malware Programs Potentially Unwanted Programs (PUPs) PackageTracer Toolbar

PackageTracer Toolbar

Posted: July 9, 2015

Threat Metric

Ranking: 1,025
Threat Level: 1/10
Infected PCs: 110,547
First Seen: July 9, 2015
Last Seen: October 17, 2023
OS(es) Affected: Windows

PackageTracer Toolbar is browser toolbar, which may appear in Google Chrome, Mozilla Firefox, and Internet Explorer. It is created by Mindspark Interactive Network – a software developer, which fills the cyberspace with tons of add-on applications for popular web browser applications. Similarly to TrackAPackage Toolbar, which is also made by Mindspark, PackageTracer Toolbar offers its clients the opportunity to track their packages. However, this feature is not something that can benefit you too much, as all data is directly borrowed from the websites of FedEx, UPS, and DHL. The purpose of this functionality is just to encourage the installation, and the real effects of PackageTracer Toolbar tend to be rather negative.

PackageTracer is classified as a Potentially Unwanted Program (PUP) by computer security researchers and may be used by Mindspark to promote affiliate sites. As a result, you may face unwanted changes to your Web browser's settings, such as the new tab page, homepage, or start page. Eliminating PackageTracer may require going through the Control Panel or using an anti-malware program to remove PackageTracer from your system automatically.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{02DD685E-58AB-4520-AD9C-66B632B42C20}{0BBB65BC-F7B6-4B97-AEED-943FBA5E9FE9}{113DDEDD-85B0-4F48-B9B0-7A727DB38CB5}{1542B07A-1782-4F45-9958-4EBEF2AC7572}{16214686-1e76-47fe-b739-aa4bd3a13ec8}{1ADAB76E-5EF4-4378-8D10-782362C63A1B}{1cfb2c4e-127a-4aae-913b-b39b5d7bae25}{1F48C227-A0A1-464D-90CC-35B1814B0051}{28F70F54-D04C-4B8A-ABD8-62E32C6921A8}{2D17A471-4F95-4825-8CCE-44CE766975F5}{2D5B54B9-438C-43B2-9CAA-1ED2C4AE07FB}{2dd7bedb-6f2a-4048-af77-90266567bac1}{2EC612A8-41B8-441C-AEBA-3CAC0C0362F0}{318E72EC-4E67-44B4-98B6-8D501273CC9E}{3CD9E9D7-8EEA-4F8A-949E-E49CE302F77C}{3F2F44D6-134F-446B-A951-C092B8E22DBC}{439AB1A0-A73D-4B97-B4B8-0F6FF744D225}{44A4E322-4715-4510-803A-36DCBAF5C2EF}{4632B0CD-1CC8-47FC-ADFE-ADD2736D95B3}{4718349c-27bd-45bb-8ca6-81415f9f273e}{49f4c294-708c-45bb-8791-5fd21d66d464}{4e57733b-09ff-431e-a2f5-4b07f3ed28a8}{4f8a7ea8-cdef-4393-8191-38dc6448f967}{50044cbd-015d-4a94-803a-01d2324adba8}{55252F20-4056-449D-B7D8-F89382ACA5D7}{5f59de3c-43c0-4bd7-8517-41e17f84ddad}{6702c38d-00aa-41ce-b630-e4479bc3725d}{87011c4e-fcde-4476-9348-ecf16134fc1f}{87eab57c-d0b7-4ca9-8e26-191bfc989e26}{94DB5708-4A20-4469-80FD-87D5F97A71D4}{9C752421-768E-4075-8777-5FE650498B57}{A8A3E8B0-AD44-451D-87D7-8B9146BCCB6C}{AAD268D5-EB86-4457-901C-6FBC8DB1D571}{AE55129C-5F3D-4D12-A39F-6F1996ED1638}{af180b28-f7ce-49ea-b89f-26996f69bd6b}{B3A0484A-A120-4AF5-9C8A-B7F497F58D05}{B4BC56A7-237C-4EB5-90CF-F8E3E7E8A118}{B6601F99-ECA1-4A1E-89CF-F2E3BA2D8766}{B8B0C208-B373-40D1-8A50-70346959AD9D}{B926E915-57A2-47ED-96C4-8766E7AC6DE0}{C64F3F37-279A-4D74-B377-D624208A5266}{C8E51C0B-A8B2-44C4-977A-D49ACA72C9DD}{CAA7692A-5A88-48C0-A438-E17724555B7A}{d0e97806-f004-4451-a47d-8532b4879ea9}{D1149832-ABE6-4A57-933D-5D5A6045EE9D}{D43836ED-8BDF-4EC9-AB56-EFC827F217FA}{D7DC22C2-62C8-4F2A-91BB-63DDD5B3E394}{F0C27FA6-8757-44E5-A775-075E55FE4FC6}{F713AA83-BD1F-4020-9D5F-09A86A8EF470}{ff343558-d5a5-454a-bdd8-c5c81e179fed}File name without pathhttp_PackageTracer.dl.myway.com_0.localstoragehttp_PackageTracer.dl.myway.com_0.localstorage-journalhttp_PackageTracer.dl.tb.ask.com_0.localstoragehttp_PackageTracer.dl.tb.ask.com_0.localstorage-journalpackagetracer.dl.myway[1].xmlpackagetracer.dl.tb.ask[1].xmlwww.packagetracer[1].xmlHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\PackageTracer_69Software\Microsoft\Internet Explorer\Approved Extensions\{87011C4E-FCDE-4476-9348-ECF16134FC1F}Software\Microsoft\Internet Explorer\Approved Extensions\{87EAB57C-D0B7-4CA9-8E26-191BFC989E26}Software\Microsoft\Internet Explorer\Approved Extensions\{FF343558-D5A5-454A-BDD8-C5C81E179FED}Software\Microsoft\Internet Explorer\DOMStorage\packagetracer.comSoftware\Microsoft\Internet Explorer\DOMStorage\packagetracer.dl.myway.comSoftware\Microsoft\Internet Explorer\DOMStorage\packagetracer.dl.tb.ask.comSoftware\Microsoft\Internet Explorer\DOMStorage\packagetracer.wdgserv.comSoftware\Microsoft\Internet Explorer\DOMStorage\www.packagetracer.comSoftware\Microsoft\Internet Explorer\SearchScopes\{F5827716-9540-492E-9E9A-9F18BB2E7912}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{FF343558-D5A5-454A-BDD8-C5C81E179FED}SOFTWARE\Microsoft\Tracing\PackageTracer_RASAPI32SOFTWARE\Microsoft\Tracing\PackageTracer_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{87011C4E-FCDE-4476-9348-ECF16134FC1F}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{87EAB57C-D0B7-4CA9-8E26-191BFC989E26}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{87011C4E-FCDE-4476-9348-ECF16134FC1F}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{87EAB57C-D0B7-4CA9-8E26-191BFC989E26}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FF343558-D5A5-454A-BDD8-C5C81E179FED}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{87011C4E-FCDE-4476-9348-ECF16134FC1F}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{87EAB57C-D0B7-4CA9-8E26-191BFC989E26}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FF343558-D5A5-454A-BDD8-C5C81E179FED}Software\PackageTracerSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{F5827716-9540-492E-9E9A-9F18BB2E7912}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{FF343558-D5A5-454A-BDD8-C5C81E179FED}SOFTWARE\Wow6432Node\Microsoft\Tracing\PackageTracer_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\PackageTracer_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{87011C4E-FCDE-4476-9348-ECF16134FC1F}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{87EAB57C-D0B7-4CA9-8E26-191BFC989E26}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}PackageTracer_69bar Uninstall FirefoxPackageTracer_69bar Uninstall Internet ExplorerPackageTracerTooltab Uninstall Internet Explorer

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\PackageTracer%LOCALAPPDATA%\PackageTracerTooltab
Loading...