Home Malware Programs Bad Toolbars PConverter Toolbar

PConverter Toolbar

Posted: October 6, 2015

Threat Metric

Ranking: 599
Threat Level: 2/10
Infected PCs: 220,354
First Seen: October 6, 2015
Last Seen: October 17, 2023
OS(es) Affected: Windows

Aliases

Riskware/MyWebSearch [Fortinet]Win32.Application.Agent.HQLCNJ [GData]GrayWare[Downloader:not-a-virus]/Win32.Adload.gen [Antiy-AVL]Adware.MyWebSearch.103 [DrWeb]Application.Win32.MyWebSearch.R [Comodo]not-a-virus:AdWare.Win32.MySearch.ac [Kaspersky]Win32:Mindspark-A [PUP] [Avast]W32/Mywebsearch.K.gen!Eldorado [F-Prot]

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{008c09f9-2949-4d38-83fc-8c787e6dc1e3}{01C906AF-E92D-4AD4-B478-FDE5AF2D7684}{0D6C55A8-3003-4B48-BC64-F604E1F1122D}{1046a206-5101-4a81-8358-1dbb63ae3210}{19C0019A-7F07-48C1-82B1-B38A117AEC66}{1a707f4c-78e8-49b7-8a3a-41255a22afe0}{3438FE1A-0C94-45C3-8083-5CAE82872A4D}{349B6EC0-6C39-432E-9486-64C82F38DE22}{369D6F8D-CB2A-4A5C-9890-48C938267848}{3CDAE1CB-896D-43E9-84D9-3B57EC71305B}{3CF9745E-AE8F-4BFC-AA52-A86CBFBCA17F}{47CCD08C-52C0-429C-BD30-E2913B7E4512}{51063FD9-AC6E-413F-8CC3-FF04BFCF8E29}{5165BA63-A70A-4262-BC63-3DFBE3F37BA8}{55780950-41d9-4f03-a794-902e27237eb6}{5A5014D7-80EA-44A4-BD99-264961772989}{656e2a25-8226-470b-9a67-b2a60f657630}{66C08BE3-CEBC-43AB-93CA-D63C3E802A96}{716741B2-B364-47B7-A4A9-C5DDD84AE1A3}{8698BCC7-46C5-45BF-9EB2-E751BEEB3E64}{8956153C-5CFC-4150-B37D-DB68FF089767}{91E9A2ED-034A-45ED-831D-E16E1909D446}{952fddec-371f-4047-80cf-656ca214cb7a}{97ba415c-383c-41a0-af12-0f7294a73f07}{9E31C651-75BD-4E0B-8CB1-A396C2A6E8AC}{a1b0a99a-19db-4d79-9c0f-955817e43094}{A1B6BCF2-6D07-479D-A6AE-1666AD0B03E9}{b074d394-fc50-4793-a09e-4f124e4d4a3b}{B94227B9-6738-4936-A080-FC69E72AF1FB}{BAC464B4-4E9F-4569-8745-DF1F8C55D616}{bc82b923-4b58-40ce-ab3c-2cc15b203265}{C85EF181-A7B6-49C2-9ABC-C63065A0A18D}{D4563CAB-4168-49D2-9ED1-F40E618AA9ED}{D7265892-B953-48B2-B388-19247C03B281}{DE5A96B7-742C-4B99-8FA1-42779BAFD7BE}{e7c23ec9-5ae4-4f01-94fd-38da3e187a30}{f1aecc99-b93d-4a8c-a133-7e715084bcff}{FBC24101-1F20-4D3F-940D-FE720D4C542F}{FF512140-BFF9-425F-AFEA-11A0854ED50C}File name without pathhttp_PConverter.dl.myway.com_0.localstoragehttp_PConverter.dl.myway.com_0.localstorage-journalhttp_PConverter.dl.tb.ask.com_0.localstoragehttp_PConverter.dl.tb.ask.com_0.localstorage-journalpconverter.dl.myway[1].xmlpconverter.dl.tb.ask[1].xmlHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\PConverter_dzSoftware\Microsoft\Internet Explorer\Approved Extensions\{008C09F9-2949-4D38-83FC-8C787E6DC1E3}Software\Microsoft\Internet Explorer\Approved Extensions\{656E2A25-8226-470B-9A67-B2A60F657630}Software\Microsoft\Internet Explorer\Approved Extensions\{E7C23EC9-5AE4-4F01-94FD-38DA3E187A30}SOFTWARE\Microsoft\Internet Explorer\DOMStorage\pconverter.comSOFTWARE\Microsoft\Internet Explorer\DOMStorage\pconverter.dl.myway.comSoftware\Microsoft\Internet Explorer\DOMStorage\pconverter.dl.tb.ask.comSOFTWARE\Microsoft\Internet Explorer\DOMStorage\www.pconverter.comSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pconverter.dl.myway.comSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pconverter.dl.tb.ask.comSoftware\Microsoft\Internet Explorer\SearchScopes\{eb43b60b-2197-43aa-86a6-b143774bae59}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{e7c23ec9-5ae4-4f01-94fd-38da3e187a30}SOFTWARE\Microsoft\Tracing\PConverter_RASAPI32SOFTWARE\Microsoft\Tracing\PConverter_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{008c09f9-2949-4d38-83fc-8c787e6dc1e3}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{656e2a25-8226-470b-9a67-b2a60f657630}SOFTWARE\Microsoft\Windows\CurrentVersion\Run\PConverterSOFTWARE\Microsoft\Windows\CurrentVersion\Run\PConverter AppIntegrator 32-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\PConverter AppIntegrator 64-bitSOFTWARE\Microsoft\Windows\CurrentVersion\Run\PConverter EPM SupportSOFTWARE\Microsoft\Windows\CurrentVersion\Run\PConverter Search Scope MonitorSoftware\PConverterSoftware\PConverter_dzSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{eb43b60b-2197-43aa-86a6-b143774bae59}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{e7c23ec9-5ae4-4f01-94fd-38da3e187a30}SOFTWARE\Wow6432Node\Microsoft\Tracing\PConverter_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\PConverter_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{008c09f9-2949-4d38-83fc-8c787e6dc1e3}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{656e2a25-8226-470b-9a67-b2a60f657630}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PConverterSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PConverter AppIntegrator 32-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PConverter AppIntegrator 64-bitSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PConverter EPM SupportSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PConverter Search Scope MonitorSOFTWARE\Wow6432Node\PConverter_dzSYSTEM\ControlSet001\services\PConverter_dzServiceSYSTEM\ControlSet002\services\PConverter_dzServiceSYSTEM\CurrentControlSet\services\PConverter_dzServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}PConverter_dzbar Uninstall Internet ExplorerPConverterTooltab Uninstall Internet Explorer

Additional Information

The following directories were created:
%LOCALAPPDATA%\PConverterTooltab%LOCALAPPDATA%\PConverter_dz%PROGRAMFILES%\PConverter_dz%PROGRAMFILES(x86)%\PConverter_dz%PROGRAMFILES(x86)%\PConverter_dzEI%USERPROFILE%\AppData\LocalLow\PConverter_dz%USERPROFILE%\AppData\LocalLow\PConverter_dzEI%USERPROFILE%\Application Data\PConverter_dz

Related Posts

Loading...