Home Malware Programs Potentially Unwanted Programs (PUPs) PUP.Bomlabio.A

PUP.Bomlabio.A

Posted: September 19, 2013

Threat Metric

Threat Level: 2/10
Infected PCs: 35,499
First Seen: September 19, 2013
Last Seen: February 14, 2024
OS(es) Affected: Windows

PUP.Bomlabio.A is a potentially unwanted program, which may carry adware, install toolbars or have other uncertain purposes. PUP.Bomlabio.A is not a virus, but it may contain a variety of damaging attributes, such as rootkit functionalities to hide itself deeply into the targeted PC, browser hijacking and, in general, just interfering with the web user's experience. PUP.Bomlabio.A may use blackhat SEO to increase traffic of the website and make a profit from click fraud. PUP.Bomlabio.A may access the affected computer packaged with freeware and shareware applications (video recording/streaming, download-managers or PDF creators). PUP.Bomlabio.A may also be packaged within the custom installer on many insecure download websites, so if the PC user has downloaded a particular tool from these websites, he might have also installed PUP.Bomlabio.A throughout the setup process of the particular tool.

Aliases

Adware/Win32.Downloader [AhnLab-V3]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\bomlabio\bin\utilbomlabio.exe File name: utilbomlabio.exe
Size: 350.48 KB (350488 bytes)
MD5: f36b99c6d28e001a66fd450dd441d977
Detection count: 319
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\bomlabio\bin
Group: Malware file
Last Updated: May 19, 2014
%PROGRAMFILES(x86)%\bomlabio\bin\bomlabio.PurBrowse64.exe File name: bomlabio.PurBrowse64.exe
Size: 287 KB (287000 bytes)
MD5: 7241721cb707dfba70c4b9a6ed693544
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\bomlabio\bin
Group: Malware file
Last Updated: May 19, 2014
%PROGRAMFILES%\bomlabio\bin\bomlabio.PurBrowse.exe File name: bomlabio.PurBrowse.exe
Size: 239.38 KB (239384 bytes)
MD5: 7dc50ec4f2a48bd9f71526e7a433fd10
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\bomlabio\bin
Group: Malware file
Last Updated: May 19, 2014
%PROGRAMFILES(x86)%\bomlabio\bomlabiouninstall.exe File name: bomlabiouninstall.exe
Size: 240.64 KB (240646 bytes)
MD5: 366fd2e503fbf40f73e56f6d84089a42
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\bomlabio
Group: Malware file
Last Updated: May 19, 2014
%PROGRAMFILES%\bomlabio\bin\bomlabio.BrowserAdapter.exe File name: bomlabio.BrowserAdapter.exe
Size: 96.53 KB (96536 bytes)
MD5: a7962e9c7bd14016577defa40707a85f
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\bomlabio\bin
Group: Malware file
Last Updated: May 19, 2014
%PROGRAMFILES(x86)%\bomlabio\update\pcn5h5fi.13r.exe File name: pcn5h5fi.13r.exe
Size: 65.3 KB (65304 bytes)
MD5: 1897eb74746b2a889b1a0877a13eece1
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\bomlabio\update
Group: Malware file
Last Updated: October 20, 2022

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{9593d220-8a70-4dce-9e80-16668c228bef}HKEY..\..\..\..{RegistryKeys}SOFTWARE\bomlabioSoftware\Microsoft\Internet Explorer\Approved Extensions\{9593d220-8a70-4dce-9e80-16668c228bef}SOFTWARE\Microsoft\Tracing\updatebomlabio_RASAPI32SOFTWARE\Microsoft\Tracing\updatebomlabio_RASMANCSSOFTWARE\Microsoft\Tracing\utilbomlabio_RASAPI32SOFTWARE\Microsoft\Tracing\utilbomlabio_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{9593d220-8a70-4dce-9e80-16668c228bef}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9593d220-8a70-4dce-9e80-16668c228bef}SOFTWARE\Wow6432Node\bomlabioSOFTWARE\Wow6432Node\Microsoft\Tracing\updatebomlabio_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updatebomlabio_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\utilbomlabio_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\utilbomlabio_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{9593d220-8a70-4dce-9e80-16668c228bef}SYSTEM\ControlSet001\services\eventlog\Application\Update bomlabioSYSTEM\ControlSet001\services\eventlog\Application\Util bomlabioSYSTEM\ControlSet001\services\Update bomlabioSYSTEM\ControlSet001\services\Util bomlabioSYSTEM\ControlSet002\services\eventlog\Application\Util bomlabioSYSTEM\ControlSet002\services\Util bomlabioSYSTEM\CurrentControlSet\services\eventlog\Application\Update bomlabioSYSTEM\CurrentControlSet\services\eventlog\Application\Util bomlabioSYSTEM\CurrentControlSet\services\Update bomlabioSYSTEM\CurrentControlSet\services\Util bomlabioHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}bomlabio

Additional Information

The following directories were created:
%PROGRAMFILES%\bomlabio%PROGRAMFILES(x86)%\bomlabio
Loading...