Home Possibly Unwanted Program PUP.Guntony

PUP.Guntony

Posted: May 31, 2016

Threat Metric

Ranking: 12,464
Threat Level: 1/10
Infected PCs: 28,082
First Seen: May 31, 2016
Last Seen: September 18, 2023
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\ProgramData\Guntony\protect\protect.exe File name: protect.exe
Size: 302.97 KB (302976 bytes)
MD5: e7df232fb4670f5c7a517d7fffb0a8fc
Detection count: 9,628
File type: Executable File
Mime Type: unknown/exe
Path: C:\ProgramData\Guntony\protect\protect.exe
Group: Malware file
Last Updated: August 7, 2022
c:\program files (x86)\guntony\guntony\bin\guntony_server.exe File name: guntony_server.exe
Size: 473.47 KB (473472 bytes)
MD5: fa2c5b35ca039d86f76911f711ca3f30
Detection count: 8,155
File type: Executable File
Mime Type: unknown/exe
Path: c:\program files (x86)\guntony\guntony\bin\guntony_server.exe
Group: Malware file
Last Updated: August 7, 2022
C:\Program Files (x86)\Guntony\Guntony\chrome.exe File name: chrome.exe
Size: 1.03 MB (1030528 bytes)
MD5: 09d4c82d11e6a428d47b00e735cb0bb2
Detection count: 6,427
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Guntony\Guntony\chrome.exe
Group: Malware file
Last Updated: July 24, 2022

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\GuntonySOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\GuntonyBrowserUpdateCoreSOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\GuntonyBrowserUpdateUASOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\GuntonyCheckTaskSOFTWARE\Wow6432Node\Guntony

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Guntony%LOCALAPPDATA%\Guntony%PUBLIC%\Documents\Guntony%ProgramFiles%\Guntony%ProgramFiles(x86)%\Guntony
Loading...