Home Possibly Unwanted Program PUP.HomeTab

PUP.HomeTab

Posted: May 14, 2014

Threat Metric

Ranking: 5,641
Threat Level: 1/10
Infected PCs: 64,942
First Seen: May 14, 2014
Last Seen: March 9, 2025
OS(es) Affected: Windows


PUP.HomeTab is a potentially unwanted program (PUP), which may display repeated pop-up ads and messages while the computer user is browsing the Web. The pop-up advertisements and messages shown by PUP.HomeTab may be generated with the purpose to possibly profit from clicks on them. The pop-up advertisements and messages delivered by PUP.HomeTab may be shown by the associated web browser plug-in, add-on or browser extension, which may be bundled and added as an extra tool together with free software that computer users can download from suspicious download websites. When downloading free applications, PC users may get an ad-supported browser plug-in, add-on or browser extension for Internet Explorer, Mozilla Firefox, Google Chrome and other well-known Web browsers. The pop-up messages and ads of PUP.HomeTab may encompass links directing computer users to questionable websites.

Aliases

Win32.Application.SimplyTech.A [GData]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files (x86)\HomeTab\ProtectedSearch.exe File name: ProtectedSearch.exe
Size: 88.13 KB (88136 bytes)
MD5: c85e988f2007d6d7407c52ea24e28082
Detection count: 4,122
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
Group: Malware file
Last Updated: August 13, 2021
c:\programmi\hometab\stdmfpam.dll File name: stdmfpam.dll
Size: 61.72 KB (61728 bytes)
MD5: c2e4cd17d514679655f0a06efaa4284b
Detection count: 1,361
File type: Dynamic link library
Mime Type: unknown/dll
Path: c:\programmi\hometab\stdmfpam.dll
Group: Malware file
Last Updated: March 27, 2024
%PROGRAMFILES%\HomeTab\IE\HomeTab.dll File name: HomeTab.dll
Size: 1.1 MB (1103424 bytes)
MD5: 10450a120d1b69aa90e0f274dffdd87d
Detection count: 187
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\HomeTab\IE
Group: Malware file
Last Updated: May 25, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{00ea37fc-d491-4e3e-a53a-f24552968d65}{04EAE24C-09BB-4C31-B18D-A927DBAE592D}{0d687747-ed29-4f98-ae2d-ea537ec4ea34}{17fedc4f-d3b9-4cf8-84e7-0b30f2986cbf}{20dcb7cc-62d5-4d19-b9c4-5c4e6e20aa06}{2ed6b821-3d57-4a7f-aa49-6f62df2a8b91}{3B883158-B545-43C8-81F6-FB9DA339AF2B}{4409b1b8-68a3-4886-9aea-9ad1593c5797}{56e32636-e2b8-4b04-9a97-60581dd90f51}{5B191EA7-F309-4D2F-AAA5-C77D84D29CCD}{64c61c68-6310-4c6e-aabb-3153d1ebffb7}{66a8d439-1460-4523-ace1-a1c5d38e11f6}{68cd9c31-7c30-4248-8221-b157f9eea543}{6bd60937-878f-4e96-b490-c28a3cfe27fa}{7000bc7f-7791-463d-8faa-7000e90d3d99}{7017502F-0194-46B2-AA5A-F713E6C0E366}{70902ee8-9b84-42e7-b4cd-774cacd841a8}{8b617b00-279e-42ff-beac-1f7a8f41ca13}{91932eaa-ced3-42eb-a64e-a981b8b52330}{926a5670-a077-4b38-8e70-36b53815a4d0}{92aa6038-35c9-4666-893f-84716dec281c}{9E250116-EB2F-4920-BEFD-58A7E4222C67}{BA696155-D96E-4281-B467-0367A0456474}{bbeeb42c-2555-42a5-a09d-fc5e3cba29e7}{C41CD9A6-0756-4CB0-B652-13A1C0F0D586}{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06}{f588d455-92a8-4905-9e12-a2d63af81368}{fe3b81e5-f55b-48df-b251-d32940b41ee5}HKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\AppID\HomeTab.DLLSoftware\HomeTabSoftware\Microsoft\Internet Explorer\Approved Extensions\{9FDC8573-7E1A-4FFB-A4CA-F2A04DFFDE84}Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{2b677c9c-6560-4e79-a5e5-71a65aafa55a}Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{56e32636-e2b8-4b04-9a97-60581dd90f51}Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{8b617b00-279e-42ff-beac-1f7a8f41ca13}Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{91932eaa-ced3-42eb-a64e-a981b8b52330}Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{92aa6038-35c9-4666-893f-84716dec281c}Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{ba696155-d96e-4281-b467-0367a0456474}SOFTWARE\Microsoft\Internet Explorer\Extensions\{92808042-fb78-4fa0-bb4f-c9a95e0e9c10}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0F81D0DC-1355-4fac-800F-2467CF365CCD}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{cfd485f0-96bd-47cd-bb6d-cd7dda95f102}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{2b677c9c-6560-4e79-a5e5-71a65aafa55a}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{56e32636-e2b8-4b04-9a97-60581dd90f51}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8b617b00-279e-42ff-beac-1f7a8f41ca13}SOFTWARE\Microsoft\Internet Explorer\toolbar\{91932eaa-ced3-42eb-a64e-a981b8b52330}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{92aa6038-35c9-4666-893f-84716dec281c}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{ba696155-d96e-4281-b467-0367a0456474}SOFTWARE\Microsoft\Tracing\HomeTab (1)_RASAPI32SOFTWARE\Microsoft\Tracing\HomeTab (1)_RASMANCSSOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0d687747-ed29-4f98-ae2d-ea537ec4ea34}Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{275a5f3c-2237-43d3-a015-e8b533042410}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0d687747-ed29-4f98-ae2d-ea537ec4ea34}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{56e32636-e2b8-4b04-9a97-60581dd90f51}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8b617b00-279e-42ff-beac-1f7a8f41ca13}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{91932eaa-ced3-42eb-a64e-a981b8b52330}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{92aa6038-35c9-4666-893f-84716dec281c}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{56E32636-E2B8-4B04-9A97-60581DD90F51}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8B617B00-279E-42FF-BEAC-1F7A8F41CA13}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{91932EAA-CED3-42EB-A64E-A981B8B52330}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{92AA6038-35C9-4666-893F-84716DEC281C}Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{2b677c9c-6560-4e79-a5e5-71a65aafa55a}Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{56e32636-e2b8-4b04-9a97-60581dd90f51}Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{8b617b00-279e-42ff-beac-1f7a8f41ca13}Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{91932eaa-ced3-42eb-a64e-a981b8b52330}Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{92aa6038-35c9-4666-893f-84716dec281c}Software\Squeaky\HomeTabSOFTWARE\Wow6432Node\Classes\AppID\HomeTab.DLLSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{92808042-fb78-4fa0-bb4f-c9a95e0e9c10}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{cfd485f0-96bd-47cd-bb6d-cd7dda95f102}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{8b617b00-279e-42ff-beac-1f7a8f41ca13}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{92aa6038-35c9-4666-893f-84716dec281c}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{ba696155-d96e-4281-b467-0367a0456474}SOFTWARE\Wow6432Node\Microsoft\Tracing\HomeTab (1)_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\HomeTab (1)_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\HomeTab_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\HomeTab_RASMANCSSoftware\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0d687747-ed29-4f98-ae2d-ea537ec4ea34}Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{275a5f3c-2237-43d3-a015-e8b533042410}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{022fe25e-40c2-4e87-8883-fcfd89e411ee}_is1{18ab78ae-47ce-41a8-8aa3-a7689dafea76}_is1{3a4935b3-b7a0-4065-8ccc-0030471b33f1}_is1{764f9059-6965-4561-95b6-916ca8d5f8f7}_is1{7ac3fd38-27b0-428d-b368-7b0dbd1e78f0}_is1

Additional Information

The following directories were created:
%APPDATA%\HomeTab%APPDATA%\SimplyTech\home%PROGRAMFILES%\HomeTab%PROGRAMFILES(x86)%\HomeTab%USERPROFILE%\AppData\LocalLow\HomeTab
The following URL's were detected:
start.hometab.com
Loading...