Home Possibly Unwanted Program PUP.Kometa browser

PUP.Kometa browser

Posted: February 27, 2015

Threat Metric

Ranking: 6,748
Threat Level: 1/10
Infected PCs: 49,460
First Seen: February 27, 2015
Last Seen: February 26, 2025
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\hanna\Users\<username>\AppData\Local\sysnet\sysnet.exe File name: sysnet.exe
Size: 1 MB (1000448 bytes)
MD5: 9bd6fa3906c4929671e8fcbc33991ee2
Detection count: 581
File type: Executable File
Mime Type: unknown/exe
Path: C:\hanna\Users\<username>\AppData\Local\sysnet\sysnet.exe
Group: Malware file
Last Updated: November 21, 2021
%LOCALAPPDATA%\ComDev\ComDev.exe File name: ComDev.exe
Size: 2.79 KB (2799 bytes)
MD5: 8ab1c5150dc748347753f8cfcbf1c8da
Detection count: 47
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\ComDev
Group: Malware file
Last Updated: July 30, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{5157F497-D629-47A4-A73D-41ACE6766B0E}Regexp file mask%APPDATA%\Microsoft\Windows\Start Menu\Programs\Kometa.lnk%LOCALAPPDATA%\PowerMonitor\PowerMonitor.exe%UserProfile%\Local Settings\Application Data\PowerMonitor\PowerMonitor.exeHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\.htm\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.html\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.shtml\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.webp\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.xht\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.xhtml\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\KometaSOFTWARE\Microsoft\KometaInstallerSOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\kometa.exeSOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\kometa.exeSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Run\KometaAutoLaunch_9C1BC4CD9BA445F94CF1E8A1E333F87ESoftware\Microsoft\Windows\CurrentVersion\Run\KometaLaunchPanelSoftware\Microsoft\Windows\CurrentVersion\Run\kometaupSoftware\NetBox\KometaSoftware\NetBox\KometaInstallerSoftware\NetBox\KometaupSOFTWARE\RegisteredApplications\Kometa.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Wow6432Node\Microsoft\MediaPlayer\ShimInclusionList\kometa.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\kometa.exeSOFTWARE\Wow6432Node\NetBox\KometaSOFTWARE\Wow6432Node\RegisteredApplications\Kometa.NSJA6BHDA3NCFCFMXW3QSCUYUQHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}KometaKometaLaunchPanel

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Kometa%APPDATA%\Microsoft\Windows\Start Menu\Programs\Kometa%LOCALAPPDATA%\Kometa%UserProfile%\Local Settings\Application Data\Kometa
Loading...