Home Possibly Unwanted Program PUP.Kometa browser

PUP.Kometa browser

Posted: February 27, 2015

Threat Metric

Ranking: 4,194
Threat Level: 1/10
Infected PCs: 49,097
First Seen: February 27, 2015
Last Seen: October 17, 2023
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\ComDev\ComDev.exe File name: ComDev.exe
Size: 438.78 KB (438784 bytes)
MD5: f22ea85ae183dcc052d2c592095a1d28
Detection count: 853
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\ComDev
Group: Malware file
Last Updated: July 30, 2016
C:\hanna\Users\<username>\AppData\Local\sysnet\sysnet.exe File name: sysnet.exe
Size: 1 MB (1000448 bytes)
MD5: 9bd6fa3906c4929671e8fcbc33991ee2
Detection count: 581
File type: Executable File
Mime Type: unknown/exe
Path: C:\hanna\Users\<username>\AppData\Local\sysnet\sysnet.exe
Group: Malware file
Last Updated: November 21, 2021
%LOCALAPPDATA%\ComDev\ComDev.exe File name: ComDev.exe
Size: 2.79 KB (2799 bytes)
MD5: 8ab1c5150dc748347753f8cfcbf1c8da
Detection count: 47
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\ComDev
Group: Malware file
Last Updated: July 30, 2016

Registry Modifications

The following newly produced Registry Values are:

CLSID{5157F497-D629-47A4-A73D-41ACE6766B0E}Regexp file mask%APPDATA%\Microsoft\Windows\Start Menu\Programs\Kometa.lnk%LOCALAPPDATA%\PowerMonitor\PowerMonitor.exe%UserProfile%\Local Settings\Application Data\PowerMonitor\PowerMonitor.exeHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\.htm\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.html\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.shtml\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.webp\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.xht\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.xhtml\OpenWithProgIds\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\KometaSOFTWARE\Microsoft\KometaInstallerSOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\kometa.exeSOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\kometa.exeSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\OpenWithProgids\KometaHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Run\KometaAutoLaunch_9C1BC4CD9BA445F94CF1E8A1E333F87ESoftware\Microsoft\Windows\CurrentVersion\Run\KometaLaunchPanelSoftware\Microsoft\Windows\CurrentVersion\Run\kometaupSoftware\NetBox\KometaSoftware\NetBox\KometaInstallerSoftware\NetBox\KometaupSOFTWARE\RegisteredApplications\Kometa.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Wow6432Node\Microsoft\MediaPlayer\ShimInclusionList\kometa.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\kometa.exeSOFTWARE\Wow6432Node\NetBox\KometaSOFTWARE\Wow6432Node\RegisteredApplications\Kometa.NSJA6BHDA3NCFCFMXW3QSCUYUQHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}KometaKometaLaunchPanel

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Kometa%APPDATA%\Microsoft\Windows\Start Menu\Programs\Kometa%LOCALAPPDATA%\Kometa%UserProfile%\Local Settings\Application Data\Kometa
Loading...