Home Possibly Unwanted Program PUP.Skymonk

PUP.Skymonk

Posted: January 20, 2014

Threat Metric

Ranking: 3,181
Threat Level: 1/10
Infected PCs: 44,226
First Seen: January 20, 2014
Last Seen: October 16, 2023
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files (x86)\Skymonk2Plugin\KangoBHO.dll File name: KangoBHO.dll
Size: 251.39 KB (251392 bytes)
MD5: 5c7703f9d55754ae94a3a6762ba2063c
Detection count: 5,874
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files (x86)\Skymonk2Plugin\KangoBHO.dll
Group: Malware file
Last Updated: April 27, 2023
C:\Program Files (x86)\Skymonk2Plugin\KangoBHO64.dll File name: KangoBHO64.dll
Size: 301.05 KB (301056 bytes)
MD5: 7fbef60a8dc5137b6971050b67fcd2be
Detection count: 1,555
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files (x86)\Skymonk2Plugin\KangoBHO64.dll
Group: Malware file
Last Updated: April 27, 2023
%PROGRAMFILES%\SkyMonk\SkyMonk.exe File name: SkyMonk.exe
Size: 368.64 KB (368640 bytes)
MD5: f478953ced2064ea9f626ed266df9bda
Detection count: 131
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\SkyMonk
Group: Malware file
Last Updated: February 2, 2020
%PROGRAMFILES%\SkyMonk\SkyMonk.exe File name: SkyMonk.exe
Size: 357.37 KB (357376 bytes)
MD5: 5e404837b80847cce5eeae48cc835e03
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\SkyMonk
Group: Malware file
Last Updated: June 22, 2017
%USERPROFILE%\Configuraci?n local\Datos de programa\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 567.44 KB (567440 bytes)
MD5: 119f120f79c1f7b3234c8897f1cfd7bf
Detection count: 64
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Configuraci?n local\Datos de programa\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
D:\System Volume Information\_restore{2CB420A6-A62D-48F5-B8CD-041895010AA6}\RP276\A0192150.exe File name: A0192150.exe
Size: 364.54 KB (364544 bytes)
MD5: 28ea6cf6cb79d3125d29e2182b9c6645
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: D:\System Volume Information\_restore{2CB420A6-A62D-48F5-B8CD-041895010AA6}\RP276\A0192150.exe
Group: Malware file
Last Updated: January 2, 2022
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 551.56 KB (551568 bytes)
MD5: 562f2c3856e5a167cc724378a0595b43
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
C:\Program Files\SkyMonk\SkyMonk.exe File name: SkyMonk.exe
Size: 354.81 KB (354816 bytes)
MD5: 82f0288cd54759f6461dda8010b1f897
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\SkyMonk\SkyMonk.exe
Group: Malware file
Last Updated: December 13, 2021
%PROGRAMFILES%\SkyMonk\SkyMonk.exe File name: SkyMonk.exe
Size: 446.46 KB (446464 bytes)
MD5: b22d1d35a2b4cac99b9b2c7840f25b37
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\SkyMonk
Group: Malware file
Last Updated: June 22, 2017
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 698.32 KB (698328 bytes)
MD5: ee9aa3aae2db1c5c25b82dcc170d2981
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%PROGRAMFILES%\SkyMonk\SkyMonk.exe File name: SkyMonk.exe
Size: 357.37 KB (357376 bytes)
MD5: a22641a2a15ce6ba3aab04774dd652f5
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\SkyMonk
Group: Malware file
Last Updated: March 29, 2019
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 601.74 KB (601744 bytes)
MD5: 8e70c94a56697ad8005645dfc6a8ed02
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 53.56 KB (53564 bytes)
MD5: 03c23c5484bbf846f0239d26071c280a
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 552.59 KB (552592 bytes)
MD5: cd53832da3379137314d5df787a5e9ae
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 350.86 KB (350864 bytes)
MD5: ea099b47e71d4878f9c48322393f33fb
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%USERPROFILE%\Local Settings\Application Data\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 559.24 KB (559248 bytes)
MD5: cc9ee3e9632a07d1280a40dfe4666aac
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 517.77 KB (517776 bytes)
MD5: 3758b2c88596e6b0e93d9b487a12c0ff
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%USERPROFILE%\Configuraci?n local\Datos de programa\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 527.5 KB (527500 bytes)
MD5: 91a61a338fd3e283fdf916846d207ba9
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Configuraci?n local\Datos de programa\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%USERPROFILE%\Local Settings\Application Data\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 479.37 KB (479376 bytes)
MD5: 3ae996b2eef4c44ed7cfaef97657c092
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data\Skymonk2
Group: Malware file
Last Updated: January 20, 2014
%LOCALAPPDATA%\Skymonk2\skymonk2.exe File name: skymonk2.exe
Size: 561.8 KB (561808 bytes)
MD5: c2b1dd471aec25157aca81d69a25a8d2
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Skymonk2
Group: Malware file
Last Updated: January 20, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{2434971D-DF3B-43DA-B810-7A44F62317A5}{49203157-9761-467F-B689-D0CCB7E83923}{49D931C3-97C7-46BF-850F-83CC98E81623}{88AD246E-288C-4950-BEBF-140DFDD28240}{88B8244F-28A7-49E3-ABB2-180D65D2E640}{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}{A9E7CA1D-9850-4FCF-8498-4CDDE83DEA4A}{E71A8D5A-B484-4D39-9364-40134F50FFE9}File name without pathContinue installation - SkyMonk Installation.lnkSkymonk 2.lnkHKEY..\..\..\..{RegistryKeys}Software\Classes\skymonkSoftware\Microsoft\Internet Explorer\Approved Extensions\{49D931C3-97C7-46BF-850F-83CC98E81623}Software\Microsoft\Internet Explorer\Approved Extensions\{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2434971D-DF3B-43DA-B810-7A44F62317A5}Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\KangoEngine.exeSOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{49D931C3-97C7-46BF-850F-83CC98E81623}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{49D931C3-97C7-46BF-850F-83CC98E81623}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}Software\Microsoft\Windows\CurrentVersion\Run\Skymonk2Software\Microsoft\Windows\CurrentVersion\Uninstall\Skymonk2SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Skymonk2PluginSoftware\Services\Sm2SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2434971D-DF3B-43DA-B810-7A44F62317A5}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\KangoEngine.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Skymonk2Plugin

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Skymonk 2%APPDATA%\{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}%LOCALAPPDATA%\Skymonk2%PROGRAMFILES%\Skymonk2Plugin%PROGRAMFILES(x86)%\Skymonk2Plugin%USERPROFILE%\AppData\LocalLow\{A923CA26-988F-4FE5-B1F5-B3DD3F3D6F4A}%USERPROFILE%\Local Settings\Application Data\Skymonk2
The following URL's were detected:
Skymonk
Loading...