Home Possibly Unwanted Program PUP.WinToFlash Suggestor

PUP.WinToFlash Suggestor

Posted: June 17, 2014

Threat Metric

Ranking: 11,598
Threat Level: 1/10
Infected PCs: 33,232
First Seen: June 17, 2014
Last Seen: February 27, 2025
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\Qoobox\Quarantine\C\Program Files (x86)\WinToFlash Suggestor\WiNToflashsuggestor.dll.vir File name: WiNToflashsuggestor.dll.vir
Size: 281.42 KB (281424 bytes)
MD5: 229e89df19335d6bfd3c9e022c832cae
Detection count: 9,954
Mime Type: unknown/vir
Path: %SYSTEMDRIVE%\Qoobox\Quarantine\C\Program Files (x86)\WinToFlash Suggestor\WiNToflashsuggestor.dll.vir
Group: Malware file
Last Updated: August 19, 2024
C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll File name: WinToFlashSuggestor.dll
Size: 230.19 KB (230192 bytes)
MD5: a7a0e86c47393a2d72989e1812177d3d
Detection count: 3,412
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll
Group: Malware file
Last Updated: August 26, 2022
WinToFlashSuggestorSilent-10045.exe File name: WinToFlashSuggestorSilent-10045.exe
Size: 782.59 KB (782592 bytes)
MD5: bdfe11056db6c7913ad3a63989f7a1ea
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 8, 2020
%PROGRAMFILES%\WinToFlash Suggestor\SMBarBroker.exe File name: SMBarBroker.exe
Size: 118.27 KB (118272 bytes)
MD5: 25cacd7cc4e26e52bd25f3108dd9719d
Detection count: 2
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\WinToFlash Suggestor
Group: Malware file
Last Updated: June 17, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{2D9B1B31-D034-4738-8F6E-40F0AFCC742C}{43769158-3B03-4932-8D8A-8F0F344BF024}{78CE34FD-F6D4-4866-B79C-A37268D06A04}{80904944-C726-4C7D-A452-3FFF2A882095}{FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\WinToFlash SuggestorSoftware\Microsoft\Internet Explorer\Approved Extensions\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}SOFTWARE\Microsoft\Internet Explorer\Extensions\{A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F}Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A89A7E3-6ADD-4ef9-8EE7-A3C3B7D83BB0}Software\Microsoft\Internet Explorer\LowRegistry\Extensions\CmdMapping\{A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}WinToFlash Suggestor

Additional Information

The following directories were created:
%PROGRAMFILES%\WinToFlash Suggestor%PROGRAMFILES(x86)%\WinToFlash Suggestor
Loading...