Home Malware Programs Potentially Unwanted Programs (PUPs) PUP.Wizebar

PUP.Wizebar

Posted: October 29, 2013

Threat Metric

Ranking: 10,400
Threat Level: 2/10
Infected PCs: 3,487
First Seen: October 29, 2013
Last Seen: October 12, 2023
OS(es) Affected: Windows

PUP.Wizebar is a potentially unwanted application with adware functionalities, which may occur on vulnerable computers as a potentially unwanted toolbar. PUP.Wizebar may be able to take over all popular web browsers that can be found installed on the computer system. The main symptom, which indicates that PUP.Wizebar may be installed on the PC, is repeated messages about coupons, offers, discounts and other deals. The creators of these offers may strive to benefit by rerouting web users to sponsored commercial websites that pay for pushing them. PUP.Wizebar may keep track of the PC user's browsing activities and transfer this data to cybercriminals. PUP.Wizebar may come bundled together with freeware and shareware applications and enter the PC without the computer user's authorization. To avoid downloading of PUP.Wizebar, web users should pay more attention to the installation process of freeware and shareware programs. Typically, PC users should uncheck the check box that agrees to download PUP.Wizebar. When installed on the computer system, PUP.Wizebar may substitute the default search provider and start page with a certain advertisement website.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\wizebar.com\wizebar\1.0.2.16\wizebar.exe File name: wizebar.exe
Size: 240.12 KB (240128 bytes)
MD5: ca4bae30743784400ffa46847c47fac8
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\wizebar.com\wizebar\1.0.2.16
Group: Malware file
Last Updated: May 20, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{236220F5-BB12-4FFD-A5ED-30728E9E0971}HKEY..\..\..\..{RegistryKeys}Software\Classes\wizebarSoftware\Microsoft\Internet Explorer\DOMStorage\wizebar.comSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{236220F5-BB12-4FFD-A5ED-30728E9E0971}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}${PRDCT_UNINST}

Additional Information

The following directories were created:
%USERPROFILE%\AppData\LocalLow\wizebar.com%appdata%\wizebar.com
Loading...