Home Malware Programs Bad Toolbars PureDef Music Toolbar for Internet Explorer and Firefox

PureDef Music Toolbar for Internet Explorer and Firefox

Posted: August 24, 2010

Threat Metric

Ranking: 7,878
Threat Level: 1/10
Infected PCs: 110,641
First Seen: August 24, 2010
Last Seen: October 15, 2023
OS(es) Affected: Windows


PureDef Music Toolbar for Internet Explorer and Firefox is an unwanted plug-in that may install a Mindspark toolbar in the Web browser that may collect and store information about the computer user's Web browsing routine and transmit this information to Mindspark so they can offer services or show pop-up ads via the toolbar. PureDef Music Toolbar for Internet Explorer and Firefox may aim to modify the default homepage and search provider settings during installation (sometimes this is an option provided to the PC user but is checked by default) and provide a search box and a variety of other generic features in the toolbar. PureDef Music Toolbar for Internet Explorer and Firefox may also automatically download and install updates without notifying the PC user.

Aliases

Win32.AdWare [Ikarus]Win32.Trojan [eSafe]Win32:Adware-gen [GData]Win32:Adware-gen [Adw] [Avast]a variant of Win32/Toolbar.MyWebSearch [NOD32]AdWare/Win32.MyWay.gen [Antiy-AVL]probably a variant of Win32/Toolbar.MyWebSearch [NOD32]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files\puredefmusic\toolbar\1.bin\p3SrcAs.dll File name: p3SrcAs.dll
Size: 65.53 KB (65536 bytes)
MD5: 1d421732899789c2ea22d15ff5a71952
Detection count: 27,838
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files\puredefmusic\toolbar\1.bin\p3SrcAs.dll
Group: Malware file
Last Updated: September 10, 2021
C:\Program Files\puredefmusic\toolbar\1.bin\p3bar.dll File name: p3bar.dll
Size: 311.29 KB (311296 bytes)
MD5: c2e24e432cb4dacb7107423ed834c44c
Detection count: 27,040
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files\puredefmusic\toolbar\1.bin\p3bar.dll
Group: Malware file
Last Updated: September 10, 2021
%PROGRAMFILES%\puredefmusic\toolbar\3.bin\p3bar.dll File name: p3bar.dll
Size: 311.29 KB (311296 bytes)
MD5: 2330f76b3556697ec5b1689d84931600
Detection count: 1,600
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\puredefmusic\toolbar\3.bin
Group: Malware file
Last Updated: December 9, 2013
C:\Program Files\puredefmusic\toolbar\1.bin\p3barsvc.exe File name: p3barsvc.exe
Size: 28.76 KB (28766 bytes)
MD5: aa464fe5a12938cfdc30259696712b42
Detection count: 787
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\puredefmusic\toolbar\1.bin\p3barsvc.exe
Group: Malware file
Last Updated: March 15, 2022
%PROGRAMFILES(x86)%\PUREDEFMUSIC\TOOLBAR\1.BIN\P3PLUGIN.DLL File name: P3PLUGIN.DLL
Size: 20B (20 bytes)
MD5: e579ac52e8eb924ffcc7994a1b15f68d
Detection count: 83
File type: Dynamic link library
Mime Type: unknown/DLL
Path: %PROGRAMFILES(x86)%\PUREDEFMUSIC\TOOLBAR\1.BIN
Group: Malware file
Last Updated: February 21, 2014
%PROGRAMFILES%\puredefmusic\toolbar\1.bin\P3PLUGIN.DLL File name: P3PLUGIN.DLL
Size: 20B (20 bytes)
MD5: 3d34db096216fa7a825193299bd326bf
Detection count: 54
File type: Dynamic link library
Mime Type: unknown/DLL
Path: %PROGRAMFILES%\puredefmusic\toolbar\1.bin
Group: Malware file
Last Updated: November 12, 2011
%PROGRAMFILES(x86)%\puredefmusic\toolbar\1.bin\p3Plugin.dll File name: p3Plugin.dll
Size: 49.15 KB (49152 bytes)
MD5: 0159d949496d535002637ba06609e5f6
Detection count: 41
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\puredefmusic\toolbar\1.bin
Group: Malware file
Last Updated: February 21, 2014

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\puredefmusicSOFTWARE\Classes\IMsiDe1egate.Application.1Software\Microsoft\Internet Explorer\Approved Extensions\{E30A55B1-F1B7-43A4-B3F6-EC90CDC4FE60}Software\Microsoft\Internet Explorer\Approved Extensions\{E30A55B9-F1B7-43A4-B3F6-EC90CDC4FE60}Software\Microsoft\Internet Explorer\Approved Extensions\{FF365CDB-88FE-4FFA-A3F3-357855231DFA}Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{E30A55B9-F1B7-43A4-B3F6-EC90CDC4FE60}Software\Microsoft\Internet Explorer\URLSearchHooks\{FF365CDC-88FE-4ffa-A3F3-357855231DFA}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E30A55B1-F1B7-43A4-B3F6-EC90CDC4FE60}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E30A55B9-F1B7-43A4-B3F6-EC90CDC4FE60}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FF365CDB-88FE-4FFA-A3F3-357855231DFA}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E30A55B1-F1B7-43A4-B3F6-EC90CDC4FE60}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E30A55B9-F1B7-43A4-B3F6-EC90CDC4FE60}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FF365CDB-88FE-4FFA-A3F3-357855231DFA}

Additional Information

The following directories were created:
%PROGRAMFILES%\puredefmusic%PROGRAMFILES(x86)%\puredefmusic%USERPROFILE%\AppData\LocalLow\puredefmusic
The following URL's were detected:
Puredef.com/browse.html
Loading...