Home Malware Programs Adware SaverOn

SaverOn

Posted: December 4, 2014

Threat Metric

Ranking: 12,395
Threat Level: 2/10
Infected PCs: 4,759
First Seen: August 20, 2014
Last Seen: October 8, 2023
OS(es) Affected: Windows

SaverOn is a browser extension, add-on or plugin that is delivered through WebPick InstalleRex download and install manager. SaverOn can also be found as Saveeron. SaverOn may be downloaded unintentionally to your system via free software bundles that are generally based on a pay-per-install marketing method. Typically, SaverOn installs as a 'helpful' browser extension and is believed to inject advertisements. In most cases, ads generated by SaverOn are not associated with the currently viewed page. However, advertisements are mostly based on your browsing habits. According to computer security experts, SaverOn should be removed from your system as it may attract more PUPs and adware-related content.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\saVerron\O.x64.dll File name: O.x64.dll
Size: 474.11 KB (474112 bytes)
MD5: ce293bc720fb42a1e80eb0a36faa5aa3
Detection count: 445
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\saVerron
Group: Malware file
Last Updated: August 20, 2014
C:\ProgramData\saveeron\FZ1b4Gc.exe File name: C:\ProgramData\saveeron\FZ1b4Gc.exe
MD5: eb34b0574d399addc22be3635acd78c4
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
FZ1b4Gc.x64.dll File name: FZ1b4Gc.x64.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
FZ1b4Gc.dll File name: FZ1b4Gc.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\saveron
Loading...