Home Malware Programs Adware ShoppingGid

ShoppingGid

Posted: May 6, 2015

Threat Metric

Threat Level: 2/10
Infected PCs: 2,588
First Seen: April 22, 2015
Last Seen: June 25, 2024
OS(es) Affected: Windows

ShoppingGid is an adware program that may act as a web browser extension in adding functions to your favorite web browser application. ShoppingGid is known for loading several advertisements as banners or pop-ups mostly when you are surfing the internet. The ShoppingGid ads may consist of random offers for supposedly saving money while shopping on the internet for items. ShoppingGid ads may display products related to your internet history through tracking of your web browser cookies or monitoring your internet activity. Installation of ShoppingGid may take place due to loading a random freeware program obtained from a download site over the internet. Removal of ShoppingGid and its associated extensions or add-ons is necessary to stop its advertisement pop-up activity and potential web site redirects.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\Smally\Smally.exe File name: Smally.exe
Size: 650.69 KB (650696 bytes)
MD5: 465751e21d3df3037cd99b8472077041
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Smally
Group: Malware file
Last Updated: July 8, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%windir%\storegidfilter.sys%windir%\System32\drivers\piratiumfilter.sys%windir%\System32\drivers\smallyfilter.sysHKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{5294EF23-A209-402C-93EB-D696E7AF71B9}Software\Microsoft\Windows\CurrentVersion\Run\ShoppingGid IE UpdaterSoftware\Microsoft\Windows\CurrentVersion\Run\storegidSoftware\Microsoft\Windows\CurrentVersion\Run\storegidUpdaterSoftware\storegidSOFTWARE\Wow6432Node\storegidHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Smallystoregid

Additional Information

The following directories were created:
%LOCALAPPDATA%\ShoppingGid%LOCALAPPDATA%\Smally%LOCALAPPDATA%\storegid%UserProfile%\Local Settings\Application Data\Smally%UserProfile%\Local Settings\Application Data\storegid%appdata%\Microsoft\Windows\Start Menu\Programs\Smally%appdata%\Microsoft\Windows\Start Menu\Programs\storegid
Loading...