Home Malware Programs Potentially Unwanted Programs (PUPs) SideCubes

SideCubes

Posted: May 21, 2014

Threat Metric

Ranking: 2,605
Threat Level: 5/10
Infected PCs: 30,738
First Seen: May 21, 2014
Last Seen: October 17, 2023
OS(es) Affected: Windows


Sidecubes is a potentially unwanted program (PUP) that was developed by a company called Veristaff. Com Ltd. SideCubes may install itself on Web browsers such as Internet Explorer, Google Chrome and Mozilla Firefox. The browser plug-in of SideCubes may claim to improve a PC user's Web browsing activity by simplifying the way PC users use the Web. Sidecubes may allow easy content sharing, translation and searching. Sidecubes may proliferate and enter a Web browser as an optional program bundled with free applications. Once installed on the computer, SideCubes may change the default homepage, search engine or a new tab window with Search.sidecubes.com. Search.sidecubes.com is a questionable search provider because it may return unreliable search results. SideCubes may track the computer user's online browsing routine by recording the browser type, IP address, Internet Service Provider (ISP), clickstream data, date/time stamp, operating system, and search queries.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files (x86)\SideCubes\Startup.exe File name: Startup.exe
Size: 12.28 KB (12288 bytes)
MD5: 1ac767222de92c2b08360e37bf1af989
Detection count: 5,661
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\SideCubes\Startup.exe
Group: Malware file
Last Updated: July 1, 2022
C:\Program Files\SideCubes\Startup.exe File name: Startup.exe
Size: 19.47 KB (19472 bytes)
MD5: e01870e079a370fdc57e86d92653a76d
Detection count: 569
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\SideCubes\Startup.exe
Group: Malware file
Last Updated: June 18, 2022

Registry Modifications

The following newly produced Registry Values are:

File name without pathhttp_search.sidecubes.com_0.localstoragehttp_search.sidecubes.com_0.localstorage-journalsearch.sidecubes[1].xmlHKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\DOMStorage\search.sidecubes.comSoftware\Microsoft\Internet Explorer\DOMStorage\sidecubes.comSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\search.sidecubes.comSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\sidecubes.com

Additional Information

The following directories were created:
%COMMONPROGRAMFILES%\Toughfind%COMMONPROGRAMFILES(x86)%\Toughfind%LOCALAPPDATA%\Google\Chrome\User Data\Default\Extensions\gcpmimpoidfjalegenghglnhpmfemejf%LOCALAPPDATA%\Google\Chrome\User Data\Default\Extensions\ihpdalhmahfcphdeanedbfhfknmmjpkj%LOCALAPPDATA%\Google\Chrome\User Data\Default\Extensions\mgofpplfojhpinkhamejhgnlhkmnhmkb
The following URL's were detected:
Search.sidecubes.comhttp://search.sidecubes.com/
Loading...