Home Malware Programs Potentially Unwanted Programs (PUPs) SuperWeb

SuperWeb

Posted: October 14, 2013

Threat Metric

Ranking: 740
Threat Level: 2/10
Infected PCs: 730,276
First Seen: October 14, 2013
Last Seen: October 17, 2023
OS(es) Affected: Windows

Sometimes misidentified as Sambreel adware or Lucky Leap adware, SuperWeb or Adware.SuperWeb is a similar adware program that displays advertisements in your browser while pretending to provide benefits to your Web-surfing experience. Malware researchers see no advantages inherent to allowing SuperWeb to remain on your computer, but they do note numerous drawbacks to SuperWeb's presence, including the non-consensual display of third-party advertisements and a generalized potential for degraded PC performance. Because SuperWeb, like almost all other adware programs, refuses to uninstall itself completely through normal software-removal procedures, the use of a good anti-malware program for removing SuperWeb is suggested.

SuperWeb: the Kryptonite to Your Browser Disguised as a Superhero

SuperWeb is a browser add-on that markets itself as an advantageous application but actually has minimal functions beyond those that are concerned with delivering its advertisements. Depending on the version of SuperWeb that's installed, you may see SuperWeb advertisements in any of several formats that include:

  • Pop-up windows.
  • Injected links that modify the text-based content of unrelated sites. These links tend to utilize specific key words or phrases to make their advertisements appear to be 'relevant' to your Web-browsing habits.
  • Banners and other additional advertisements that are injected into unrelated sites, similar to the hyperlinks mentioned previously.

SpywareRemove.com malware researchers also caution that SuperWeb may modify your browser settings in various ways intended to enable its advertisement-delivery functions, update itself without your permission or even redirect your browser automatically.

Getting the Kind of Web that You Want without Any 'Super' Additions

SuperWeb never should be trusted to uninstall itself upon request, and SpywareRemove.com malware researchers urge the use of suitable anti-malware applications for deleting SuperWeb whenever its advertisements and other browser modifications are in sight. Particularly thorough system scans should be considered in cases where SuperWeb is installed without your consent being involved, which is estimated to be true for the majority of SuperWeb installations to date.

Although SuperWeb is a Potentially Unwanted Program without any serious benefits to your computer usage, malware experts don't classify SuperWeb as a threat not potentially damaging as a Trojan or other high-level PC threat. If you respond to SuperWeb properly and promptly, your computer shouldn't be damaged by temporary contact with SuperWeb. However, until SuperWeb is removed, contact with its advertisements should be minimized whenever it's practical for you to do so.

SuperWeb currently is anticipated to be compatible with several browsers, such as Google's Chrome, Mozilla's Firefox or Microsoft's own Internet Explorer. While Windows PCs are as usual, at the greatest risk for adware infections like SuperWeb, other operating systems also may be subjected to the SuperWeb advertising.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\14b8c878-c97a-47ad-97f6-152f66e81531\PluginContainer.exe File name: PluginContainer.exe
Size: 1.49 MB (1493216 bytes)
MD5: 56d7d04c80d1eb70c426a808f4325291
Detection count: 1,028
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\14b8c878-c97a-47ad-97f6-152f66e81531
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\457082ba-095e-4f86-8a98-c078f3146538\plugincontainer.exe File name: plugincontainer.exe
Size: 771.8 KB (771808 bytes)
MD5: c81e980726c90181ab52014b63ff60b2
Detection count: 824
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\457082ba-095e-4f86-8a98-c078f3146538
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\4f596ec3-77fb-4fc3-82cb-691c42c71d77\plugincontainer.exe File name: plugincontainer.exe
Size: 1.58 MB (1585376 bytes)
MD5: b2052586345a37c1b7b5ba132c1928c5
Detection count: 667
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\4f596ec3-77fb-4fc3-82cb-691c42c71d77
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\415c6520-c0da-4fcb-9597-9d03c710be54\plugincontainer.exe File name: plugincontainer.exe
Size: 1.49 MB (1498848 bytes)
MD5: 900bbe075e9509641df04ac2683763f6
Detection count: 628
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\415c6520-c0da-4fcb-9597-9d03c710be54
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\457082ba-095e-4f86-8a98-c078f3146538\plugincontainer.exe File name: plugincontainer.exe
Size: 2.16 MB (2163424 bytes)
MD5: 5aa098ba529ba0d826c9199a001b27f7
Detection count: 623
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\457082ba-095e-4f86-8a98-c078f3146538
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\3a08aecf-996c-434c-872d-c3768a6d9134\plugincontainer.exe File name: plugincontainer.exe
Size: 774.87 KB (774872 bytes)
MD5: 35244cb327b9b93bb472643d8e00b92d
Detection count: 581
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\3a08aecf-996c-434c-872d-c3768a6d9134
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\457082ba-095e-4f86-8a98-c078f3146538\plugincontainer.exe File name: plugincontainer.exe
Size: 1.39 MB (1396960 bytes)
MD5: 22d6d20c564fe3ff7cf7fb5fc0e22bd4
Detection count: 569
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\457082ba-095e-4f86-8a98-c078f3146538
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\3929cb63-cbbd-4b9c-8b92-a50fbd04e656\plugincontainer.exe File name: plugincontainer.exe
Size: 771.29 KB (771296 bytes)
MD5: 59991c279195ceeeb4435e456f9babcb
Detection count: 562
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\3929cb63-cbbd-4b9c-8b92-a50fbd04e656
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\415c6520-c0da-4fcb-9597-9d03c710be54\PluginContainer.exe File name: PluginContainer.exe
Size: 1.41 MB (1417952 bytes)
MD5: b0b7dba67fe98df3a47827e4f614bb6f
Detection count: 438
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\415c6520-c0da-4fcb-9597-9d03c710be54
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\e325c549-dfea-4258-ac01-0f7baf68f990\plugincontainer.exe File name: plugincontainer.exe
Size: 1.4 MB (1407712 bytes)
MD5: 88bfe94b08782d1abf7ba3e58dd64f38
Detection count: 431
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\e325c549-dfea-4258-ac01-0f7baf68f990
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\6f66c052-8827-4487-9031-09becb0cf541\plugincontainer.exe File name: plugincontainer.exe
Size: 773.33 KB (773336 bytes)
MD5: fa33538ccc4559f4832e85180c4c5f0f
Detection count: 424
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\6f66c052-8827-4487-9031-09becb0cf541
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\78a595fd-df95-40de-93ec-d80a00f25811\plugincontainer.exe File name: plugincontainer.exe
Size: 1.58 MB (1588448 bytes)
MD5: e6c6cda12a316b23b88ee97a0fb012e4
Detection count: 422
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\78a595fd-df95-40de-93ec-d80a00f25811
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\7d981f9d-43ff-4844-a2f8-499114283074\plugincontainer.exe File name: plugincontainer.exe
Size: 1.4 MB (1400592 bytes)
MD5: db8ee04d12bbae464237c5d8c9559dd6
Detection count: 405
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\7d981f9d-43ff-4844-a2f8-499114283074
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\3a08aecf-996c-434c-872d-c3768a6d9134\plugincontainer.exe File name: plugincontainer.exe
Size: 1.38 MB (1387036 bytes)
MD5: 5aff647a94b3047d3078336868d93eb0
Detection count: 396
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\3a08aecf-996c-434c-872d-c3768a6d9134
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\452ddee6-da77-4a3b-a2f1-d610430ffb92\plugincontainer.exe File name: plugincontainer.exe
Size: 1.59 MB (1593560 bytes)
MD5: bf4b318148ea4e349e1679376a0a89b5
Detection count: 370
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\452ddee6-da77-4a3b-a2f1-d610430ffb92
Group: Malware file
Last Updated: August 23, 2017
%ALLUSERSPROFILE%\59afa7b8-54e5-4124-8be7-716a905c1142\PluginContainer.exe File name: PluginContainer.exe
Size: 762.9 KB (762908 bytes)
MD5: dae6224de5e79437c40851e677a746fa
Detection count: 363
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\59afa7b8-54e5-4124-8be7-716a905c1142
Group: Malware file
Last Updated: August 23, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}{41c3f0a0-de7a-4bf3-9ab6-16ccde2d4655}{4AA46D49-459F-4358-B4D1-169048547C23}{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}{99415057-7C50-439D-AA20-02D83C071B61}{A07E5BFF-B16C-4ABA-A30F-514213A945E6}{A2D733A7-73B0-4C6B-B0C7-06A432950B66}{B853E835-9F24-4F4B-B55C-E554D15CCCD2}{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}File name without pathhdapp1008-a.akamaihd[1].xmlhttps_hdapp1008-a.akamaihd.net_0.localstoragehttps_hdapp1008-a.akamaihd.net_0.localstorage-journalRegexp file mask%COMMONPROGRAMFILES%\3a08aecf-996c-434c-872d-c3768a6d9134\updater.exe%COMMONPROGRAMFILES(x86)%\3a08aecf-996c-434c-872d-c3768a6d9134\updater.exe%HOMEDRIVE%\ods.exe.config%HOMEDRIVE%\search-simple.xml%WINDIR%\System32\drivers\wStLibG64.sys%WINDIR%\system32\drivers\{[RANDOM CHARACTERS]-[RANDOM CHARACTERS]-[RANDOM CHARACTERS]-[RANDOM CHARACTERS]-[RANDOM CHARACTERS]}w{1,4}.sysHKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\DOMStorage\hdapp1008-a.akamaihd.netSYSTEM\ControlSet001\Services\Service Mgr SearchQuickKnowSYSTEM\ControlSet001\Services\Update Mgr SearchQuickKnowSYSTEM\ControlSet002\Services\Service Mgr SearchQuickKnowSYSTEM\ControlSet002\Services\Update Mgr SearchQuickKnowSYSTEM\CurrentControlSet\Services\Service Mgr SearchQuickKnowSYSTEM\CurrentControlSet\Services\Update Mgr SearchQuickKnow

Additional Information

The following directories were created:
%COMMONPROGRAMFILES%\475a9272-9606-46f5-b309-fdfc084777bf%COMMONPROGRAMFILES%\9466af57-1f38-4973-ab1c-22f7e17e2d6a%COMMONPROGRAMFILES(x86)%\475a9272-9606-46f5-b309-fdfc084777bf%COMMONPROGRAMFILES(x86)%\9466af57-1f38-4973-ab1c-22f7e17e2d6a
Loading...