Home Malware Programs Adware SushiLeads

SushiLeads

Posted: June 8, 2015

Threat Metric

Threat Level: 2/10
Infected PCs: 970
First Seen: June 8, 2015
Last Seen: June 27, 2024
OS(es) Affected: Windows

SushiLeads is classified a Potentially Unwanted Program (PUP) that exhibits adware capabilities. SushiLeads claims to provide users with a plugin that would inform them when looking for a service professional to hire. SushiLeads also claims to save time for users as it launches a form in their web browsers. However, SushiLeads is a piece of software that keeps track of their IP address, browsing history, and online activities and promotes advertisements that are considered intrusive. The IP address of their website sushileads.com is known to resolve to domains such as donutleads.com and pastaleads.com. Also, SushiLeads ads are capable of redirecting users to third-party websites and generate online traffic for them. Computer security experts do not advise users to install SushiLeads on their system, although it often comes bundled with other freeware. In case users have inadvertently installed SushiLeads, it is advised to remove it using a legitimate anti-malware tool.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%windir%\System32\Tasks\SushiLeadsHKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Tracing\NpUpdaterService_RASAPI32SOFTWARE\Microsoft\Tracing\NpUpdaterService_RASMANCSSOFTWARE\Microsoft\Tracing\SushiLeadsApplication_RASAPI32SOFTWARE\Microsoft\Tracing\SushiLeadsApplication_RASMANCSSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SushiLeadsSoftware\Microsoft\Windows\CurrentVersion\Run\SushiLeadsApplicationSOFTWARE\Wow6432Node\Microsoft\Tracing\SushiLeadsApplication_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\SushiLeadsApplication_RASMANCSSYSTEM\ControlSet001\services\eventlog\Application\SushiLeadsUpdaterServiceSYSTEM\ControlSet001\services\SushiLeadsUpdaterServiceSYSTEM\CurrentControlSet\services\eventlog\Application\SushiLeadsUpdaterServiceSYSTEM\CurrentControlSet\services\SushiLeadsUpdaterServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}sushileads

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\sushileads%PROGRAMFILES%\sushileads%PROGRAMFILES(x86)%\sushileads
Loading...