Home Malware Programs Potentially Unwanted Programs (PUPs) The Results Hub

The Results Hub

Posted: June 8, 2015

Threat Metric

Ranking: 5,669
Threat Level: 2/10
Infected PCs: 18,327
First Seen: June 3, 2015
Last Seen: October 13, 2023
OS(es) Affected: Windows

The Results Hub is by a company called Candle Jar and marketed as a legitimate browser plugin. The Results Hub also claims to provide users with an improved browsing experience with advanced searching features. However useful as it may seem, The Results Hub is classified a Potentially Unwanted Program (PUP) that exhibits adware symptoms. Adware developers use questionable delivery methods such as bundling to promote adware-related products such as The Results Hub. Consequently, users may inadvertently install ad-supported plugins such as The Results Hub. Users may also install The Results Hub from their official website at results-hub.com. If users look at their End Users License Agreement, it is explicitly stated that The Results Hub 'sets the default search settings in all of your compatible internet browsers' such as default search engine, homepage and startup pages. The Results Hub is also known to deliver intrusive online advertisements that may redirect users to third-party websites that may be considered questionable or promote such applications. Computer security experts advise users to remove The Results Hub from their computer with a legitimate anti-malware tool.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%COMMONPROGRAMFILES(x86)%\6f66c052-8827-4487-9031-09becb0cf541\updater.exe File name: updater.exe
Size: 645.33 KB (645336 bytes)
MD5: e6f0a4edf23eefdc00973375af6dc51b
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES(x86)%\6f66c052-8827-4487-9031-09becb0cf541
Group: Malware file
Last Updated: December 22, 2015
%COMMONPROGRAMFILES(x86)%\6f66c052-8827-4487-9031-09becb0cf541\updater.exe File name: updater.exe
Size: 610 KB (610008 bytes)
MD5: 49e7346022afcd6b2ab831287fe7a7cd
Detection count: 60
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES(x86)%\6f66c052-8827-4487-9031-09becb0cf541
Group: Malware file
Last Updated: October 8, 2015
%ALLUSERSPROFILE%\6f66c052-8827-4487-9031-09becb0cf541\plugincontainer.exe File name: plugincontainer.exe
Size: 1.04 MB (1048280 bytes)
MD5: 192cb6674874f0b7c4cb4587635c00d6
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\6f66c052-8827-4487-9031-09becb0cf541
Group: Malware file
Last Updated: October 8, 2015

Registry Modifications

The following newly produced Registry Values are:

CLSID{04a7f6bf-84c9-46c3-b217-8b8282802520}{13EF55BE-89F5-4BB0-AA18-94ED61559A43}{2a361efd-fb26-4d2c-82ef-2535d46b8c07}{4DE3F9B9-AF22-472E-885B-393D29AF925E}{7c85e8c6-2536-48d1-b070-eb7299c77169}{8a4a8b42-a270-4ad4-95c3-815ded6433fc}{906d7e81-6355-4069-b02d-bcfdfe2885e7}{90AD83AE-A0D3-413E-9915-2EF03079CBE2}{93CF4E7C-E68F-4D95-B047-A8B1F1584847}{a8345a32-3b31-410a-bfbf-f2fdb81ba019}{abe3b32b-b9f8-4d33-a7c4-4d73e3bf60ec}{be1a5d83-523d-4a57-bc56-65afe77fd42a}{c3cbfe5d-53c1-44f9-8442-6faaf005aaa9}{CD1FC859-A109-437D-9631-508B9DC3E8A0}{CD3F4CC5-FFEC-4DEB-9903-30B64C14F550}{D0679B32-12B0-442B-93A0-DF26D1B46D02}{D2853659-4F85-41EF-83D9-26286D4B8605}{d7720535-efdf-47dc-a3bf-31aabe0f3223}{DB1D8BFF-D65B-47EA-8AC7-0CB8E28C6091}{E5478627-F318-4374-BCC5-C868F3FCE022}{E6C522F4-5D93-4D83-9CCF-0B3CA65B3C20}{F895EF08-C980-4DFC-A0C8-C40E25D66ADF}File name without pathhttps_getresultshub-a.akamaihd.net_0.localstoragehttps_getresultshub-a.akamaihd.net_0.localstorage-journalhttps_moreresultshub-a.akamaihd.net_0.localstoragehttps_moreresultshub-a.akamaihd.net_0.localstorage-journalhttps_seeresultshub-a.akamaihd.net_0.localstoragehttps_seeresultshub-a.akamaihd.net_0.localstorage-journalmoreresultshub-a.akamaihd[1].xmlResultsHubDesktopSearch.exe.logResultsHubDesktopSearch.lnkHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\AppID\{b35c58bf-bfee-48cc-a2ae-b0e6900f8ff2}SOFTWARE\Classes\AppID\{b492e591-024f-41cb-9cc6-fa0e62cf0075}SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\moreresultshub-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\moreresultshub-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\002\Internet Explorer\DOMStorage\moreresultshub-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\002\Internet Explorer\EdpDomStorage\moreresultshub-a.akamaihd.netSOFTWARE\GetTheResultsHubSOFTWARE\ItsResultsHubSOFTWARE\ManyResultsHubSoftware\Microsoft\Internet Explorer\Approved Extensions\{04A7F6BF-84C9-46C3-B217-8B8282802520}Software\Microsoft\Internet Explorer\Approved Extensions\{08AE5E13-70CC-4FBB-AD00-EF4B90A44451}Software\Microsoft\Internet Explorer\Approved Extensions\{49C38908-BF3A-40E8-9ACD-DF905EB96518}SOFTWARE\Microsoft\Internet Explorer\Approved Extensions\{A881421A-8A48-4FE4-B4F4-BB664F6723B5}SOFTWARE\Microsoft\Internet Explorer\Approved Extensions\{BD2D7C9D-45BB-4E7A-A2C4-C0210A6BAA4B}Software\Microsoft\Internet Explorer\Approved Extensions\{C3CBFE5D-53C1-44F9-8442-6FAAF005AAA9}Software\Microsoft\Internet Explorer\DOMStorage\getresultshub-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\manyresultshub-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\moreresultshub-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\seeresultshub-a.akamaihd.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\getresultshub-a.akamaihd.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\moreresultshub-a.akamaihd.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\seeresultshub-a.akamaihd.netSOFTWARE\Microsoft\Tracing\ResultsHubDesktopSearch_RASAPI32SOFTWARE\Microsoft\Tracing\ResultsHubDesktopSearch_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{7c85e8c6-2536-48d1-b070-eb7299c77169}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{a8345a32-3b31-410a-bfbf-f2fdb81ba019}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{be1a5d83-523d-4a57-bc56-65afe77fd42a}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{c3cbfe5d-53c1-44f9-8442-6faaf005aaa9}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7C85E8C6-2536-48D1-B070-EB7299C77169}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7C85E8C6-2536-48D1-B070-EB7299C77169}SOFTWARE\ResultsHubSOFTWARE\SeeMoreResultsHubSOFTWARE\SeeResultsHubSOFTWARE\TheResultsHubSOFTWARE\Wow6432Node\AResultsHubSOFTWARE\Wow6432Node\Classes\AppID\{b35c58bf-bfee-48cc-a2ae-b0e6900f8ff2}SOFTWARE\Wow6432Node\Classes\AppID\{b492e591-024f-41cb-9cc6-fa0e62cf0075}SOFTWARE\Wow6432Node\GetTheResultsHubSOFTWARE\Wow6432Node\ItsResultsHubSOFTWARE\Wow6432Node\ManyResultsHubSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{7c85e8c6-2536-48d1-b070-eb7299c77169}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{a8345a32-3b31-410a-bfbf-f2fdb81ba019}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{be1a5d83-523d-4a57-bc56-65afe77fd42a}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{c3cbfe5d-53c1-44f9-8442-6faaf005aaa9}SOFTWARE\Wow6432Node\MoreResultsHubSOFTWARE\Wow6432Node\ResultsHubSOFTWARE\Wow6432Node\SeeMoreResultsHubSOFTWARE\Wow6432Node\SeeResultsHubSOFTWARE\Wow6432Node\TheResultsHubSYSTEM\ControlSet001\services\Service Mgr GetTheResultsHubSYSTEM\ControlSet001\services\Service Mgr ManyResultsHubSYSTEM\ControlSet001\services\Service Mgr MoreResultsHubSYSTEM\ControlSet001\services\Service Mgr ResultsHubSYSTEM\ControlSet001\services\Service Mgr SeeResultsHubSYSTEM\ControlSet001\services\Service Mgr TheResultsHubSYSTEM\ControlSet001\services\Update Mgr GetTheResultsHubSYSTEM\ControlSet001\services\Update Mgr ManyResultsHubSYSTEM\ControlSet001\services\Update Mgr MoreResultsHubSYSTEM\ControlSet001\services\Update Mgr ResultsHubSYSTEM\ControlSet001\services\Update Mgr SeeResultsHubSYSTEM\ControlSet001\services\Update Mgr TheResultsHubSYSTEM\ControlSet002\services\Service Mgr GetTheResultsHubSYSTEM\ControlSet002\services\Service Mgr ManyResultsHubSYSTEM\ControlSet002\services\Service Mgr MoreResultsHubSYSTEM\ControlSet002\services\Service Mgr ResultsHubSYSTEM\ControlSet002\services\Service Mgr SeeResultsHubSYSTEM\ControlSet002\services\Service Mgr TheResultsHubSYSTEM\ControlSet002\services\Update Mgr GetTheResultsHubSYSTEM\ControlSet002\services\Update Mgr ManyResultsHubSYSTEM\ControlSet002\services\Update Mgr MoreResultsHubSYSTEM\ControlSet002\services\Update Mgr ResultsHubSYSTEM\ControlSet002\services\Update Mgr SeeResultsHubSYSTEM\ControlSet002\services\Update Mgr TheResultsHubSYSTEM\CurrentControlSet\services\Service Mgr GetTheResultsHubSYSTEM\CurrentControlSet\services\Service Mgr ManyResultsHubSYSTEM\CurrentControlSet\services\Service Mgr MoreResultsHubSYSTEM\CurrentControlSet\services\Service Mgr ResultsHubSYSTEM\CurrentControlSet\services\Service Mgr SeeResultsHubSYSTEM\CurrentControlSet\services\Service Mgr TheResultsHubSYSTEM\CurrentControlSet\services\Update Mgr GetTheResultsHubSYSTEM\CurrentControlSet\services\Update Mgr ManyResultsHubSYSTEM\CurrentControlSet\services\Update Mgr MoreResultsHubSYSTEM\CurrentControlSet\services\Update Mgr ResultsHubSYSTEM\CurrentControlSet\services\Update Mgr SeeResultsHubSYSTEM\CurrentControlSet\services\Update Mgr TheResultsHubHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Get The Results HubIts Results HubMany Results HubMore Results HubResults HubSee More Results HubSee Results HubThe Results Hub

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\3a65b31f-fd78-451b-b99b-7557d173b95d%ALLUSERSPROFILE%\A Results Hub%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\A Results Hub%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Results Hub%PROGRAMFILES%\Get The Results Hub%PROGRAMFILES%\Its Results Hub%PROGRAMFILES%\More Results Hub%PROGRAMFILES%\Results Hub%PROGRAMFILES%\See Results Hub%PROGRAMFILES%\The Results Hub%PROGRAMFILES(x86)%\Get The Results Hub%PROGRAMFILES(x86)%\Its Results Hub%PROGRAMFILES(x86)%\More Results Hub%PROGRAMFILES(x86)%\My Results Hub%PROGRAMFILES(x86)%\Results Hub%PROGRAMFILES(x86)%\See Results Hub%PROGRAMFILES(x86)%\The Results Hub%Temp%\More Results Hub%allusersprofile%\Results Hub%temp%\Results Hub%temp%\See Results Hub%temp%\The Results Hub
The following URL's were detected:
See Results Hubmanyresultshub.comwww.getresultshub.comwww.itsresultshub.comwww.moreresultshub.comwww.results-hub.comwww.theresultshub.com

Related Posts

Loading...