Home Malware Programs Potentially Unwanted Programs (PUPs) TrueDownloader

TrueDownloader

Posted: October 16, 2014

Threat Metric

Ranking: 17,098
Threat Level: 1/10
Infected PCs: 297
First Seen: October 17, 2014
Last Seen: August 9, 2023
OS(es) Affected: Windows

TrueDownloader is a PUP (Potentially Unwanted Program) that is created by BluPak. According to detections from anti-malware sources, TrueDownloader is a setup application that uses Nullsoft Scriptable Install System installer. According to research, TrueDownloader has affected users in the U.S. and Germany mostly. In general, TrueDownloader is distributed via bundling method with other free programs. Once installed on your system, TrueDownloader may start making changes. TrueDownloader may cause your browsers to display several pop-ups, advertisements, banners, coupons that may use a large portion of your system's resources; thus, causing it to run slower and to encounter crashes. What is more, this PUP may also change some of the default settings of your browser; as a result, homepage is different along with default search engine.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{56CED0E3-4A28-4D55-B87A-E8EDE89F3AC6}{5A4482B2-0C93-40B3-A490-A79B93852439}{B297FE7C-06E1-4BA2-B8FB-5BF4A7C67A36}{CA01C669-7CCB-4FB1-BEEE-87262A0FD62A}{E3AC6D32-BB17-441D-88CC-61E9AC817CFC}HKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\IETDPlugin.CIETDDMSOFTWARE\Classes\IETDPlugin.CIETDDM.1SOFTWARE\Classes\TD.TDDownloaderMgrSOFTWARE\Classes\TD.TDDownloaderMgr.1SOFTWARE\Microsoft\Windows\CurrentVersion\Run\TrueDownloaderSoftware\TrueDownloaderSOFTWARE\Wow6432Node\Google\Chrome\NativeMessagingHosts\com.truedownloaderSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\TrueDownloaderSOFTWARE\Wow6432Node\TrueDownloaderHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}TrueDownloader
Loading...