Home Malware Programs Potentially Unwanted Programs (PUPs) Ttessab

Ttessab

Posted: October 14, 2013

Threat Metric

Ranking: 12,347
Threat Level: 2/10
Infected PCs: 988
First Seen: October 14, 2013
Last Seen: October 12, 2023
OS(es) Affected: Windows

Ttessab is a potentially unwanted application, which may carry adware capabilities, add its own toolbars or have other uncertain purposes. Ttessab is not a PC infection, but it may contain numerous harmful functionalities. Ttessab may use deceptive techniques to boost traffic of a specific advertising website and generate revenue from sponsored links or other misleading pay-per-click methods. Ttessab may invade the PC packaged with freeware and shareware programs (video recording/streaming, download-managers or PDF creators). Ttessab may also be packaged within the custom installer on many dubious download websites, so if the Internet user has downloaded a certain software product from these dubious download websites, he might have also downloaded and installed Ttessab throughout the setup process of another program.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{56535AA3-E5F8-4B14-9674-23558B4043C5}{8BE9DC07-C862-4563-9D3F-F7DB5F1A1456}{e3a06b08-18fc-45fd-9922-38b48d04d699}HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{E3A06B08-18FC-45FD-9922-38B48D04D699}Software\Microsoft\Internet Explorer\DOMStorage\ttessab.netSOFTWARE\Microsoft\Tracing\Ttessab_RASAPI32SOFTWARE\Microsoft\Tracing\Ttessab_RASMANCSSOFTWARE\Microsoft\Tracing\updateTtessab_RASAPI32SOFTWARE\Microsoft\Tracing\updateTtessab_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{e3a06b08-18fc-45fd-9922-38b48d04d699}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E3A06B08-18FC-45FD-9922-38B48D04D699}Software\TtessabSOFTWARE\Wow6432Node\Microsoft\Tracing\Ttessab_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Ttessab_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateTtessab_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateTtessab_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{e3a06b08-18fc-45fd-9922-38b48d04d699}SOFTWARE\Wow6432Node\TtessabSYSTEM\ControlSet001\services\eventlog\Application\Update TtessabSYSTEM\ControlSet001\services\Update TtessabSYSTEM\CurrentControlSet\services\eventlog\Application\Update TtessabSYSTEM\CurrentControlSet\services\Update TtessabHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Ttessab

Additional Information

The following directories were created:
%PROGRAMFILES%\Ttessab%PROGRAMFILES(x86)%\Ttessab%TEMP%\Ttessab
The following URL's were detected:
Ttessab
Loading...