Home Malware Programs Adware Up Pro Ads

Up Pro Ads

Posted: September 24, 2015

Threat Metric

Ranking: 7,307
Threat Level: 2/10
Infected PCs: 67,933
First Seen: September 10, 2015
Last Seen: October 12, 2023
OS(es) Affected: Windows

Up Pro is a browser extension that promises to help you shop better. This tool claims that it will assist you by checking if any site offers the products you are viewing at a cheaper price. In theory, this activity should make you spend less money on your purchases. In reality, Up Pro is a pretty annoying adware, and the majority of clients may not appreciate its presence. Up Pro isn't one of these programs that PC users download voluntarily. If you type its name on Google, you will notice many other pieces of software that are named similarly, but there would be no sign of Up Pro. The adware relies on the notorious "bundling" method, which means that it may arrive as an additional component of some freeware. A part of the users may agree to install it tempted by the nice description. Those who perform the setup process through the "Quick" menu, however, may not be informed about the presence of the adware at all. Once Up Pro gets access to your PC, it may worsen the performance of Google Chrome, may generate intrusive pop-ups, banners and interstitial ads, and place them on many different websites. Some of these commercial materials try to obtain information. For example, they may inform you that you have won some reward and need to type your email address or phone number to receive it. The majority of ads will take you towards some unknown e-commerce pages with unverified legitimacy. On the other side, some ads may load potentially dangerous platforms, so you should be very careful. Up Pro also may cause some minor performance issues. The advice of the experts is to use advanced security software to delete this adware.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%TEMP%\UpProAddonInstaller-ff.exe%TEMP%\UpProSetup.exe%WINDIR%\System32\Tasks\iCommerceDownload%WINDIR%\System32\Tasks\iCommerceUpdate%WINDIR%\System32\Tasks\UpProVerified[NUMBERS]HKEY..\..\..\..{RegistryKeys}SOFTWARE\iCommerceSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iCommerceDownloadSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iCommerceUpdateSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UpProVerifiedSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UpProVerified2SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BD2DA72C-E036-4543-98F3-01028C983375}Software\Microsoft\Windows\CurrentVersion\Run\UpProVerifiedSOFTWARE\Mozilla\Firefox\Extensions\support@geticommerce.comSOFTWARE\ShmAddonSoftware\UpProVerifiedSOFTWARE\Wow6432Node\iCommerceSOFTWARE\Wow6432Node\Mozilla\Firefox\Extensions\support@geticommerce.comSOFTWARE\Wow6432Node\ShmAddonHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}UpProVerified{40369812-21FB-4BE0-8508-387636F329D1}_is1{716D2234-E822-4AB0-874A-1DD7F75047DB}_is1

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Up Pro%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Up Pro (Verified)%APPDATA%\UpProVerified%PROGRAMFILES%\Up Pro%PROGRAMFILES%\Up Pro (Verified)%PROGRAMFILES(x86)%\Up Pro%PROGRAMFILES(x86)%\Up Pro (Verified)

Related Posts

Loading...