iWebar

By GoldSparrow in Adware

Threat Scorecard

Ranking: 2,306
Threat Level: 20 % (Normal)
Infected Computers: 32,498
First Seen: December 18, 2013
Last Seen: September 20, 2023
OS(es) Affected: Windows

iWebar is adware that may show a variety of random pop-up ads containing discount coupons and offers on the screen of the PC while the computer user is browsing the Web. iWebar can access web browsers such as Internet Explorer, Mozilla Firefox and Google Chrome. When iWebar invades the computer system, it may start displaying annoying pop-up advertisements while the PC user is surfing shopping related websites, social networking websites or other popular websites. If the computer user clicks on any pop-up advertisements shown by iWebar, he may get repeatedly diverted to suspicious websites that may display commercial advertisements. The main aim of iWebar may be to benefit from increased traffic of questionable ads-related websites and clicks on relevant ads. iWebar may proliferate and invade the PC through packed freeware. Computer users may evade the download of iWebar if they are careful while installing other free software and unchecking all options which may urge to install additional unidentified applications. However, many computer users often miss the installation steps because of a rush. iWebar may collect details about the computer user's browsing habits and may then transfer this data to the third parties and use it for a variety of marketing associated intentions.

SpyHunter Detects & Remove iWebar

Registry Details

iWebar may create the following registry entry or registry entries:
CLSID
{11111111-1111-1111-1111-110311551110}
{22222222-2222-2222-2222-220322552210}
{44444444-4444-4444-4444-440344554410}
{55555555-5555-5555-5555-550355555510}
{66666666-6666-6666-6666-660366556610}
Regexp file mask
%WINDIR%\System32\Tasks\Installer_iwebar
%WINDIR%\System32\Tasks\iWebar-chromeinstaller
%WINDIR%\System32\Tasks\iWebar-codedownloader
%WINDIR%\System32\Tasks\iWebar-enabler
%WINDIR%\System32\Tasks\iWebar-firefoxinstaller
%WINDIR%\System32\Tasks\iWebar-updater
%WINDIR%\Tasks\iWebar-chromeinstaller.job
%WINDIR%\Tasks\iWebar-codedownloader.job
%WINDIR%\Tasks\iWebar-enabler.job
%WINDIR%\Tasks\iWebar-firefoxinstaller.job
%WINDIR%\Tasks\iWebar-updater.job
Software\AppDataLow\Software\Crossrider\onBeforeNavigate\35510
Software\AppDataLow\Software\Crossrider\onRequest\35510
Software\AppDataLow\Software\iWebar
SOFTWARE\Classes\68671f62832e4803b34065d441f9a2210065123.BHO
SOFTWARE\Classes\68671f62832e4803b34065d441f9a2210065123.BHO.1
SOFTWARE\Classes\68671f62832e4803b34065d441f9a2210065123.Sandbox
SOFTWARE\Classes\68671f62832e4803b34065d441f9a2210065123.Sandbox.1
SOFTWARE\Classes\CrossriderApp0035510.BHO
SOFTWARE\Classes\CrossriderApp0035510.BHO.1
SOFTWARE\Classes\CrossriderApp0035510.Sandbox
SOFTWARE\Classes\CrossriderApp0035510.Sandbox.1
Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\iWebar
SOFTWARE\InstalledBrowserExtensions\21836
Software\InstalledBrowserExtensions\21836\35510
Software\InstalledBrowserExtensions\iWebar
SOFTWARE\iWebar
SOFTWARE\iWebar-nv
SOFTWARE\iWebar-nv-edge
Software\iWebar-nv-ie
Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110311551110}
Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration\{11111111-1111-1111-1111-110311551110}
Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{002255df-f361-4e29-b00b-d20403cebc16}
Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2837e313-a40f-4c02-b2d1-b7fbdf8884f9}
Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{323ba568-5bdd-4660-a515-539fc3a87e54}
Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8529ef48-2a25-4db8-bd46-8e8a8e0febfd}
Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94573f2c-7948-4a62-a279-254930e526f6}
Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95d1b1f6-13ab-4066-9e02-d6f81fb5940d}
Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9e799fb7-8c3d-4dbf-8d52-c4420bf0ae18}
SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\iWebar-bg.exe
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Installer_iwebar
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iWebar-chromeinstaller
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iWebar-codedownloader
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iWebar-enabler
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iWebar-firefoxinstaller
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iWebar-updater
SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311551110}
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311551110}
Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311551110}
SOFTWARE\Wow6432Node\InstalledBrowserExtensions\21836
SOFTWARE\Wow6432Node\iWebar
SOFTWARE\Wow6432Node\iWebar-nv
SOFTWARE\Wow6432Node\iWebar-nv-edge
SOFTWARE\Wow6432Node\iWebar-nv-ie
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2837e313-a40f-4c02-b2d1-b7fbdf8884f9}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{323ba568-5bdd-4660-a515-539fc3a87e54}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8529ef48-2a25-4db8-bd46-8e8a8e0febfd}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94573f2c-7948-4a62-a279-254930e526f6}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9e799fb7-8c3d-4dbf-8d52-c4420bf0ae18}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\iWebar-bg.exe
SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311551110}

Directories

iWebar may create the following directory or directories:

%APPDATA%\iWebar
%LOCALAPPDATA%\iWebar-BrowserExtensionUninstall
%PROGRAMFILES%\iWebar
%PROGRAMFILES(x86)%\iWebar
%USERPROFILE%\AppData\LocalLow\iWebar

Related Posts

Trending

Most Viewed

Loading...