Threat Database Browser Hijackers Search.sweetpacks.com

Search.sweetpacks.com

Search.sweetpacks.com Image

The Search.sweetpacks.com website is a search engine that is associated with the Sweetpacks toolbar. Typically, this toolbar is installed without the computer user's consent or its installation is bundled with a freeware application. Computer users that are not aware of the installation of this toolbar will then be surprised when a new menu bar is added to their web browser. Unfortunately, this toolbar does not provide new or useful functions for the victim's web browser. In fact, the toolbar associated with Search.sweetpacks.com (the Sweetpacks search web page) provides redundant buttons that are good for nothing except wasting space in the victim's web browser and subjecting the victim to advertisements. If the Sweetpacks toolbar is installed on your computer, ESG security researchers strongly advise using a trustworthy anti-malware tool to analyze your computer.

There are several unwanted symptoms that have been associated with Search.sweetpacks.com and the Sweetpacks toolbar. ESG security analysts have listed some of the most common of these below:

  1. The Sweetpacks toolbar changes your existing home page to Search.sweetpacks.com. Trying to undo this change is useless since every time you restart your web browser Search.sweetpacks.com will appear as your home again.
  2. The Sweetpacks toolbar will also override your existing default search engine. The Sweetpacks toolbar includes a search box that carries out searches on Search.sweetpacks.com. It also changes your web browser's integrated search functions so that they will use Search.sweetpacks.com for all of your online searches.
  3. Malware associated with Search.sweetpacks.com can cause browser redirects, unwanted advertisements and pop-up windows as well as general PC performance problems.

Computer users attempting to carry out a serious online search using Search.sweetpacks.com will be seriously disappointed with the results. Searches carried out on Search.sweetpacks.com result in numerous sponsored search results that are absolutely irrelevant to the keywords and search terms. Search.sweetpacks.com will often include links that use pay-per-click marketing plans to generate revenue, taking advantage of computer users that have no option but to visit Search.sweetpacks.com because of a malware infection on their computer.
Sweetpacks Search and Toolbar Image 2

File System Details

Search.sweetpacks.com may create the following file(s):
# File Name Detections
1. C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe
2. C:\Program Files\SweetIM\Messenger\ContentPackagesActivationHandler.exe
3. C:\Program Files\SweetIM\Communicator\mgxml_wrapper.dll
4. C:\Program Files\SweetIM\Communicator\mgcommunication.dll
5. C:\Users\\AppData\Local\Temp\~34C5.tmp
6. C:\Program Files\SweetIM\Communicator\mgsimcommon.dll
7. C:\Program Files\SweetIM\Communicator\mgcommon.dll
8. C:\Program Files\SweetIM\Communicator\resources\sqlite\mgSqlite3.dll
9. C:\Program Files\SweetIM\Messenger\SweetIM.exe
10. C:\Program Files\SweetIM\Messenger\mgcommunication.dll
11. C:\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll
12. C:\Program Files\SweetIM\Messenger\default.xml
13. C:\Program Files\SweetIM\Messenger\mgSweetIM.dll
14. C:\Program Files\SweetIM\Messenger\mgArchive.dll
15. C:\Program Files\SweetIM\Messenger\mgcommon.dll
16. C:\Program Files\SweetIM\Messenger\mgxml_wrapper.dll
17. C:\Program Files\SweetIM\Messenger\mgYahooAuto.dll
18. C:\Program Files\SweetIM\Messenger\mgYahooMessengerAdapter.dll
19. C:\Program Files\SweetIM\Messenger\mgconfig.dll
20. C:\Program Files\SweetIM\Messenger\mgFlashPlayer.dll
21. C:\Program Files\SweetIM\Messenger\mgsimcommon.dll
22. C:\Program Files\SweetIM\Messenger\mgUpdateSupport.dll
23. C:\Program Files\SweetIM\Messenger\msvcp71.dll
24. C:\Program Files\SweetIM\Messenger\msvcr71.dll
25. C:\Program Files\SweetIM\Messenger\resources\images\AudibleButton.png
26. C:\Program Files\sweetpacks bundle uninstaller\uninstaller.exe
27. C:\WINDOWS\system32\dmwu.exe
28. C:\WINDOWS\system32\ARFC\wrtc.exe
29. C:\WINDOWS\system32\jmdp\SweetNT.crx
30. C:\WINDOWS\system32\ImHttpComm.dll
31. C:\WINDOWS\system32\WNLT\Installation\uninstaller.exe
32. %CommonAppData%\SweetIM\Messenger\conf\sweetim.xml
33. %CommonAppData%\SweetIM\Messenger\conf\sweetimapp.xml
34. %CommonAppData%\SweetIM\Messenger\conf\adapter.xml
35. %CommonAppData%\SweetIM\Messenger\conf\autoupdate.xml
36. %CommonAppData%\SweetIM\Communicator\conf\communicator.xml
37. %CommonAppData%\SweetIM\Messenger\conf\contentpackages.xml
38. %CommonAppData%\SweetIM\Messenger\conf\logger.xml
39. %CommonAppData%\SweetIM\Messenger\conf\messages.xml
40. %CommonAppData%\SweetIM\Messenger\conf\users\main_user_config.xml
41. %CommonAppData%\SweetIM\Messenger\data\Bars\Default\100\bar.html
42. %CommonAppData%\SweetIM\Messenger\data\contentdb\cache_indx.dat
43. %CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\close_but.gif
44. %CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\failure_dialog_BG.jpg
45. %CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\activationFail.htm
46. %CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\ccbd8b558f1d599e360b3dc00c89e1b1.facebook2.png
47. %CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\dda5971490977d5465f836a12522f1a1.games3.png
48. %CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\d7663980840977888075cdf06da9e63d.facebook2_hover.png
49. %UserProfile%\Desktop\Search the Web.url
50. C:\Users\\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\0x0409.ini
51. C:\Users\\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\SweetIESetup.msi
52. C:\Users\\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\_ISMSIDEL.INI
53. C:\Users\\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\Setup.INI
54. %Program Files%\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcp90.dll
55. %Program Files%\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcr90.dll
56. %Program Files%\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
57. %Program Files%\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll
58. %Program Files%\SweetIM\Toolbars\Internet Explorer\mgcommon.dll
59. %Program Files%\SweetIM\Toolbars\Internet Explorer\mghooking.dll
60. %Program Files%\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml
61. %Program Files%\SweetIM\Toolbars\Internet Explorer\mgconfig.dll
62. %Program Files%\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll
63. %Program Files%\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
64. C:\Windows\Installer\MSI3EF4.tmp
65. C:\Windows\Installer\MSI3F71.tmp
66. C:\Windows\Installer\MSI7594.tmp
67. C:\Windows\Installer\MSI3D8C.tmp
68. C:\Windows\Installer\MSI6453.tmp
69. C:\Windows\Installer\MSI6A3E.tmp
70. C:\Users\\AppData\Local\Temp\{F4E33CE5-A7AB-4F68-A7E7-F0AA84EF2D9E}\mgSqlite3.dll
71. C:\Users\\AppData\Local\Temp\SweetIMSetup.exe
72. C:\Users\\AppData\Local\Temp\1401895078_406507_787_2.tmp
73. C:\Users\\AppData\Local\Temp\1401895075_403574_310_13.tmp
74. C:\Users\\AppData\Local\Temp\1401895075_403543_310_9.tmp
75. C:\Users\\AppData\Local\Temp\1401895075_403605_310_15.tmp
76. C:\Users\\AppData\Local\Temp\1401895075_403574_310_11.tmp
77. C:\Users\\AppData\Local\Temp\1401895097_425539_399_4.tmp
78. C:\Users\\AppData\Local\Temp\Shortcut_%original file name%.exe
79. C:\Users\\AppData\Local\Temp\SweetIESetup.exe
80. C:\Users\\AppData\Local\Microsoft\Windows\History\desktop.ini
81. C:\Users\\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
82. C:\Users\\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
83. C:\Users\\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AWQM5W29\desktop.ini
84. C:\Users\\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini
85. C:\Users\\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2PPIFPB5\desktop.ini
86. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\O3SLD0KY.txt
87. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\GLGE2E5K.txt
88. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\V9X7HFKE.txt
89. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\T0GTGATN.txt
90. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\3K60BT2V.txt
91. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\931030CU.txt
92. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\8TA95T24.txt
93. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\EHTEWOXQ.txt
94. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\0E6DVPWG.txt
95. C:\Users\\AppData\Roaming\Microsoft\Windows\Cookies\RD1S97GG.txt
96. C:\Users\\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LZDITB4D\desktop.ini
97. C:\Users\\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
98. C:\Users\\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PBOX4Z0X\desktop.ini
99. C:\Users\\Desktop\Continue SweetIM installation.lnk

Registry Details

Search.sweetpacks.com may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "FaviconURL" = "http://cdn.web.sweetim.com/toolbarff/searchplugin/sweetim.ico"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "URL" = "http://search.sweetim.com/search.asp?src=6&crg=3.61010009&ptr=100&st=12&q={searchTerms}&barid={297A90D1-EEED-11E2-9F91-080027EB26AB}"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "FaviconURL" = "http://cdn.web.sweetim.com/toolbarff/searchplugin/sweetim.ico"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "DisplayName" = "SweetIM search"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "URL" = "http://search.sweetim.com/search.asp?src=6&crg=3.61010009&ptr=100&st=12&q={searchTerms}&barid={297A90D1-EEED-11E2-9F91-080027EB26AB}"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "SweetIM" = "C:\Program Files\SweetIM\Messenger\SweetIM.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Sweetpacks Communicator" = "C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe"
HKEY_CURRENT_USER\Software\IM
HKEY_CURRENT_USER\Software\SweetIM
HKEY_CURRENT_USER\Software\WNLT
HKEY_CURRENT_USER\Software\ImInstaller
HKEY_CLASSES_ROOT\sim-packages
HKEY_CLASSES_ROOT\SWEETIE.IEToolbar
HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1
HKEY_CLASSES_ROOT\Toolbar3.SWEETIE
HKEY_CLASSES_ROOT\Toolbar3.SWEETIE.1
HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook
HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM
HKEY_LOCAL_MACHINE\SOFTWARE\WNLT
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WNLT
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SweetIM Bundle by SweetPacks
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IBUpdaterService
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0C43FE6B-E881-4AFC-B384-4AEBC90047E8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DD85D6BF-4787-4A93-99A5-3F0CF0AE8834}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}

URLs

Search.sweetpacks.com may call the following URLs:

mysearch.sweetpacks.com
search.sweetpacks.com
start.sweetpacks.com
sweetpacks-search.com

Trending

Most Viewed

Loading...