Threat Database Adware Adware.Arcade Yum

Adware.Arcade Yum

By CagedTech in Adware
Published:
Last updated:

Threat Scorecard

Threat Level: 20 % (Normal)
Infected Computers: 2,522
First Seen: September 23, 2014
Last Seen: June 24, 2026
OS(es) Affected: Windows

The detection of Adware.Arcade Yum on your system indicates the presence of a potentially unwanted program that may be causing disruptions to your browsing experience and overall system performance. Adware infections like this one are designed to generate revenue for their creators by displaying unwanted advertisements, collecting user data, and potentially leading to more severe security issues if left unchecked.

What Is Adware.Arcade Yum?

Adware.Arcade Yum is a type of adware program that is designed to display unwanted advertisements on infected systems. The name itself does not directly indicate a specific malware family, but rather serves as a detection label for this particular adware variant. Adware programs like Adware.Arcade Yum can be distributed through various means, including bundled software installations, infected downloads, and exploit kits. Once installed, they can modify system settings, browser configurations, and even install additional malware to achieve their goals.

How Adware.Arcade Yum Operates

Adware.Arcade Yum operates by integrating itself into the system and browser environments, allowing it to intercept and modify web traffic, display pop-up ads, and collect user data such as browsing history and search queries. This data can be used to create targeted advertisements, which are then displayed to the user in an attempt to generate revenue. In some cases, adware programs may also install additional components, such as toolbars, browser extensions, or other potentially unwanted programs, to further compromise the system.

Symptoms of Infection

Symptoms of an Adware.Arcade Yum infection may include an increase in unwanted advertisements, pop-ups, and browser redirects. Users may also notice a decrease in system performance, as the adware program consumes system resources to display ads and collect data. Additionally, some users may experience changes to their browser settings, such as a modified homepage or default search engine, which can be difficult to reverse without proper removal of the adware.

  • Unwanted advertisements and pop-ups
  • Browser redirects and modified search results
  • Decreased system performance
  • Changes to browser settings and configurations

How to Remove Adware.Arcade Yum

  1. Boot your system in Safe Mode with Networking to prevent the adware from loading and to allow for a more thorough removal process.
  2. Use a reputable anti-malware tool, such as SpyHunter, to perform a full system scan and detect any malicious components related to Adware.Arcade Yum.
  3. Uninstall any suspicious programs or applications that may be associated with the adware infection.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings to remove any modifications made by the adware.
  5. Reboot your system and perform a follow-up scan with your anti-malware tool to ensure that all components of the adware have been removed.

Conclusion

Removing Adware.Arcade Yum from your system requires a combination of technical knowledge and the right tools. By following the steps outlined above, you can help to ensure the complete removal of this adware program and prevent future infections. It is essential to remain vigilant and take proactive measures to protect your system, such as keeping your operating system and software up to date, using reputable anti-malware tools, and avoiding suspicious downloads and links. By taking these steps, you can help to maintain a safe and secure computing environment.

Aliases

4 security vendors flagged this file as malicious.

Antivirus Vendor Detection
Ikarus Trojan-Downloader
McAfee Artemis!19C71380E3C3
McAfee-GW-Edition Artemis
Sophos Arcade Yum

File System Details

Adware.Arcade Yum may create the following file(s):
# File Name MD5 Detections
1. arcadeyum.dll 332b593819a6f31aea79785249b43221 125
2. ArcadeYumIEHelper.dll f334008b6c195e818eee62026ce8238f 76
3. ArcadeYumVersionControl.exe a75e4cdbb19f1436e65e1dae3222ea37 30
More files

Registry Details

Adware.Arcade Yum may create the following registry entry or registry entries:
Software\AppDataLow\Software\ArcadeYum
SOFTWARE\Microsoft\Tracing\ArcadeYum_RASAPI32
SOFTWARE\Microsoft\Tracing\ArcadeYum_RASMANCS
SOFTWARE\Wow6432Node\Microsoft\Tracing\ArcadeYum_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\ArcadeYum_RASMANCS

Directories

Adware.Arcade Yum may create the following directory or directories:

%ALLUSERSPROFILE%\ArcadeYum
%LOCALAPPDATA%\ArcadeYum
%PROGRAMFILES%\ArcadeYum
%PROGRAMFILES(x86)%\ArcadeYum
%USERPROFILE%\Local Settings\Application Data\ArcadeYum

URLs

Adware.Arcade Yum may call the following URLs:

arcadeyum.com

Analysis Report

General information

Family Name: Adware.Arcade Yum
Signature status: Self Signed

Known Samples

MD5: 3d75234256e6e0f42cf6c1aa28d2cc91
SHA1: c565706a1b8b65cabf7a91451ad8aba3d2277516
SHA256: 5B27BF45712A01340971B2285914C5D83BD54F13778F1E87F749E09F0542E6EB
File Size: 183.08 KB, 183080 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name Arcade Yum
File Description Uninstaller
Legal Copyright Copyright (c) ArcadeYum

Digital Signatures

Signer Root Status
ArcadeYum LLC Thawte Code Signing CA - G2 Self Signed

Block Information

Total Blocks: 524
Potentially Malicious Blocks: 20
Whitelisted Blocks: 497
Unknown Blocks: 7

Visual Map

? 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 ? ? ? 0 x 0 0 x ? x 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 x 0 0 x 0 0 x 0 x 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 1 0 0 0 0 0 0 1 1 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 1 1 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Zegost.AQ

Files Modified

File Attributes
c:\users\user\appdata\local\temp\7zsa68b.tmp Synchronize,Write Attributes
c:\users\user\appdata\local\temp\7zsa68b.tmp\module.uninstaller.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\7zsa68b.tmp\module.uninstaller.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\7zsa68b.tmp\module.uninstaller.exe.config Generic Write,Read Attributes
c:\users\user\appdata\local\temp\7zsa68b.tmp\module.uninstaller.exe.config Synchronize,Write Attributes

Registry Modifications

Key::Value Data API Name
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::proxybypass  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::intranetname  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::uncasintranet  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::autodetect RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::proxybypass  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::intranetname  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::uncasintranet  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::autodetect RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 -k8��8tX��B�8 �� �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�"*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 ~� % xy* �/��Y�d�kP~� ��ރ�p��^�o���zee+Vs} kP~ ��1���7 ���ﺃee����1��fe��h�n RegNtPreCreateKey
Show More
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 .k8��8tX��B�8 �� �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�"*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G RegNtPreCreateKey

Windows API Usage

Category API
Process Manipulation Evasion
  • NtUnmapViewOfSection
Process Shell Execute
  • ShellExecuteEx
User Data Access
  • GetComputerNameEx
  • GetUserDefaultLocaleName
  • GetUserObjectInformation

Shell Command Execution

(NULL) module.uninstaller.exe