GreyGray

By Sumo3000 in Adware

Threat Scorecard

Ranking: 9,829
Threat Level: 20 % (Normal)
Infected Computers: 1,603
First Seen: October 8, 2013
Last Seen: August 11, 2023
OS(es) Affected: Windows

There have been numerous complaints involving GreyGray redirects and pop-up advertisements. GreyGray is a PUP (Potentially Unwanted Program). GreyGray is created by Super Web LLC, an entity that has been responsible for several known adware. Applications developed by Super Web LLC are often part of low quality marketing efforts. In most cases, PUPs like GreyGray are bundled with freeware distributed by low quality software developers or marketers. In many cases, GreyGray may be installed without permission, although technically, computer users often have the option of opting out of installing GreyGray. However, this option is hidden in some way or made hard to find. Once the GreyGray PUP is installed, GreyGray adds advertising content to unrelated websites.

Advertising and Marketing Content Associated with GreyGray

The GreyGray PUP has been associated with several types of online marketing. The GreyGray PUP has been linked to the following types of advertising strategies:

  • GreyGray has been associated with search-related advertising schemes. For example, search engines on the affected Web browser may display sponsored search results. These search results will appear when computer users carry out a search, despite not being related to the search terms at all. GreyGray has a search component itself. However, security researchers have observed that the GreyGray search function is quite unreliable and is meant specifically to drive traffic to its associated websites.
  • GreyGray has also been known to add advertising content to unrelated websites. For example, GreyGray may add an additional banner to the victim's Web browser, which may display a banner whenever the computer user visits other Web pages. GreyGray may also add in-line text advertisements to other content. Other types of advertisements associated with GreyGray include pop-up window advertisements and sliding advertisements that appear on the bottom of the affected Web browser window. GreyGray has also been associated with redirects that may appear when trying to connect to unrelated Web pages.
  • Despite other symptoms associated with GreyGray, GreyGray may cause Internet connectivity and browser performance problems.

Aliases

4 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AVG MalSign.GreyGray
Fortinet Riskware/BrowseFox
AhnLab-V3 Trojan/Win32.Zapchast
McAfee Artemis!48CDB8D668B1

SpyHunter Detects & Remove GreyGray

File System Details

GreyGray may create the following file(s):
# File Name MD5 Detections
1. utilGreyGray.exe 6f6228f026f11fc9ce875db82d8aa606 20
2. updateGreyGray.exe cf88d876930bb20033d9474a6e37150d 9
3. GreyGraybho.dll 3f2df8731522b13feacda4f2be0a7893 8
4. utilGreyGray.exe dc62c28753f06d144c6bb8ab158788d3 5

Registry Details

GreyGray may create the following registry entry or registry entries:
CLSID
{630BB364-173F-49E6-8510-6E0C86B25593}
{ae60e6ed-49dd-4099-8b5e-386a4908d5d5}
{FE34FA86-9846-47AA-8E21-108C4D3EB7B1}
Software\GreyGray
Software\Microsoft\Internet Explorer\Approved Extensions\{AE60E6ED-49DD-4099-8B5E-386A4908D5D5}
SOFTWARE\Microsoft\Tracing\updateGreyGray_RASAPI32
SOFTWARE\Microsoft\Tracing\updateGreyGray_RASMANCS
SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{ae60e6ed-49dd-4099-8b5e-386a4908d5d5}
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE60E6ED-49DD-4099-8B5E-386A4908D5D5}
Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE60E6ED-49DD-4099-8B5E-386A4908D5D5}
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\GreyGray
SOFTWARE\Wow6432Node\GreyGray
SOFTWARE\Wow6432Node\Microsoft\Tracing\updateGreyGray_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\updateGreyGray_RASMANCS
SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{ae60e6ed-49dd-4099-8b5e-386a4908d5d5}
SYSTEM\ControlSet001\services\eventlog\Application\Update GreyGray
SYSTEM\ControlSet001\services\Update GreyGray
SYSTEM\ControlSet001\Services\Util GreyGray
SYSTEM\ControlSet002\Services\Util GreyGray
SYSTEM\CurrentControlSet\services\eventlog\Application\Update GreyGray
SYSTEM\CurrentControlSet\services\Update GreyGray
SYSTEM\CurrentControlSet\Services\Util GreyGray

Directories

GreyGray may create the following directory or directories:

%PROGRAMFILES%\GreyGray
%PROGRAMFILES(x86)%\GreyGray

Trending

Most Viewed

Loading...