InnoApp

By GoldSparrow in Adware

Threat Scorecard

Ranking: 16,670
Threat Level: 20 % (Normal)
Infected Computers: 1,071
First Seen: March 31, 2014
Last Seen: June 20, 2023
OS(es) Affected: Windows

InnoApp is known to be adware that may claim to help PC users save time and money while they are shopping on the Internet on shopping-related websites. InnoApp may spread and enter the computer system through packaged free applications that PC users can download from unreliable download websites. InnoApp may be downloaded and install itself on the computer system without the PC user's authorization, or as an extra program to free software. InnoApp may show random pop-up advertisements and banners including offers, discount coupons and deals or the ones linked to the computer user's Internet surfing habits. InnoApp may hijack any Web browser installed on the PC and make changes to the default browser settings. InnoApp may also replace the default start page and search service or a new tab window with a questionable website that was produced to possibly benefit from ad clicks and increased web traffic.

SpyHunter Detects & Remove InnoApp

File System Details

InnoApp may create the following file(s):
# File Name MD5 Detections
1. {3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys 22d3ab70466c6e8269655e7bbc60eb8d 10
2. {3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys 4e92d51a96e28c0fec168cb913f50651 8
3. {3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys b20353161dbf519bdccb4c9d63e15a64 2
4. {3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys 4ef053f2447541b7abf4ca37459b6749 2

Registry Details

InnoApp may create the following registry entry or registry entries:
CLSID
{0E47F4E2-AAEF-4583-9D90-A0BFC1945BC5}
{59e47ef9-5163-4e82-9c17-3d6f63dda496}
{741227E4-EDAE-443F-A438-64B1E79F5062}
{79A7FE5F-BE17-4CF8-91F4-AEBD7ABBF762}
Software\innoApp
Software\Microsoft\Internet Explorer\Approved Extensions\{50B63821-88A0-4987-8B85-B46C94C8F39B}
Software\Microsoft\Internet Explorer\Approved Extensions\{BD48B836-0F8B-48CA-A603-2DF62DEF07F2}
SOFTWARE\Microsoft\Tracing\innoApp_RASAPI32
SOFTWARE\Microsoft\Tracing\innoApp_RASMANCS
SOFTWARE\Microsoft\Tracing\updateinnoApp_RASAPI32
SOFTWARE\Microsoft\Tracing\updateinnoApp_RASMANCS
SOFTWARE\Microsoft\Tracing\utilinnoApp_RASAPI32
SOFTWARE\Microsoft\Tracing\utilinnoApp_RASMANCS
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{50B63821-88A0-4987-8B85-B46C94C8F39B}
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BD48B836-0F8B-48CA-A603-2DF62DEF07F2}
Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{50B63821-88A0-4987-8B85-B46C94C8F39B}
Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD48B836-0F8B-48CA-A603-2DF62DEF07F2}
SOFTWARE\Wow6432Node\innoApp
SOFTWARE\Wow6432Node\Microsoft\Tracing\innoApp_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\innoApp_RASMANCS
SOFTWARE\Wow6432Node\Microsoft\Tracing\updateinnoApp_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\updateinnoApp_RASMANCS
SOFTWARE\Wow6432Node\Microsoft\Tracing\utilinnoApp_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\utilinnoApp_RASMANCS
SYSTEM\ControlSet001\services\eventlog\Application\Update innoApp
SYSTEM\ControlSet002\services\eventlog\Application\Update innoApp
SYSTEM\ControlSet002\services\Update innoApp
SYSTEM\CurrentControlSet\services\eventlog\Application\Update innoApp
SYSTEM\CurrentControlSet\services\Update innoApp

Directories

InnoApp may create the following directory or directories:

%LOCALAPPDATA%\Google\Chrome\User Data\Default\Extensions\pjbepjpoliboddkljgjphikhegfhelmo
%LOCALAPPDATA%\Google\Chrome\User Data\Default\Local Extension Settings\pjbepjpoliboddkljgjphikhegfhelmo
%PROGRAMFILES%\innoApp
%PROGRAMFILES(x86)%\innoApp
%TEMP%\innoApp

URLs

InnoApp may call the following URLs:

innoApp

Trending

Most Viewed

Loading...