Movies Toolbar

Threat Scorecard

Ranking: 1,380
Threat Level: 50 % (Medium)
Infected Computers: 96,505
First Seen: July 1, 2013
Last Seen: April 10, 2024
OS(es) Affected: Windows

Movies Toolbar Image

Movies Toolbar is a toolbar/ browser hijacker that is able to enter vulnerable computers packed with numerous freeware applications from the Internet. Movies Toolbar can be installed on Internet Explorer, Mozilla Firefox or Google Chrome. Movies Toolbar makes changes to the affected web browser's settings, inserts its toolbar, and replaces the default homepage and default search engine with some suspicious website. Movies Toolbar is also categorized as a potentially unwanted program (PUP). Movie Toolbar is delivered by Bandoo Media, which is responsible for advertising more applications such as this one. The aim of Movies Toolbar is to push some doubtful advertisement websites by using tricky techniques. Movies Toolbar will force the affected PC user to use Search.ask.com as the main search engine. Movies Toolbar also adds numerous sponsored websites to the search results in any legal search engine on the targeted PC. Movies Toolbar can also result in unwanted hits to dubious websites and numerous pop-up ads shown on the victimized PCs.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Fortinet Riskware/SearchSuite
Ikarus PUA.Bandoo
Panda Trj/Chgt.C
GData Win32.Application.Searchsuite.C
AhnLab-V3 PUP/Win32.SearchSuite
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win64.SearchSuite
McAfee-GW-Edition Artemis
Kaspersky not-a-virus:WebToolbar.Win64.SearchSuite.d
K7AntiVirus Trojan ( 0049f9491 )
McAfee Artemis!5D8BE8191754
AVG MalSign.Generic.1EE
McAfee Artemis!B9678C037594
AVG Toolbar.SearchSuite
McAfee Artemis!6AC8FDB0D943
Fortinet Riskware/Agent

SpyHunter Detects & Remove Movies Toolbar

File System Details

Movies Toolbar may create the following file(s):
# File Name MD5 Detections
1. searchresultsDx64.dll 06450c9d3113c68c07ac2c570c7f709a 1,423
2. DatamngrCoordinator.exe 1779e80796df468c0dcbe12c4511f570 190
3. searchresultsDx.dll e1650d38200291ca948bfeefaedd1553 151
4. searchresultsDx.dll bb5bdd530fea4019cba2058243ecae94 80
5. searchresultsDx64.dll 9ec2360e7562841f20dd46d0675648ba 80
6. SafetyNutManager.exe 2d0018773ca108fad9bd03c24474abbf 48
7. DatamngrCoordinator.exe 98e908f62f4c885172a792a384c7db96 41
8. DatamngrCoordinator.exe d633f9c4bca52ba1b205458383db37b9 39
9. DatamngrCoordinator.exe 7f372382621f882426be758872c0162d 27
10. safetynut.exe 780a11e50ae157025b2f41d70b1659ab 24
11. DatamngrCoordinator.exe bc87e37d5975813600f03dfd5f59d067 24
12. SafetyNutManager.exe b1a640d382564e485e24d57150dc2edd 17
13. DatamngrCoordinator.exe 9c789c6047291e7eac3df3e91b7d82fb 15
14. searchresultsDx.dll bf5c1afa814fc7b627de38ad0b7f5e89 15
15. SafetyNutManager.exe c11903cdaf06b5af763427d92e5fb083 13
16. DatamngrCoordinator.exe bbfebf6ebb90bdb82f6cd41993c5dc62 10
17. SafetyNutManager.exe ebd8b431643f2f70c49db999bea59a30 9
18. SafetyNutManager.exe cde37e7c992c4dd81b968ba5c5a7daed 9
19. DatamngrCoordinator.exe 683e592d74beb6c543da211bb5fcadd7 9
20. DatamngrCoordinator.exe c06c846b328f315da5b8fdbf522db848 6
21. DatamngrCoordinator.exe ab25316f7b9b4ed153bdbaeace5a922e 5
22. DatamngrCoordinator.exe d04da792879119eff519085409882b70 5
23. DatamngrCoordinator.exe 2a1212c4087aec76dd2a352ba0926c65 5
24. safetynut.exe 76b5fdcdec0d39f4dcf95d68485764e9 4
25. searchresultsDx.dll b25a3118faeeb9b4cdcb86ffe6e74251 4
26. searchresultsDx64.dll 55db7a9f25d5a88a6f2984b17697a98d 1
27. searchresultsDx.dll 999454672c47f94de2b35f09a2a87649 1
More files

Registry Details

Movies Toolbar may create the following registry entry or registry entries:
CLSID
{0050C303-0E30-48D3-B402-FB5D490CB89F}
{08AE5E13-70CC-4FBB-AD00-EF4B90A44451}
{338a754c-b46e-4bf2-8ac8-23de36862ad3}
{3444c3c5-6c56-4a16-a453-832b05bf6ea4}
{3d86a75b-cb6b-4764-885d-ca6336f04ba2}
{44E16FC6-3A79-4F00-8BF3-399AD9C403BF}
{587604F0-C55C-4F3F-8339-D634E878828E}
{6014D692-4409-4EDD-ABB2-36CA26DC2A2E}
{934BEE21-C5A4-457E-B130-77CA098FBBD3}
{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}
{CC2542C4-3251-4AC4-845E-F7E742BBE6DE}
{d6715933-3f8b-44bc-b4b2-682164832b31}
Software\APN DTX
Software\APN DTX\{3444c3c5-6c56-4a16-a453-832b05bf6ea4}
Software\APNDTX
Software\AppDataLow\Software\somotomoviestoolbar1
Software\AppDataLow\Software\somotomoviestoolbar181
SOFTWARE\Classes\AppID\SavevidPluginCore.EXE
SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard
SOFTWARE\Classes\MoviesToolbarHelper.DNSGuard.1
SOFTWARE\Classes\SavevidPluginCore.PluginManager
SOFTWARE\Classes\SavevidPluginCore.PluginManager.1
SOFTWARE\Classes\Wow6432Node\AppID\SavevidPluginCore.EXE
Software\imeshkoyotesoftmoviestoolbar
Software\Microsoft\Internet Explorer\Approved Extensions\{338A754C-B46E-4BF2-8AC8-23DE36862AD3}
Software\Microsoft\Internet Explorer\Approved Extensions\{C75A2D66-6D1D-4735-8F63-9D85DCC026A6}
SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\${dtUserElevationPolicyID}
SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3444c3c5-6c56-4a16-a453-832b05bf6ea4}
SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}
SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}
SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}
SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2427}
SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2446}
SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2459}
SOFTWARE\Microsoft\Internet Explorer\Toolbar\{08ae5e13-70cc-4fbb-ad00-ef4b90a44451}
SOFTWARE\Microsoft\Internet Explorer\Toolbar\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}
SOFTWARE\Microsoft\Internet Explorer\Toolbar\{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}
SOFTWARE\Microsoft\Internet Explorer\Toolbar\{cc2542c4-3251-4ac4-845e-f7e742bbe6de}
SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}
Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c0caa5fe-7c9c-4dca-a265-63cf55379d1a}
SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}
SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C75A2D66-6D1D-4735-8F63-9D85DCC026A6}
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{338a754c-b46e-4bf2-8ac8-23de36862ad3}
SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C75A2D66-6D1D-4735-8F63-9D85DCC026A6}
SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C75A2D66-6D1D-4735-8F63-9D85DCC026A6}
SOFTWARE\SafetyNut
Software\Savevid
Software\savevidmoviestoolbarha
Software\Somoto
Software\somotomoviestoolbar1
Software\somotomoviestoolbar181
SOFTWARE\Wow6432Node\APNDTX
SOFTWARE\Wow6432Node\Classes\AppID\SavevidPluginCore.EXE
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\${dtUserElevationPolicyID}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3444c3c5-6c56-4a16-a453-832b05bf6ea4}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{52db1893-8a90-4192-aede-08e00b8f8473}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2446}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2459}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{08ae5e13-70cc-4fbb-ad00-ef4b90a44451}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{c75a2d66-6d1d-4735-8f63-9d85dcc026a6}
SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{cc2542c4-3251-4ac4-845e-f7e742bbe6de}
SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}
Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c0caa5fe-7c9c-4dca-a265-63cf55379d1a}
SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C75A2D66-6D1D-4735-8F63-9D85DCC026A6}
SOFTWARE\Wow6432Node\SafetyNut
SYSTEM\ControlSet001\Enum\Root\LEGACY_F06DEFF2-5B9C-490D-910F-35D3A9119622
SYSTEM\ControlSet001\services\DatamngrCoordinator
SYSTEM\ControlSet001\Services\F06DEFF2-5B9C-490D-910F-35D3A9119622
SYSTEM\ControlSet001\services\F06DEFF2-5B9C-490D-910F-35D3A91196222
SYSTEM\ControlSet001\services\SafetyNutManager
SYSTEM\ControlSet001\services\SavevidService
SYSTEM\ControlSet002\Enum\Root\LEGACY_F06DEFF2-5B9C-490D-910F-35D3A9119622
SYSTEM\ControlSet002\services\DatamngrCoordinator
SYSTEM\ControlSet002\Services\F06DEFF2-5B9C-490D-910F-35D3A9119622
SYSTEM\ControlSet002\services\F06DEFF2-5B9C-490D-910F-35D3A91196222
SYSTEM\ControlSet002\services\SafetyNutManager
SYSTEM\ControlSet002\services\SavevidService
SYSTEM\CurrentControlSet\Enum\Root\LEGACY_F06DEFF2-5B9C-490D-910F-35D3A9119622
SYSTEM\CurrentControlSet\services\DatamngrCoordinator
SYSTEM\CurrentControlSet\Services\F06DEFF2-5B9C-490D-910F-35D3A9119622
SYSTEM\CurrentControlSet\services\F06DEFF2-5B9C-490D-910F-35D3A91196222
SYSTEM\CurrentControlSet\services\SafetyNutManager
SYSTEM\CurrentControlSet\services\SavevidService
ilividmoviestoolbar20CR
imeshkoyotesoftmoviestoolbarCR
imeshkoyotesoftmoviestoolbarFF
imeshkoyotesoftmoviestoolbarIE
Savevid
savevidmoviestoolbarhaCR
savevidmoviestoolbarhaFF
somotomoviestoolbar181CR
somotomoviestoolbar181FF
somotomoviestoolbar181IE
somotomoviestoolbar1CR
somotomoviestoolbar1FF
somotomoviestoolbar1IE

Directories

Movies Toolbar may create the following directory or directories:

%ALLUSERSPROFILE%\Application Data\SafetyNut
%ALLUSERSPROFILE%\SafetyNut
%LOCALAPPDATA%\ilividmoviestoolbar20
%LOCALAPPDATA%\imeshkoyotesoftmoviestoolbar
%LOCALAPPDATA%\imeshsavevidmoviestoolbar
%LOCALAPPDATA%\savevidmoviestoolbarha
%LOCALAPPDATA%\somotomoviestoolbar1
%PROGRAMFILES%\Browser Tab Search by Ask\SafetyNut
%PROGRAMFILES%\Movies App
%PROGRAMFILES%\Savevid
%PROGRAMFILES%\ilividmoviestoolbar20
%PROGRAMFILES%\ilividmoviestoolbar280
%PROGRAMFILES(x86)%\Browser Tab Search by Ask\SafetyNut
%PROGRAMFILES(x86)%\Savevid
%PROGRAMFILES(x86)%\ilividmoviestoolbar20
%PROGRAMFILES(x86)%\ilividmoviestoolbar280
%ProgramFiles%\Movies Toolbar
%ProgramFiles(x86)%\Movies Toolbar
%TEMP%\{2977d8cc-8902-4340-be88-2c676bf96b8d}
%USERPROFILE%\AppData\LocalLow\ilividmoviestoolbar20
%USERPROFILE%\AppData\LocalLow\imeshkoyotesoftmoviestoolbar
%USERPROFILE%\AppData\LocalLow\savevidmoviestoolbarha
%USERPROFILE%\AppData\LocalLow\somotomoviestoolbar1
%USERPROFILE%\AppData\LocalLow\somotomoviestoolbar181
%UserProfile%\Local Settings\Application Data\ilividmoviestoolbar20
%UserProfile%\Local Settings\Application Data\imeshkoyotesoftmoviestoolbar
%UserProfile%\Local Settings\Application Data\somotomoviestoolbar1

URLs

Movies Toolbar may call the following URLs:

somotomoviestoolbar1

Related Posts

Trending

Most Viewed

Loading...