Threat Database Browser Hijackers MyStart IncrediBar

MyStart IncrediBar

By CagedTech in Browser Hijackers

Threat Scorecard

Ranking: 636
Threat Level: 50 % (Medium)
Infected Computers: 342,659
First Seen: February 28, 2012
Last Seen: April 25, 2024
OS(es) Affected: Windows

Aliases

6 security vendors flagged this file as malicious.

Anti-Virus Software Detection
McAfee Artemis!36C55F1CCDD6
AntiVir APPL/InstallBrain.Gen5
Comodo ApplicUnwnt.Win32.AdWare.IBrain.B
Avast Win32:PUP-gen [PUP]
F-Prot W32/IBrain.B.gen!Eldorado
K7AntiVirus Unwanted-Program

SpyHunter Detects & Remove MyStart IncrediBar

File System Details

MyStart IncrediBar may create the following file(s):
# File Name MD5 Detections
1. dmwu.exe#99CB3988B192FEAC 6718d6a986ff9314d372c61c2fac0941 5,163
2. ddddeeee.exe 76117c651faebd501235cbc412a7f4f9 363
3. ddddeeee.exe 1129e42e4affc7e3a2c61281b2ea6e03 213
4. ddddeeee.exe 11112007c8f18113a8c6b859a4e923bc 153
5. file0008.chk 9f59670d799c63208da2724ab3dd0cee 115
6. ddddeeee.exe bcd9aff5f895e3d6a320c555c2f908e3 109
7. dmwu.exe 6b6609061600a8276ce773e18e0015cf 102
8. ddddeeee.exe 10331cf8d064469c1610b0b49dc1241e 79
9. ddddeeee.exe 47b45182844044c7d56a6a9bc4ee246b 67
10. ddddeeee.exe 36e30d1e00c2a691b54991a7cd7efada 53
11. ddddeeee.exe da0ba0a3eff6b4323d648f404458e8a8 45
12. ddddeeee.exe b312cff6d30636c463470fe598a9328f 35
13. dmwu.exe a0a813efb18c6f51111d44f06e6af17f 34
14. dmwu.exe 208168cd196a4991bb8a2d5a7574ec46 31
15. dmwu.exe 954d4b8d0757b493e105a847fa901333 31
16. dmwu.exe c8c0dcdddbe55f56e0b3dcda33fbce06 27
17. dmwu.exe 5bc4b339e7f6810ea64ae00556f703e0 22
18. dmwu.exe c02e46c35c545ec7c87353e672a62e14 20
19. dmwu.exe 016b12d93618e6410c592efb798884a5 18
20. dmwu.exe 3ebd9533c4e30cfa242bffee66a6782a 15
21. dmwu.exe 9a28e7d8ff6bca09537fc7ffd4382cc8 12
22. dmwu.exe e40a10978ed314705964d5f31f56ab7f 11
23. dmwu.exe 462e8cdac95771c1bde275588db927ec 11
24. dmwu.exe 6ad90022eb835343f53ad7a30ee14fa2 10
25. dmwu.exe 6ea4316f80921a24c4aaafdbef4f2861 10
26. dmwu.exe 512336457f427b20ae50174933c4fc3c 10
27. dmwu.exe 484ebd0d1d75629fc83a55dd8849fa1a 10
More files

Registry Details

MyStart IncrediBar may create the following registry entry or registry entries:
CLSID
{238D4B4C-D63C-42A7-B6D8-DC96C8C0F5B9}
{322F82C7-DE90-4579-93AA-971DCF45B5E9}
Software\AppDataLow\Software\Incredibar-Games_EN
SOFTWARE\Classes\esrv.IncredibarESrvc
SOFTWARE\IB Updater
Software\IBUpdaterService
Software\ImInstaller\Incredibar
Software\Incredibar
SOFTWARE\Incredibar-Games_EN
SOFTWARE\Incredibar.com
Software\Microsoft\Internet Explorer\DOMStorage\incredibar.com
Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
SOFTWARE\Microsoft\Tracing\incredibar_install_RASAPI32
SOFTWARE\Microsoft\Tracing\incredibar_install_RASMANCS
SOFTWARE\Wow6432Node\Incredibar.com
SYSTEM\CurrentControlSet\Services\IBUpdaterService
incredibar
Incredibar-Games EN Toolbar
{336D0C35-8A85-403a-B9D2-65C292C39087}_is1

Directories

MyStart IncrediBar may create the following directory or directories:

%ALLUSERSPROFILE%\Application Data\IBUpdaterService
%ALLUSERSPROFILE%\Dati applicazioni\IBUpdaterService
%ALLUSERSPROFILE%\IBUpdaterService
%APPDATA%\IBUpdaterService
%AppData%\Incredibar
%PROGRAMFILES%\IB Updater
%PROGRAMFILES%\Incredibar-Games_EN
%PROGRAMFILES%\Incredibar.com
%PROGRAMFILES%\Incredibar.com\incredibar
%PROGRAMFILES(x86)%\IB Updater
%PROGRAMFILES(x86)%\Incredibar-Games_EN
%PROGRAMFILES(x86)%\Incredibar.com
%TEMP%\mt_ffx\Incredibar.com
%UserProfile%\AppData\LocalLow\Incredibar-Games_EN

URLs

MyStart IncrediBar may call the following URLs:

http://mystart.incredibar.com/
mystart.Incredibar.com

Trending

Most Viewed

Loading...