Analysis by: RonJay Kristoffer Caragay

ALIASES:

PUA.Yontoo.C (Symantec); BrowserModifier:Win32/Foxiebro (Microsoft); PUP.Optional.BrowseFox (Malwarebytes); Adware.SwiftBrowse.AZ (BitDefender)

 PLATFORM:

Windows

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Potentially Unwanted Application

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This potentially unwanted application arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It arrives as a component bundled with malware/grayware packages.

It is a component of other malware.

It requires its main component to successfully perform its intended routine.

  TECHNICAL DETAILS

Tamaño del archivo 52,928 bytes
Tipo de archivo SYS
Fecha de recepción de las muestras iniciales 25 Jan 2017

Arrival Details

This potentially unwanted application arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.

It arrives as a component bundled with malware/grayware packages.

Installation

This potentially unwanted application is a component of other malware.

Other Details

This potentially unwanted application requires its main component to successfully perform its intended routine.