PUP.Optional.TreasureTrack

Logo_Malware

Treasure Track is a software that usually installs without your knowledge with free software downloads. Identified the 09/08/2015.

Features:

– It belongs to a family of PUP (Potentially Unwanted Program).
– Vendor : PUP.Optional

Main actions :

– It is installed as a BHO (Browser Helper Object) of internet browser (O2),
– It installs as a process launched at startup of the system (RP),
– It installs as a service to be launched each time the system (O23),(SS/SR).
– It installs as a program (O42),
– It creates to many registry keys ‘Software’
– It creates additional folders (O43),
– It moved to the Windows prefetcher folder (O45).
– It creates multiple files users (O61),

ZHPDiag report:

O2 – BHO: Treasure Track – {30ee14ec-1867-4389-8543-fb83602eab61} . (…) — C:Program FilesTreasure TrackExtensions30ee14ec-1867-4389-8543-fb83602eab61.dll
O23 – Service: Service Mgr TreasureTrack (Service Mgr TreasureTrack) . (…) – C:ProgramData59afa7b8-54e5-4124-8be7-716a905c1142plugincontainer.exe
O23 – Service: Update Mgr TreasureTrack (Update Mgr TreasureTrack) . (…) – C:Program FilesCommon Files59afa7b8-54e5-4124-8be7-716a905c1142Updater.exe
O42 – Logiciel: Treasure Track – (.Treasure Track.) — Treasure Track
HKLMSOFTWARETreasureTrack
O43 – CFD: 2015/09/07 05:04:31 – [] D — C:Program FilesTreasure Track
O43 – CFD: 2015/09/07 05:05:32 – [] D — C:ProgramData59afa7b8-54e5-4124-8be7-716a905c1142
O43 – CFD: 2015/09/07 05:04:29 – [] D — C:Program FilesCommon Files59afa7b8-54e5-4124-8be7-716a905c1142
SR – Auto Service Mgr TreasureTrack (Service Mgr TreasureTrack) . (…) – C:ProgramData59afa7b8-54e5-4124-8be7-716a905c1142plugincontainer.exe
SR – Auto Update Mgr TreasureTrack (Update Mgr TreasureTrack) . (…) – C:Program FilesCommon Files59afa7b8-54e5-4124-8be7-716a905c1142Updater.exe

Alias:

PUP.Optional.TreasureTrack.A
Adware.BrowseFox

Remove:

– Remove software in Windows Configuration Panel,
Remove with ZHPcleaner

Diagnose with ZHPDiag

1 Vote2 Votes3 Votes4 Votes5 Votes (No Ratings Yet)
SOSVirusLoading...

Leave a Comment