Aquabble Avalanche

Aquabble Avalanche is an adware bundler that installs Adware-TryMedia with itself.Trymedia may download and execute new software from a remote server this new software may or may not be malicious.

General information:

Malware Name: Aquabble Avalanche
Malware Type: Adware Bundler
Company Name: Terragame.com
Company URL: http://www.terragame.com/
Threat Level: Low Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

Terragame.com provides you the screen saver that is to clean virginal lake, so you are to make a set of three or more Aquabbles to blow them up. You will be surprised by different bonuses (bombs, submarines, piggy banks, etc.) after each level. With the progress in this game there also will appear different obstacles.

Spyware Description:

Aquabble Avalanche is an adware bundler that installs Adware-TryMedia with itself.Trymedia may download and execute new software from a remote server this new software may or may not be malicious.

Characteristics/Symptoms:

    -> It installs Adware-TryMedia with itself. -> Trymedia may download and execute new software from a remote server this new software may or may not be malicious.

Additional information might be found here:

google Search at Google for Aquabble Avalanche
bing Search at Bing for Aquabble Avalanche
yahoo Search at Yahoo for Aquabble Avalanche

Processes Running:

aquabbles.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\[USER]\Application Data\Trymedia\data\{8866C0CF-9514-74F0-BCEB-76CBC7663E8D} 100 File
C:\Documents and Settings\[USER]\Application Data\Trymedia\data\{E50E20F3-AFD5-F5D7-6F2E-49BF9EF81F97} 100 File
C:\Documents and Settings\[USER]\Application Data\Trymedia\data\{EE0E9A5F-7B79-06BC-492E-8F00BCC7FE68} 100 System file

Folder information Created after Installation:

Folder Location
C:\Program Files\Aquabble Avalanch
C:\Program Files\Aquabble Avalanche\DAT

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Trymedia Systems\ActiveMARK Software\7EAB3E914BABE6D9762EEF07BAAFAEEC affiliate
HKEY_LOCAL_MACHINE \SOFTWARE\Trymedia Systems\ActiveMARK Software\7EAB3E914BABE6D9762EEF07BAAFAEEC currency
HKEY_LOCAL_MACHINE \SOFTWARE\Trymedia Systems\ActiveMARK Software\7EAB3E914BABE6D9762EEF07BAAFAEEC installation_time