Brad Pitt Screen Saver
Brad Pitt Screen Saver is an adware bundler that installs the Spyware-WebHancer and Outerinfo with itself. Spyware-WebHancer that monitors Web sites visited and sends this information to a remote server. Outerinfo may also display advertisements.
General information:
Malware Name: |
Brad Pitt Screen Saver |
Malware Type: |
Adware Bundler |
Company Name: |
White Paw Products |
Company URL: |
http://www.sexy-screen-savers.com/
|
Threat Level: |
Elevated Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
White Paw Products provides you the software Brad Pitt Screen Saver that shows you lots of free full-size, high quality Brad Pitt photos. Including: Candid shots, Magazine pictorials, Movie scenes, Sexy shirtless poses, many more.
Spyware Description:
Brad Pitt Screen Saver is an adware bundler that installs the Spyware-WebHancer and Outerinfo with itself. Spyware-WebHancer that monitors Web sites visited and sends this information to a remote server. Outerinfo may also display advertisements.
Characteristics/Symptoms:
-> It installs the Spyware-WebHancer and Outerinfo with itself. -> Spyware-WebHancer that monitors Web sites visited and sends this information to a remote server. Outerinfo may also display advertisements.
Additional information might be found here:
Processes Running:
Brad Pitt.scr
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Program Files\whInstall\Sporder.dll |
11264 |
Application Extension |
C:\Program Files\whInstall\Webhdll.dll |
40960 |
Application Extension |
C:\WINDOWS\whInstaller.exe |
32768 |
Application |
Folder information Created after Installation:
Folder Location |
C:\Documents and Settings\[USER]\Start Menu\Programs\Outerinf |
C:\Program Files\Outerinf |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Outerinfo |
Publisher |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Outerinfo |
UninstallString |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Outerinfo |
REFID |