PUA.CommunityToolbar

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

PUA.CommunityToolbar also known as not-a-virus:WebToolbar.Win32.Agent.azm, Win32:Rootkit-gen [Rtk], PUA.Toolbar.Conduit!.

Malware Analysis of PUA.CommunityToolbar – TBDEN1.DLL

Created files:

%Program Files%\Denver_Injury_Lawyer\Denver_Injury_LawyerToolbarHelper.exe
%Program Files%\Denver_Injury_Lawyer\INSTALL.LOG
%Program Files%\Denver_Injury_Lawyer\tbDen1.dll
%Program Files%\Denver_Injury_Lawyer\tbDenv.dll
%Program Files%\Denver_Injury_Lawyer\toolbar.cfg

Autostart registry keys:

HKLM\Software\Classes\CLSID\{350FB4C9-AB01-4DDB-8EC1-E76854DD140B}\InprocServer32\: “%Program Files%\Denver_Injury_Lawyer\tbDenv.dll”
HKLM\Software\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}\InprocServer32\: “%Program Files%\Conduit\Community Alerts\Alert.dll”
HKLM\Software\Classes\CLSID\{94B5FAAC-B273-47D6-938E-D0B2B7992367}\InprocServer32\: “%Program Files%\Denver_Injury_Lawyer\tbDenv.dll”
HKLM\Software\Classes\CLSID\{FF0A20B6-82BD-4AE7-9765-1B0838EEE0A0}\InprocServer32\: “%Program Files%\Denver_Injury_Lawyer\tbDenv.dll”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Denver_Injury_Lawyer Toolbar\DisplayName: “Denver Injury Lawyer Toolbar”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Denver_Injury_Lawyer Toolbar\UninstallString: “C:\PROGRA~1\DENVER~1\UNWISE.EXE /U C:\PROGRA~1\DENVER~1\INSTALL.LOG ”
HKLM\Software\Denver_Injury_Lawyer\toolbar\DisplayName: “Denver Injury Lawyer”
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\DisplayName: “Denver Injury Lawyer Customized Web Search”
HKCU\Software\Denver_Injury_Lawyer\toolbar\DisplayName: “Denver Injury Lawyer”

Detected by UnHackMe:

TBDEN1.DLL
Default location: %PROGRAM FILES%\DENVER_INJURY_LAWYER\TBDEN1.DLL

Dropper hash(md5): 9a434f39f0a2ac44611700fba3347047

Share This:

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

1
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera