Home Malware Programs Adware Adware.BringStar

Adware.BringStar

Posted: February 3, 2014

Threat Metric

Ranking: 10,950
Threat Level: 2/10
Infected PCs: 2,520
First Seen: February 3, 2014
Last Seen: October 8, 2023
OS(es) Affected: Windows


BringStar is adware that may be installed onto random computers together with numerous free programs from unreliable download websites on the Internet. BringStar may display various unwanted pop-up advertisements, messages and banners, which may contain offers, discount coupons, deals and sales on the computer system. BringStar may offer the PC user to check price comparisons, for example, when he is visiting online shopping websites. The pop-up advertisements delivered by BringStar may urge the computer user to click on random pop-up ads and messages or the ones linked to his Internet surfing routine. If the computer user clicks on these pop-up advertisements and banners, BringStar may repeatedly divert the PC user to suspicious websites. BringStar may also gather information about the PC user's browsing habits, search requests and visited web pages. This data may be valuable for targeted advertising campaigns.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{25B75982-A39A-4D49-8B84-5E24443CBD1B}{7F729B23-22C4-4C83-9BC8-8B9C59F2A51A}File name without path{3de9eb9c-a833-42cb-b66f-841b954aebef}.xpiHKEY..\..\..\..{RegistryKeys}Software\BringStarSoftware\Microsoft\Internet Explorer\Approved Extensions\{6F0D3DEC-9246-4B6F-A5E3-C1C169493EEF}SOFTWARE\Microsoft\Tracing\BringStar_RASAPI32SOFTWARE\Microsoft\Tracing\BringStar_RASMANCSSOFTWARE\Microsoft\Tracing\updateBringStar_RASAPI32SOFTWARE\Microsoft\Tracing\updateBringStar_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{6f0d3dec-9246-4b6f-a5e3-c1c169493eef}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6F0D3DEC-9246-4B6F-A5E3-C1C169493EEF}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F0D3DEC-9246-4B6F-A5E3-C1C169493EEF}SOFTWARE\Wow6432Node\BringStarSOFTWARE\Wow6432Node\Microsoft\Tracing\BringStar_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\BringStar_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateBringStar_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBringStar_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{6f0d3dec-9246-4b6f-a5e3-c1c169493eef}SYSTEM\ControlSet001\services\eventlog\Application\Update BringStarSYSTEM\ControlSet001\services\Update BringStarSYSTEM\ControlSet002\services\eventlog\Application\Update BringStarSYSTEM\ControlSet002\services\eventlog\Application\Util BringStarSYSTEM\ControlSet002\services\Update BringStarSYSTEM\ControlSet002\services\Util BringStarSYSTEM\CurrentControlSet\services\eventlog\Application\Update BringStarSYSTEM\CurrentControlSet\services\Update BringStar

Additional Information

The following directories were created:
%ProgramFiles%\BringStar%ProgramFiles(x86)%\BringStar
The following URL's were detected:
BringStar
Loading...