Home Malware Programs Adware Adware.Fortunitas

Adware.Fortunitas

Posted: January 17, 2014

Threat Metric

Ranking: 8,074
Threat Level: 2/10
Infected PCs: 8,867
First Seen: January 17, 2014
Last Seen: October 11, 2023
OS(es) Affected: Windows


Fortunitas Screenshot 1Adware.Fortunitas is adware that may display unwanted pop-up advertisements, discount coupons, offers and deals when PC users are shopping online or visiting various other websites. Adware.Fortunitas may install itself on Internet Explorer, Mozilla Firefox and Google Chrome. Adware.Fortunitas may be usually delivered and enter the computer through bundled freeware that PC users download from the Internet. When the PC user chooses to install a free app, it may encompass additional toolbars, browser extensions, add-ons or plug-ins in the installation wizard. These additional programs, in this case, Adware.Fortunitas, may be marked as optional programs, but if the PC user does not uncheck a box for adding them, this may cause unwanted system alterations. Adware.Fortunitas may keep track of the computer user's surfing routine and transmit and use collected data for targeted advertising purposes.

Fortunitas Screenshot 2Fortunitas Screenshot 3

Aliases

MalSign.Fortu.66E [AVG]Trojan.BPlug.9 [DrWeb]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



fpnnogogihegcbpaodbnepofjfiepfcb.crx File name: fpnnogogihegcbpaodbnepofjfiepfcb.crx
Size: 4.36 KB (4369 bytes)
MD5: 0e460427de41059ec61f18a07dccac8d
Detection count: 16
Mime Type: unknown/crx
Group: Malware file
Last Updated: November 2, 2020
%PROGRAMFILES(x86)%\Fortunitas\Fortunitasuninstall.exe File name: Fortunitasuninstall.exe
Size: 240.52 KB (240526 bytes)
MD5: 7e67b6280ecf34bd324fc30803ee78e6
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Fortunitas
Group: Malware file
Last Updated: February 17, 2014
C:\Program Files (x86)\Fortunitas\FortunitasUninstall.exe File name: FortunitasUninstall.exe
Size: 240.62 KB (240627 bytes)
MD5: 9b7c948d97fc3b8f9912ccd52d167853
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Fortunitas\FortunitasUninstall.exe
Group: Malware file
Last Updated: April 8, 2021
%TEMP%\Fortunitas\Fortunitas_Setup.exe File name: Fortunitas_Setup.exe
Size: 872.6 KB (872608 bytes)
MD5: b240c1238730b781e4a8312759185e63
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\Fortunitas
Group: Malware file
Last Updated: February 17, 2014
%PROGRAMFILES%\Fortunitas\Fortunitasbho.dll File name: Fortunitasbho.dll
Size: 249.63 KB (249632 bytes)
MD5: 4516538414f206465b470369884b8e70
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Fortunitas
Group: Malware file
Last Updated: February 17, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{4CD5AF5C-70E2-4683-9A7B-0E6C24D5A47E}{5D4EBCA2-8248-4B3C-8A9C-3E769FDBA583}{94F1FD29-FDC2-4BF9-B008-AFB0452634E6}{c6f3fc7b-d607-44ec-9caf-2a41d547137f}{EFF4F283-3C8B-4A01-8297-DDC839210B86}HKEY..\..\..\..{RegistryKeys}Software\FortunitasSoftware\Microsoft\Internet Explorer\Approved Extensions\{C6F3FC7B-D607-44EC-9CAF-2A41D547137F}Software\Microsoft\Internet Explorer\DOMStorage\fortunitas.netSOFTWARE\Microsoft\Tracing\Fortunitas_RASAPI32SOFTWARE\Microsoft\Tracing\Fortunitas_RASMANCSSOFTWARE\Microsoft\Tracing\updateFortunitas_RASAPI32SOFTWARE\Microsoft\Tracing\updateFortunitas_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{0df469bd-3f78-4f4e-bb44-08194c50fcea}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{c6f3fc7b-d607-44ec-9caf-2a41d547137f}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C6F3FC7B-D607-44EC-9CAF-2A41D547137F}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C6F3FC7B-D607-44EC-9CAF-2A41D547137F}Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{c6f3fc7b-d607-44ec-9caf-2a41d547137f}SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FortunitasSOFTWARE\Wow6432Node\FortunitasSOFTWARE\Wow6432Node\Microsoft\Tracing\Fortunitas_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Fortunitas_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateFortunitas_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateFortunitas_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{0df469bd-3f78-4f4e-bb44-08194c50fcea}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{c6f3fc7b-d607-44ec-9caf-2a41d547137f}SYSTEM\ControlSet001\services\eventlog\Application\Update FortunitasSYSTEM\ControlSet001\services\Update FortunitasSYSTEM\CurrentControlSet\services\eventlog\Application\Update FortunitasSYSTEM\CurrentControlSet\services\Update Fortunitas

Additional Information

The following directories were created:
%ProgramFiles%\Fortunitas%ProgramFiles(x86)%\Fortunitas
The following URL's were detected:
Fortunitas
Loading...