Home Malware Programs Trojans Foxy Security

Foxy Security

Posted: June 9, 2014

Threat Metric

Ranking: 5,990
Threat Level: 8/10
Infected PCs: 42,165
First Seen: June 9, 2014
Last Seen: October 14, 2023
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



E:\Users\<username>\AppData\Roaming\BupSystem\bup.exe File name: bup.exe
Size: 1 MB (1005056 bytes)
MD5: c6660f050d4014a6977160b84be5bc75
Detection count: 17,367
File type: Executable File
Mime Type: unknown/exe
Path: E:\Users\<username>\AppData\Roaming\BupSystem\bup.exe
Group: Malware file
Last Updated: April 16, 2023
C:\Users\<username>\AppData\Roaming\BupSystem\bup.exe File name: bup.exe
Size: 642.04 KB (642048 bytes)
MD5: ea9fd73d8bca5e6c899703a864a9e1c4
Detection count: 16,261
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\BupSystem\bup.exe
Group: Malware file
Last Updated: October 14, 2023
C:\Users\<username>\AppData\LocalLow\systems ie bho\bho.dll File name: bho.dll
Size: 3.3 MB (3309568 bytes)
MD5: 86044dd5b638533165c894c1bdab4e3a
Detection count: 2,932
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Users\<username>\AppData\LocalLow\systems ie bho\bho.dll
Group: Malware file
Last Updated: July 28, 2023
%TEMP%\2c3f58eb53411028bee59d7bce3aff52\foxy_security.exe File name: foxy_security.exe
Size: 3.85 MB (3859499 bytes)
MD5: d34abc5f4b3bcaceb396b0c97c757b0f
Detection count: 115
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\2c3f58eb53411028bee59d7bce3aff52
Group: Malware file
Last Updated: January 16, 2022
FoxySecuritySetup.exe File name: FoxySecuritySetup.exe
Size: 3.85 MB (3859503 bytes)
MD5: fd3cf718be568002d9ff7dd0c917a7d9
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 10, 2014
%APPDATA%\BupSystem\bup.exe File name: bup.exe
Size: 1 MB (1005056 bytes)
MD5: be727410232396de3b66c08b7da087dd
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\BupSystem
Group: Malware file
Last Updated: June 9, 2014
%APPDATA%\BupSystem\bup.exe File name: bup.exe
Size: 1.01 MB (1012224 bytes)
MD5: 0d31eae415110a753cebbe618621a72e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\BupSystem
Group: Malware file
Last Updated: June 9, 2014

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SYSTEM\ControlSet001\services\bupServiceSYSTEM\ControlSet002\services\bupServiceSYSTEM\CurrentControlSet\services\bupServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Foxy SecuritySecurita Scout

Additional Information

The following directories were created:
%APPDATA%\BupSystem%APPDATA%\Security System 2%APPDATA%\Security Systems%LOCALAPPDATA%\Google\Chrome\User Data\Default\Extensions\jlglpkldbffeclkcnjmmbicbnoicbioc%USERPROFILE%\AppData\LocalLow\systems ie bho
The following URL's were detected:
Foxy SecuritySecurita Scout
Loading...