Home Possibly Unwanted Program PUP.WikiBrowser

PUP.WikiBrowser

Posted: June 23, 2015

Threat Metric

Ranking: 17,189
Threat Level: 1/10
Infected PCs: 5,328
First Seen: June 23, 2015
Last Seen: September 7, 2023
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Backup My Data\job\AppData\Local\WikiUpdate.exe File name: WikiUpdate.exe
Size: 364.03 KB (364032 bytes)
MD5: b24910a7d61de265b129098869d1293d
Detection count: 869
File type: Executable File
Mime Type: unknown/exe
Path: C:\Backup My Data\job\AppData\Local\WikiUpdate.exe
Group: Malware file
Last Updated: March 20, 2021
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WikiUpdate.exe File name: WikiUpdate.exe
Size: 364.03 KB (364032 bytes)
MD5: c2693660064fcdfa2091220978b92192
Detection count: 677
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\WikiUpdate.exe
Group: Malware file
Last Updated: August 30, 2021
%LOCALAPPDATA%\WikiUpdate.exe File name: WikiUpdate.exe
Size: 372.22 KB (372224 bytes)
MD5: ce47d7824d649c3fcf39c19143fa7adc
Detection count: 412
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: April 1, 2020
%SystemDrive%\Documents and Settings\LocalService\Local Settings\Application Data\WikiUpdate.exe File name: WikiUpdate.exe
Size: 364.03 KB (364032 bytes)
MD5: 864bbd3e7bdd9f7591b34177461cf45e
Detection count: 379
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Documents and Settings\LocalService\Local Settings\Application Data
Group: Malware file
Last Updated: December 12, 2019
%LOCALAPPDATA%\WikiUpdate.exe File name: WikiUpdate.exe
Size: 364.03 KB (364032 bytes)
MD5: 6a6c0bc37e03991f772b4f54aa7badeb
Detection count: 265
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: May 22, 2020
%WINDIR%\system32\config\systemprofile\AppData\Local\WikiUpdate.exe File name: WikiUpdate.exe
Size: 365.56 KB (365568 bytes)
MD5: 6d12b55040306ea4ec310a23d6b13abd
Detection count: 215
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\config\systemprofile\AppData\Local
Group: Malware file
Last Updated: August 17, 2016
%LOCALAPPDATA%\WikiUpdate.exe File name: WikiUpdate.exe
Size: 364.54 KB (364544 bytes)
MD5: 664824bacd0e63e5d10c14eb062e4783
Detection count: 178
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: August 17, 2016
%LOCALAPPDATA%\WikiUpdate.exe File name: WikiUpdate.exe
Size: 364.03 KB (364032 bytes)
MD5: e43e46aed4e1eef6f721054426e4e162
Detection count: 103
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: April 7, 2020
C:\Users\<username>\AppData\Local\WikiBrowser\Application\old_chrome.exe File name: old_chrome.exe
Size: 645.57 KB (645576 bytes)
MD5: 4f02673ab261f8fd56eb921f3139a39e
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\WikiBrowser\Application\old_chrome.exe
Group: Malware file
Last Updated: January 1, 2022
%LOCALAPPDATA%\WikiUpdate.exe File name: WikiUpdate.exe
Size: 364.03 KB (364032 bytes)
MD5: 6668a5bf0b44caa1f3b8ee8ac6e0b985
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: August 17, 2016

Registry Modifications

The following newly produced Registry Values are:

File name without pathWikiBrowser.lnkHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\.htm\OpenWithProgIds\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.html\OpenWithProgIds\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.shtml\OpenWithProgids\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.webp\OpenWithProgids\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.xht\OpenWithProgIds\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Classes\.xhtml\OpenWithProgIds\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\InstallPath\Status\WikiBrowserSOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\WikiBrowser.exeSOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\WikiBrowser.exeSOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\WikiBrowser.exeSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\OpenWithProgids\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\OpenWithProgids\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\OpenWithProgids\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\OpenWithProgids\WikiBroHTM.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\Microsoft\Windows\CurrentVersion\Run\WikiBrowserSOFTWARE\RegisteredApplications\WikiBrowser.NSJA6BHDA3NCFCFMXW3QSCUYUQSoftware\WikiBrowserSOFTWARE\Wow6432Node\Microsoft\MediaPlayer\ShimInclusionList\WikiBrowser.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\WikiBrowser.exeSOFTWARE\Wow6432Node\RegisteredApplications\WikiBrowser.NSJA6BHDA3NCFCFMXW3QSCUYUQSYSTEM\ControlSet001\services\WikiBrowserUpdateServiceSYSTEM\CurrentControlSet\services\WikiBrowserUpdateServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}WikiBrowser

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\WikiBrowser%LOCALAPPDATA%\WikiBrowser
Loading...