Home Malware Programs Browser Hijackers Search.sweetpacks.com

Search.sweetpacks.com

Posted: November 12, 2012

Sweetpacks Search and Sweetpacks Toolbar Screenshot 1Search.sweetpacks.com is a search site that's promoted by Sweetpacks-brand adware programs – usually through browser hijack-related attacks such as homepage changes or search engine redirects. Even though Search.sweetpacks.com appears to be a harmless search engine, Search.sweetpacks.com may attempt to install its Sweetpacks add-ons. Due to the high probability of browser redirects to Search.sweetpacks.com being accompanied by other unwanted changes to your PC, anti-malware software always should be used to remove add-ons or other software related to Search.sweetpacks.com.

Search.sweetpacks.com: A Site that's Sweet Until You Learn a Little More About It

Similar to any other search engine-based site, Search.sweetpacks.com offers search functions that let you find other websites, although SpywareRemove.com malware analysts note that Search.sweetpacks.com is unlikely to provide the same safety or accuracy of results that popular search sites are known for providing. However, the problem with Search.sweetpacks.com is in its promotion of its adware add-on, the Sweetpacks Toolbar. Search.sweetpacks.com's software has been known to avoid normal removal methods and has shown itself to be compatible with multiple browsers, including Firefox and Internet Explorer.

SpywareRemove.com malware experts emphasize that you practice the following safety procedures to protect your PC from unwanted Search.sweetpacks.com-related problems:

  • Update your software regularly. Particularly vulnerable applications include your web browsers, Java, JavaScript, baseline Windows programs and Adobe software.
  • Disable browser features, such as JavaScript, that you don't need to view a given website's content, particularly if you plan to visit suspicious sites like Search.sweetpacks.com in the near future.
  • Keep anti-malware programs with web-browsing security features open and active to monitor for drive-by-downloads and other common web-based PC threats.

The Sour Bite that's Behind Search.sweetpacks.com's Sweet Searches

The Sweetpacks Toolbar can result in various issues, most notably, redirects to Search.sweetpacks.com when you try to visit another site. Having your homepage changed to Search.sweetpacks.com, experiencing pop-ups or seeing links in normally-unlinked text content also may accompany these attacks.

If your browser has been compromised by the Sweetpacks Toolbar or any other Search.sweetpacks.com-associated software, anti-malware software should be used to disinfect your PC immediately.

Sweetpacks Search and Sweetpacks Toolbar Screenshot 2

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files\SweetIM\Communicator\mgcommunication.dll File name: C:\Program Files\SweetIM\Communicator\mgcommunication.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Communicator\mgxml_wrapper.dll File name: C:\Program Files\SweetIM\Communicator\mgxml_wrapper.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe File name: C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe
File type: Executable File
Mime Type: unknown/exe
C:\Program Files\SweetIM\Messenger\ContentPackagesActivationHandler.exe File name: C:\Program Files\SweetIM\Messenger\ContentPackagesActivationHandler.exe
File type: Executable File
Mime Type: unknown/exe
C:\Program Files\SweetIM\Communicator\mgsimcommon.dll File name: C:\Program Files\SweetIM\Communicator\mgsimcommon.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Communicator\mgcommon.dll File name: C:\Program Files\SweetIM\Communicator\mgcommon.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Communicator\resources\sqlite\mgSqlite3.dll File name: C:\Program Files\SweetIM\Communicator\resources\sqlite\mgSqlite3.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\SweetIM.exe File name: C:\Program Files\SweetIM\Messenger\SweetIM.exe
File type: Executable File
Mime Type: unknown/exe
C:\Program Files\SweetIM\Messenger\mgcommunication.dll File name: C:\Program Files\SweetIM\Messenger\mgcommunication.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll File name: C:\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\default.xml File name: C:\Program Files\SweetIM\Messenger\default.xml
Mime Type: unknown/xml
C:\Program Files\SweetIM\Messenger\mgSweetIM.dll File name: C:\Program Files\SweetIM\Messenger\mgSweetIM.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgArchive.dll File name: C:\Program Files\SweetIM\Messenger\mgArchive.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgcommon.dll File name: C:\Program Files\SweetIM\Messenger\mgcommon.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgxml_wrapper.dll File name: C:\Program Files\SweetIM\Messenger\mgxml_wrapper.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgYahooAuto.dll File name: C:\Program Files\SweetIM\Messenger\mgYahooAuto.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgYahooMessengerAdapter.dll File name: C:\Program Files\SweetIM\Messenger\mgYahooMessengerAdapter.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgconfig.dll File name: C:\Program Files\SweetIM\Messenger\mgconfig.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgFlashPlayer.dll File name: C:\Program Files\SweetIM\Messenger\mgFlashPlayer.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgsimcommon.dll File name: C:\Program Files\SweetIM\Messenger\mgsimcommon.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\mgUpdateSupport.dll File name: C:\Program Files\SweetIM\Messenger\mgUpdateSupport.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\msvcp71.dll File name: C:\Program Files\SweetIM\Messenger\msvcp71.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\msvcr71.dll File name: C:\Program Files\SweetIM\Messenger\msvcr71.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\Program Files\SweetIM\Messenger\resources\images\AudibleButton.png File name: C:\Program Files\SweetIM\Messenger\resources\images\AudibleButton.png
Mime Type: unknown/png
C:\Program Files\sweetpacks bundle uninstaller\uninstaller.exe File name: C:\Program Files\sweetpacks bundle uninstaller\uninstaller.exe
File type: Executable File
Mime Type: unknown/exe
C:\WINDOWS\system32\dmwu.exe File name: C:\WINDOWS\system32\dmwu.exe
File type: Executable File
Mime Type: unknown/exe
C:\WINDOWS\system32\ARFC\wrtc.exe File name: C:\WINDOWS\system32\ARFC\wrtc.exe
File type: Executable File
Mime Type: unknown/exe
C:\WINDOWS\system32\jmdp\SweetNT.crx File name: C:\WINDOWS\system32\jmdp\SweetNT.crx
Mime Type: unknown/crx
C:\WINDOWS\system32\ImHttpComm.dll File name: C:\WINDOWS\system32\ImHttpComm.dll
File type: Dynamic link library
Mime Type: unknown/dll
C:\WINDOWS\system32\WNLT\Installation\uninstaller.exe File name: C:\WINDOWS\system32\WNLT\Installation\uninstaller.exe
File type: Executable File
Mime Type: unknown/exe
%CommonAppData%\SweetIM\Messenger\conf\sweetim.xml File name: %CommonAppData%\SweetIM\Messenger\conf\sweetim.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\conf\sweetimapp.xml File name: %CommonAppData%\SweetIM\Messenger\conf\sweetimapp.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\conf\adapter.xml File name: %CommonAppData%\SweetIM\Messenger\conf\adapter.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\conf\autoupdate.xml File name: %CommonAppData%\SweetIM\Messenger\conf\autoupdate.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Communicator\conf\communicator.xml File name: %CommonAppData%\SweetIM\Communicator\conf\communicator.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\conf\contentpackages.xml File name: %CommonAppData%\SweetIM\Messenger\conf\contentpackages.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\conf\logger.xml File name: %CommonAppData%\SweetIM\Messenger\conf\logger.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\conf\messages.xml File name: %CommonAppData%\SweetIM\Messenger\conf\messages.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\conf\users\main_user_config.xml File name: %CommonAppData%\SweetIM\Messenger\conf\users\main_user_config.xml
Mime Type: unknown/xml
%CommonAppData%\SweetIM\Messenger\data\Bars\Default\100\bar.html File name: %CommonAppData%\SweetIM\Messenger\data\Bars\Default\100\bar.html
Mime Type: unknown/html
%CommonAppData%\SweetIM\Messenger\data\contentdb\cache_indx.dat File name: %CommonAppData%\SweetIM\Messenger\data\contentdb\cache_indx.dat
File type: Data file
Mime Type: unknown/dat
%CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\close_but.gif File name: %CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\close_but.gif
Mime Type: unknown/gif
%CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\failure_dialog_BG.jpg File name: %CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\failure_dialog_BG.jpg
Mime Type: unknown/jpg
%CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\activationFail.htm File name: %CommonAppData%\SweetIM\Messenger\data\packages\FailDialog\activationFail.htm
Mime Type: unknown/htm
%CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\ccbd8b558f1d599e360b3dc00c89e1b1.facebook2.png File name: %CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\ccbd8b558f1d599e360b3dc00c89e1b1.facebook2.png
Mime Type: unknown/png
%CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\dda5971490977d5465f836a12522f1a1.games3.png File name: %CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\dda5971490977d5465f836a12522f1a1.games3.png
Mime Type: unknown/png
%CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\d7663980840977888075cdf06da9e63d.facebook2_hover.png File name: %CommonAppData%\SweetIM\Toolbars\Internet Explorer\cache\d7663980840977888075cdf06da9e63d.facebook2_hover.png
Mime Type: unknown/png
%UserProfile%\Desktop\Search the Web.url File name: %UserProfile%\Desktop\Search the Web.url
Mime Type: unknown/url
C:\Users\<username>\AppData\Local\Temp\~34C5.tmp File name: C:\Users\<username>\AppData\Local\Temp\~34C5.tmp
Size: 77B (77 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\0x0409.ini File name: C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\0x0409.ini
Size: 609B (609 bytes)
Mime Type: unknown/ini
C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\SweetIESetup.msi File name: C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\SweetIESetup.msi
Size: 1.24 MB (1249723 bytes)
File type: Windows Installer Package
Mime Type: unknown/msi
C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\_ISMSIDEL.INI File name: C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\_ISMSIDEL.INI
Size: 1.82 KB (1826 bytes)
Mime Type: unknown/INI
C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\Setup.INI File name: C:\Users\<username>\AppData\Local\Temp\{F9730935-DBFC-4ED5-BE38-645EDDEA9C9D}\Setup.INI
Size: 77B (77 bytes)
Mime Type: unknown/INI
%Program Files%\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcp90.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcp90.dll
Size: 573B (573 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcr90.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcr90.dll
Size: 655B (655 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\mgHelper.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
Size: 135B (135 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll
Size: 65B (65 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\mgcommon.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\mgcommon.dll
Size: 761B (761 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\mghooking.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\mghooking.dll
Size: 155B (155 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml
Size: 23B (23 bytes)
Mime Type: unknown/xml
%Program Files%\SweetIM\Toolbars\Internet Explorer\mgconfig.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\mgconfig.dll
Size: 57B (57 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll
Size: 86B (86 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
%Program Files%\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll File name: %Program Files%\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
Size: 49B (49 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
C:\Windows\Installer\MSI3EF4.tmp File name: C:\Windows\Installer\MSI3EF4.tmp
Size: 102B (102 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Windows\Installer\MSI3F71.tmp File name: C:\Windows\Installer\MSI3F71.tmp
Size: 421B (421 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Windows\Installer\MSI7594.tmp File name: C:\Windows\Installer\MSI7594.tmp
Size: 61B (61 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Windows\Installer\MSI3D8C.tmp File name: C:\Windows\Installer\MSI3D8C.tmp
Size: 61B (61 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Windows\Installer\MSI6453.tmp File name: C:\Windows\Installer\MSI6453.tmp
Size: 421B (421 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Windows\Installer\MSI6A3E.tmp File name: C:\Windows\Installer\MSI6A3E.tmp
Size: 421B (421 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\{F4E33CE5-A7AB-4F68-A7E7-F0AA84EF2D9E}\mgSqlite3.dll File name: C:\Users\<username>\AppData\Local\Temp\{F4E33CE5-A7AB-4F68-A7E7-F0AA84EF2D9E}\mgSqlite3.dll
Size: 744.06 KB (744060 bytes)
File type: Dynamic link library
Mime Type: unknown/dll
C:\Users\<username>\AppData\Local\Temp\SweetIMSetup.exe File name: C:\Users\<username>\AppData\Local\Temp\SweetIMSetup.exe
Size: 53B (53 bytes)
File type: Executable File
Mime Type: unknown/exe
C:\Users\<username>\AppData\Local\Temp\1401895078_406507_787_2.tmp File name: C:\Users\<username>\AppData\Local\Temp\1401895078_406507_787_2.tmp
Size: 149B (149 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\1401895075_403574_310_13.tmp File name: C:\Users\<username>\AppData\Local\Temp\1401895075_403574_310_13.tmp
Size: 3B (3 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\1401895075_403543_310_9.tmp File name: C:\Users\<username>\AppData\Local\Temp\1401895075_403543_310_9.tmp
Size: 4B (4 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\1401895075_403605_310_15.tmp File name: C:\Users\<username>\AppData\Local\Temp\1401895075_403605_310_15.tmp
Size: 393B (393 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\1401895075_403574_310_11.tmp File name: C:\Users\<username>\AppData\Local\Temp\1401895075_403574_310_11.tmp
Size: 49B (49 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\1401895097_425539_399_4.tmp File name: C:\Users\<username>\AppData\Local\Temp\1401895097_425539_399_4.tmp
Size: 308B (308 bytes)
File type: Temporary File
Mime Type: unknown/tmp
C:\Users\<username>\AppData\Local\Temp\Shortcut_%original file name%.exe File name: C:\Users\<username>\AppData\Local\Temp\Shortcut_%original file name%.exe
Size: 60.61 KB (60618 bytes)
File type: Executable File
Mime Type: unknown/exe
C:\Users\<username>\AppData\Local\Temp\SweetIESetup.exe File name: C:\Users\<username>\AppData\Local\Temp\SweetIESetup.exe
Size: 146B (146 bytes)
File type: Executable File
Mime Type: unknown/exe
C:\Users\<username>\AppData\Local\Microsoft\Windows\History\desktop.ini File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\History\desktop.ini
Size: 254B (254 bytes)
Mime Type: unknown/ini
C:\Users\<username>\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
Size: 254B (254 bytes)
Mime Type: unknown/ini
C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
Size: 16B (16 bytes)
File type: Data file
Mime Type: unknown/dat
C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AWQM5W29\desktop.ini File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AWQM5W29\desktop.ini
Size: 67B (67 bytes)
Mime Type: unknown/ini
C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini
Size: 67B (67 bytes)
Mime Type: unknown/ini
C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2PPIFPB5\desktop.ini File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2PPIFPB5\desktop.ini
Size: 67B (67 bytes)
Mime Type: unknown/ini
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\O3SLD0KY.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\O3SLD0KY.txt
Size: 78B (78 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\GLGE2E5K.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\GLGE2E5K.txt
Size: 78B (78 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\V9X7HFKE.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\V9X7HFKE.txt
Size: 78B (78 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\T0GTGATN.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\T0GTGATN.txt
Size: 74B (74 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\3K60BT2V.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\3K60BT2V.txt
Size: 75B (75 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\931030CU.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\931030CU.txt
Size: 74B (74 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\8TA95T24.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\8TA95T24.txt
Size: 79B (79 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\EHTEWOXQ.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\EHTEWOXQ.txt
Size: 78B (78 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\0E6DVPWG.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\0E6DVPWG.txt
Size: 74B (74 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\RD1S97GG.txt File name: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Cookies\RD1S97GG.txt
Size: 74B (74 bytes)
Mime Type: unknown/txt
C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LZDITB4D\desktop.ini File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LZDITB4D\desktop.ini
Size: 67B (67 bytes)
Mime Type: unknown/ini
C:\Users\<username>\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
Size: 16B (16 bytes)
File type: Data file
Mime Type: unknown/dat
C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PBOX4Z0X\desktop.ini File name: C:\Users\<username>\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PBOX4Z0X\desktop.ini
Size: 67B (67 bytes)
Mime Type: unknown/ini
C:\Users\<username>\Desktop\Continue SweetIM installation.lnk File name: C:\Users\<username>\Desktop\Continue SweetIM installation.lnk
Size: 2B (2 bytes)
File type: Shortcut
Mime Type: unknown/lnk

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\{Value}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "FaviconURL" = "http://cdn.web.sweetim.com/toolbarff/searchplugin/sweetim.ico"HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "URL" = "http://search.sweetim.com/search.asp?src=6&crg=3.61010009&ptr=100&st=12&q={searchTerms}&barid={297A90D1-EEED-11E2-9F91-080027EB26AB}"HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "FaviconURL" = "http://cdn.web.sweetim.com/toolbarff/searchplugin/sweetim.ico"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "DisplayName" = "SweetIM search"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} "URL" = "http://search.sweetim.com/search.asp?src=6&crg=3.61010009&ptr=100&st=12&q={searchTerms}&barid={297A90D1-EEED-11E2-9F91-080027EB26AB}"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "SweetIM" = "C:\Program Files\SweetIM\Messenger\SweetIM.exe"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Sweetpacks Communicator" = "C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe"HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\IMHKEY_CURRENT_USER\Software\SweetIMHKEY_CURRENT_USER\Software\WNLTHKEY_CURRENT_USER\Software\ImInstallerHKEY_CLASSES_ROOT\sim-packagesHKEY_CLASSES_ROOT\SWEETIE.IEToolbarHKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1HKEY_CLASSES_ROOT\Toolbar3.SWEETIEHKEY_CLASSES_ROOT\Toolbar3.SWEETIE.1HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHookHKEY_LOCAL_MACHINE\SOFTWARE\SweetIMHKEY_LOCAL_MACHINE\SOFTWARE\WNLTHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exeHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WNLTHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SweetIM Bundle by SweetPacksHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\IBUpdaterServiceHKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0C43FE6B-E881-4AFC-B384-4AEBC90047E8}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DD85D6BF-4787-4A93-99A5-3F0CF0AE8834}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}

Additional Information

The following URL's were detected:
mysearch.sweetpacks.comsearch.sweetpacks.comstart.sweetpacks.comsweetpacks-search.com
Loading...