896
Home PUA How to remove YTD Video Downloader
PUA | 01/09/2018
Howtoremoveit

How to remove YTD Video Downloader

threatlevel

Antivirus Detection: 21 / 67 Score   Worldwide Sentiment: BAD


About : PUA (potentially unwanted application) is a program that may be unwanted PUAs include spyware, adware (malware).
How to remove YTD Video Downloader logo

logo Program Details
  • File Name: 5abf0b6642ccddad2a80c6d41cce9c0a.pe
  • File Type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
  • File Size: 11451328
  • Last Modified Date: 12/28/2017 12:00:00 AM
  • MD5: 5abf0b6642ccddad2a80c6d41cce9c0a
  • SHA-246: 50866c67ba7f223f1ce32ab8374aa00dab49aa1dd713b857ab936d7079b0ad14
  • CRC32: 3E6BC002
logoVirus Detection Information (21/67)
Malwarebytes
PUP.Optional.ASK.OL
Kaspersky
not-a-virus:WebToolbar.Win32.Asparnet.gen
DrWeb
Adware.Downware.10577
Webroot
Pua.Spigot
ZoneAlarm
not-a-virus:WebToolbar.Win32.Asparnet.gen
GData
Win32.Adware.YTDownloader.B
MAX
malware (ai score=97)
Zoner
PUA.Application
ESET-NOD32
a variant of Win32/Toolbar.Widgi.B potentially unwanted
Yandex
PUA.Toolbar.Widgi!
Fortinet
Riskware/Asparnet
Bkav
W32.HfsAdware.2538
Emsisoft
Application.Toolbar (A)
Invincea
heuristic
Jiangmin
WebToolbar.Asparnet.cx
K7AntiVirus
Unwanted-Program ( 00514b751 )
CAT-QuickHeal
PUA.Spigotinc1.Gen
K7GW
Unwanted-Program ( 00514b751 )
NANO-Antivirus
Riskware.Win32.Bundled.deinzb
Endgame
malicious (high confidence)
Comodo
Application.Win32.Agent.widtu
logoSignature Info
  • Legal CopyRight : Copyright \xa9 2007-2014 GreenTree Applications SRL
logoDropped file (5)
File Name
nsisdl.dll
File Path
%temp%\nsh8b53.tmp\nsisdl.dll
Size
18944
Type
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5
02d7f5e5dd1512bee2343a21d9970eba
SHA1
382abcdc03c3a0990d4482427bff757a8c5b8796
SHA256
e203bd2042cc75d229cfa18d2862c4c90754b8de1361fd4b65aef808076f5a27
CRC
353EB563
File Name
nsishelper.dll
File Path
%temp%\nsh8b53.tmp\nsishelper.dll
Size
240640
Type
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5
316fef994f84359e60c4737f6e8bafc9
SHA1
78421c4eece77cd963e2e5c2cd2b7af94622b9f6
SHA256
88bbdf25aac8c8f2abf9daeb87e3efd029db9891ae3409ef11ce110f24018f93
CRC
77DD7A25
File Name
searchprotectionstub.exe
File Path
%temp%\nsh8b53.tmp\searchprotectionstub.exe
Size
383424
Type
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5
a6f4ad0c2b7e045dc05679c48f162eb5
SHA1
374220c5994fb78e717b253c302ee1f2641e67a1
SHA256
69a65ef91c1eee3f82c66305f266415c95c15a3d89dbad7326c753ad11b2cfa6
CRC
2975BBE5
File Name
userinfo.dll
File Path
%temp%\nsh8b53.tmp\userinfo.dll
Size
4096
Type
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5
d16e06c5de8fb8213a0464568ed9852f
SHA1
d063690dc0d2c824f714acb5c4bcede3aa193f03
SHA256
728472ba312ae8af7f30d758ab473e0772477a68fcd1d2d547dafe6d8800d531
CRC
65F31CB7
File Name
sdsplugin.dll
File Path
%temp%\nss1812.tmp\sdsplugin.dll
Size
661864
Type
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5
ff1b465c8d02a77b0581c96b4929f39e
SHA1
5e76fc862295c0de9d006eddc48bee4fedc26195
SHA256
5a133b0c1306e926265b7d202c1c03c696b46fecd4ace805ac90eaeacf7569e9
CRC
0CC1137B
Registry info howtoremoveitRegistry Details (30)
HKEY_CURRENT_USER\software\{daf8b7e5-449d-4180-8281-10e536e597f2}
HKEY_CURRENT_USER\software\appdatalow\software\settings manager
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\NewShortcut\%appdata%\microsoft\windows\start menu\programs\ytd video downloader\ytd video downloader.lnk
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\NewShortcut\%allusersprofile%\microsoft\windows\start menu\programs\ytd video downloader\ytd video downloader.lnk
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\SMSetup
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasapi32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasapi32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasapi32\EnableFileTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasapi32\FileDirectory
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasapi32\FileTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasapi32\MaxFileSize
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasmancs\ConsoleTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasmancs\EnableConsoleTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasmancs\EnableFileTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasmancs\FileDirectory
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasmancs\FileTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\~sp50a3_rasmancs\MaxFileSize
HKEY_LOCAL_MACHINE\software\microsoft\tracing\searchprotectionstub_rasmancs\ConsoleTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\searchprotectionstub_rasmancs\EnableConsoleTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\searchprotectionstub_rasmancs\EnableFileTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\searchprotectionstub_rasmancs\FileDirectory
HKEY_LOCAL_MACHINE\software\microsoft\tracing\searchprotectionstub_rasmancs\FileTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\searchprotectionstub_rasmancs\MaxFileSize
HKEY_LOCAL_MACHINE\software\microsoft\tracing\ytd_rasmancs\ConsoleTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\ytd_rasmancs\EnableConsoleTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\ytd_rasmancs\EnableFileTracing
HKEY_LOCAL_MACHINE\software\microsoft\tracing\ytd_rasmancs\FileDirectory
HKEY_LOCAL_MACHINE\software\microsoft\tracing\ytd_rasmancs\FileTracingMask
HKEY_LOCAL_MACHINE\software\microsoft\tracing\ytd_rasmancs\MaxFileSize
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
Registry info howtoremoveitNetwork Analysis (11)
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab
http://www.youtubedownloadersite.com/installers/update/YTDSetup.exe
http://update.mybrowserbar.com/kits/sds/update.xml
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfqhLjKLEJQZPin0KCzkdAQpVYowQUsT7DaQP4v0cB1JgmGggC72NkK8MCEATh56TcXPLzbcArQrhdFZ8%3D
http://www.downloadnetworkhost.com/kits/sds/update.xml
http://download3.operacdn.com/pub/opera/desktop/49.0.2725.47/win/Opera_49.0.2725.47_Autoupdate.exe
http://api.downloadnetworkhost.com/cgi/api.cgi/407453/4FCAFA63EC3442D2AD7E5F5E3E160393/vloc/40
http://dl.opera.com/download/get/?id=42563&autoupdate=1&stream=Stable
http://www.mybrowserbar.com/images/pixel.gif?sds=1&shp=1&stb=0&cnid=407453&tov=15&kt=cnet
http://192.168.0.1/troubleshoot/troubleshooting6.htm
http://update.downloadnetworkhost.com/kits/sds/SMSetup.exe

Tips to Prevent virus and malware from Infecting Your System:
  1. Enable your popup blocker: Pop-ups and ads on the websites are the most adoptable tactic used by cybercriminals or developers with the core intention to spread malicious programs.
    So, avoid clicking uncertain sites, software offers, pop-ups etc. and Install a powerful ad- blocker for ChromeMozilla, and IE
  2. Keep your Windows Updated: To avoid such infections, we recommend that you should always keep your system updated through automatic windows update.By doing this you can keep your device free from virus.According to the survey, outdated/older versions of Windows operating system are an easy target.
  3. Third-party installation: Try to avoid freeware download websites as they usually install bundled of software with any installer or stub file.
  4. Regular Backup: Regular and periodical backup helps you to keep your data safe in case the system is infected by any kind of virus or any other infection.Thus always backup important files regularly on a cloud drive or an external hard drive.
  5. Always have an Anti-Virus: Precaution is better than cure. We recommend that you install an antivirus like ITL Total Security or a good Malware Removal Tool like Download Virus RemovalTool

Newsletter

1

indicatorImg_logo
mlcsetup
2

3

1

2

3

1

2

3