SmartSaver+ 8

SmartSaver+ 8

Known Adware

by Robokid Technologies

What is SmartSaver+ 8?

SmartSaver+ 8 is software application developed by Robokid Technologies. It is most commonly found on computers running Windows 7 with nearly 67.24% of installations running this operating system. SmartSaver+ 8's installer is typically 6.00 MB in size and installs around 41 files. The most common release is 1.34.3.28 with 55.17% of all installations currently using this version.

SmartSaver+ 8 is most popular in the United States with 58.57% of installations residing in this country.

About SmartSaver+ 8?

SmartSaver+ is an adware software that inserts advertising content into the user's web browser by operating as an extension and/or add-on. It delivers various forms of ads, including search-related ads, banner and video ads, text-links, and occasional popup/popunder ads. These ads typically appear in the header or footer sections of web pages. Moreover, it can convert words on web pages into hyperlinks that lead to advertisements. Due to its behavior, this application is categorized as adware and/or a potentially unwanted program (PUP). It is commonly distributed through third-party installers, often included as an additional or sponsored offer.

Multiple virus scanners have detected malware in SmartSaver+ 8.

utils.exe (MD5: c777e0409095610c1fc65e357df45f39) has been flagged by 30 scanners:
Scanner Software Result
avast! Win32:Malware-gen
Baidu-International Trojan.Win32.VMDetector.E
Bkav FE HW32.CDB
ESET-NOD32 a variant of Win32/Packed.VMDetector.E
G Data Win32.Trojan.Agent.EYUFOB
Malwarebytes PUP.Optional.CrossRider.A
McAfee Artemis!C777E0409095
McAfee-GW-Edition Artemis!C777E0409095
Symantec Trojan.ADH.SMH
TrendMicro-HouseCall TROJ_GEN.R0C1H05DD14
VIPRE Antivirus Trojan.Win32.Generic!BT
Lavasoft Ad-Aware Trojan.Generic.11253089
Avira AntiVir Adware/CrossRider.AD
AVG Generic5.ARQF
AVware Crossrider (fs)
Bitdefender Trojan.Generic.11253089
Emsisoft Anti-Malware Trojan.Generic.11253089 (B)
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
F-Secure Trojan.Generic.11253089
IKARUS anti.virus AdWare.CrossRider
K7 AntiVirus Trojan ( 004985a61 )
K7GW Trojan ( 004985a61 )
MicroWorld-eScan Trojan.Generic.11253089
nProtect Trojan.Generic.11253089
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Sophos AppRider
Antiy-AVL Trojan/Win32.SGeneric
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
SmartSaver+ 8-codedownloader.exe (MD5: 2eb67af390ba06d7d5f08109ff03b439) has been flagged by 21 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Generic.911712
Antiy-AVL Trojan/Win32.SGeneric
avast! Win32:PUP-gen [PUP]
Baidu-International Adware.Win32.CrossRider.40
Bitdefender Adware.Generic.911712
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.X
G Data Adware.Generic.911712
Malwarebytes PUP.Optional.SmartSaver.A
MicroWorld-eScan Adware.Generic.911712
Symantec Adware.Crossid
TrendMicro-HouseCall TROJ_GEN.R0C1H05CS14
VIPRE Antivirus Crossrider (fs)
Avira AntiVir Adware/CrossRider.A.73
Bkav FE W32.CrossRider.Trojan
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee Artemis!0E6236D4CCCB
McAfee-GW-Edition Artemis!0E6236D4CCCB
Qihoo-360 Win32/Virus.Adware.fdd
AVG Generic_s.BA
Fortinet FortiGate Riskware/Toolbar_CrossRider
IKARUS anti.virus AdWare.PlusHD
SmartSaver+ 8-chromeinstaller.exe (MD5: 166628ebd53b15b1b9c616af76ce1fed) has been flagged by 3 scanners:
Scanner Software Result
Malwarebytes PUP.Optional.SmartSaver.A
TrendMicro-HouseCall TROJ_GEN.F47V0325
VIPRE Antivirus Crossrider (fs)
SmartSaver+ 8-bho64.dll (MD5: fe8341782f602dc72fd621b5cfa3c7bb) has been flagged by 9 scanners:
Scanner Software Result
AVG MultiBundle.S
Baidu-International Adware.Win64.Crossrider.D
ESET-NOD32 probably a variant of Win64/Toolbar.Crossrider.D
Malwarebytes PUP.Optional.SmartSaver.A
VIPRE Antivirus Crossrider (fs)
Bkav FE W32.CrossRider.Trojan
Qihoo-360 HEUR/Malware.QVM10.Gen
Symantec WS.Reputation.1
TrendMicro-HouseCall TROJ_GEN.F47V0401
SmartSaver+ 8-bho.dll (MD5: 15c49ea33fe8eab67c2df1722d576abc) has been flagged by 12 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.758
AVG MultiBundle.R
IKARUS anti.virus AdWare.PlusHD
Malwarebytes PUP.Optional.SmartSaver.A
Qihoo-360 Win32/Virus.Adware.e75
Symantec WS.Reputation.1
VIPRE Antivirus Crossrider (fs)
Bkav FE W32.CrossRider.Trojan
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AD
TrendMicro-HouseCall TROJ_GEN.F47V0331
Baidu-International Adware.Win32.CrossRider.AC
Antiy-AVL Trojan/Win32.SGeneric

Startup Entries

Startup tasks:
  • dbe40d90-084a-4b0c-a898-01ac130a9ebe-5.exe is automatically launched at startup through a scheduled task named dbe40d90-084a-4b0c-a898-01ac130a9ebe-5.
  • dbe40d90-084a-4b0c-a898-01ac130a9ebe-4.exe is automatically launched at startup through a scheduled task named dbe40d90-084a-4b0c-a898-01ac130a9ebe-4.
  • dbe40d90-084a-4b0c-a898-01ac130a9ebe-2.exe is automatically launched at startup through a scheduled task named dbe40d90-084a-4b0c-a898-01ac130a9ebe-2.
  • SmartSaver+ 8-chromeinstaller.exe is automatically launched at startup through a scheduled task named SmartSaver+ 8-chromeinstaller.
  • ef10a7e3-8f43-47d3-96ca-6cc3324aa180-4.exe is automatically launched at startup through a scheduled task named ef10a7e3-8f43-47d3-96ca-6cc3324aa180-4.
  • ef10a7e3-8f43-47d3-96ca-6cc3324aa180-3.exe is automatically launched at startup through a scheduled task named ef10a7e3-8f43-47d3-96ca-6cc3324aa180-3.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\smartsaver+ 8
Uninstaller:
C:\Program Files\SmartSaver+ 8\Uninstall.exe /fromcontrolpanel=1
Size:
6.00 MB
Language:
English

SmartSaver+ 8 Executable Details

Primary executable:
utils.exe
Name:
SmartSaver+ 8
Path:
C:\Program Files\smartsaver+ 8\utils.exe
MD5:
c777e0409095610c1fc65e357df45f39
SHA-1:
–
SHA-256:
–
Files installed by SmartSaver+ 8
File Type Filename MD5
EXE
c468adc80e09ef5bb4e716eaadcf3dbf
EXE
utils.exe
Malware
c777e0409095610c1fc65e357df45f39
XPI
c8e4a7dabdf7cdf9734a714350aa0681
CRX
405a0f6164b24822cc3be9e5a461cab3
EXE
2eb67af390ba06d7d5f08109ff03b439
EXE
166628ebd53b15b1b9c616af76ce1fed
DLL
fe8341782f602dc72fd621b5cfa3c7bb
DLL
15c49ea33fe8eab67c2df1722d576abc
EXE
b1c09a484ba20f922a5119a21fe7f048
EXE
0e4f1aadbe2a91bb352cb5e4a63abbc5