Bizzybolt

Bizzybolt

Known Malware

by Yontoo Technology, Inc.

What is Bizzybolt?

Bizzybolt is software application developed by Yontoo Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 60.08% of installations running this operating system. Bizzybolt's installer is typically 620.00 KB in size and installs around 9 files. The most common release is 2013.11.20.184610 with 63.71% of all installations currently using this version.

Bizzybolt is most popular in the United States with 28.46% of installations residing in this country.

About Bizzybolt?

This web browser extension is designed to modify a user's home and search pages in order to deliver search hijacking and contextual advertising within the web browser. By installing a Browser Helper Object (BHO) in Internet Explorer, the extension can track and monitor a user's web browsing activities and display various banner and link-context ads, as well as redirect searches. Features added to the web browser include inline text and multi-site searching, comparison shopping, related search results, additional offers and coupons, and website ratings and reviews. The software also has an 'auto-enabled updater' feature that runs as a Windows service to add new features as desired. According to the Terms, user information is collected and shared for advertising relevance and other purposes.

Multiple virus scanners have detected malware in Bizzybolt.

updateBizzybolt.exe (MD5: 834a990f60fdea9152202c4d6dc84a31) has been flagged by 20 scanners:
Scanner Software Result
Dr.Web Trojan.BPlug.3
ESET-NOD32 a variant of Win32/BrowseFox.G
Fortinet FortiGate Riskware/BrowseFox
Malwarebytes PUP.Optional.Bizzybolt.A
Agnitum Outpost PUA.Agent!
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
Comodo Security Application.Win32.Altbrowse.AK
IKARUS anti.virus not-a-virus:AdWare.Win32.Agent
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
McAfee Artemis!DBEFD5CF0B3B
McAfee-GW-Edition Artemis!DBEFD5CF0B3B
NANO AntiVirus Riskware.Win32.Agent.crkvek
Sophos Generic PUA LK
SUPERAntiSpyware Adware.BrowseFox/Variant
TrendMicro-HouseCall TROJ_GEN.F47V0301
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Yontoo (fs)
BizzyboltBHO.dll (MD5: dbefd5cf0b3bbd0f4968456d0ff7cbf6) has been flagged by 20 scanners:
Scanner Software Result
Agnitum Outpost PUA.Agent!
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.17
ESET-NOD32 a variant of Win32/BrowseFox.F
Fortinet FortiGate Adware/Agent
IKARUS anti.virus not-a-virus:AdWare.Win32.Agent
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.Bizzybolt.A
McAfee Artemis!DBEFD5CF0B3B
McAfee-GW-Edition Artemis!DBEFD5CF0B3B
NANO AntiVirus Riskware.Win32.Agent.crkvek
Sophos Generic PUA LK
SUPERAntiSpyware Adware.BrowseFox/Variant
TrendMicro-HouseCall TROJ_GEN.F47V0301
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Yontoo (fs)

Software Behaviors

Services:
  • updateBizzybolt.exe runs as a service named 'Update Bizzybolt' (Update Bizzybolt).

Software Details

URL:
https://bizzybolt.co/support
Support:
https://mailto:
Installation path:
C:\Program Files\Bizzybolt
Uninstaller:
C:\Program Files\Bizzybolt\Bizzyboltuninstall.exe
Size:
620.00 KB
Language:
English

Bizzybolt Executable Details

Primary executable:
updateBizzybolt.exe
Name:
Bizzybolt
Path:
C:\Program Files\Bizzybolt\updateBizzybolt.exe
MD5:
834a990f60fdea9152202c4d6dc84a31
SHA-1:
SHA-256:
Files installed by Bizzybolt
File Type Filename MD5
EXE
c3b44da13a8e972809780c2f64c6683a
EXE
0b86536bba2a922f5f32ad1792d8a03b
EXE
834a990f60fdea9152202c4d6dc84a31
DLL
dbefd5cf0b3bbd0f4968456d0ff7cbf6
EXE
92b907ccc631f96d113e5433c0477797
EXE
eb2c50c8546ec7722bdf72faa2a25002
DLL
33df1d87c5682fca6a0dd5054c26bc8a
EXE
c6bb8f738cdb6622ebb9104fd59e85c3
EXE
3b551e3b9fc1201968745ec84273831d