GrabRez

GrabRez

Known Adware

by Yontoo Technology, Inc.

What is GrabRez?

GrabRez is software application developed by Yontoo Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 56.78% of installations running this operating system. GrabRez's installer is typically 1.00 MB in size and installs around 9 files. The most common release is 2014.02.26.051729 with 18.64% of all installations currently using this version.

GrabRez is most popular in the United States with 23.42% of installations residing in this country.

About GrabRez?

GrabRez is a web browser extension designed to display popup and banner ads, as well as modify the user's web browser search and home page settings. It may also monitor user behavior and inject rival advertisements or new ads altogether.

Multiple virus scanners have detected malware in GrabRez.

updateGrabRez.exe (MD5: 758d7c3f7317b284693927dad395d4bc) has been flagged by 30 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Agent.NYV
Agnitum Outpost Riskware.Agent!
AhnLab-V3 PUP/Win32.OutBrowse
Antiy-AVL Trojan/Win32.TSGeneric
AVG Generic.D20
Avira ADWARE/BrowseFox.Gen7
AVware Yontoo (fs)
Baidu-International Adware.Win32.BrowseFox.BH
Bitdefender Adware.Agent.NYV
Comodo Security UnclassifiedMalware
Dr.Web Trojan.BPlug.250
Emsisoft Anti-Malware Adware.Agent.NYV (B)
ESET-NOD32 a variant of Win32/BrowseFox.H
Fortinet FortiGate Adware/Kranet
F-Prot W32/A-db42cb3b!Eldorado
F-Secure Adware.Agent.NYV
G Data Adware.Agent.NYV
K7 AntiVirus Trojan ( 0049f7ad1 )
K7GW Trojan ( 020000001 )
Malwarebytes PUP.Optional.GrabRez.A
McAfee BrowseFox.c
McAfee-GW-Edition BehavesLike.Win32.Dropper.fh
MicroWorld-eScan Adware.Agent.NYV
nProtect Adware.Agent.NYV
Sophos Generic PUA HM
Symantec Trojan.Gen.2
Trend Micro TROJ_GEN.R0C1C0EJJ14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJJ14
VIPRE Antivirus Yontoo (fs)
Zillya Backdoor.PePatch.Win32.39756
GrabRezBHO.dll (MD5: ee7885eb233aced5b129a72fa0aeddff) has been flagged by 40 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Agent.NYV
AhnLab-V3 PUP/Win32.BrowseFox
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
avast! Win32:BrowseFox-AX [PUP]
AVG BrowseFox.F
Avira ADWARE/BrowseFox.Gen2
AVware Yontoo (fs)
Baidu-International Adware.Win32.Agent.AR
Bitdefender Adware.Agent.NYV
Clam AntiVirus Win.Adware.Agent-7593
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.28
Emsisoft Anti-Malware Adware.Agent.NYV
ESET-NOD32 a variant of Win32/BrowseFox.F
F-Prot W32/BadBHO.AW.gen
F-Secure Adware.Agent.NYV
G Data Adware.Agent.NYV
Jiangmin Adware/Agent.izz
K7 AntiVirus Unwanted-Program
K7GW Unwanted-Program ( 004a8e8b1 )
Kaspersky not-a-virus:AdWare.Win32.Agent
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.GrabRez.A
McAfee-GW-Edition BehavesLike.Win32.Trojan.dh
MicroWorld-eScan Adware.Agent.NYV
NANO AntiVirus Riskware.Win32.Agent.cuenda
nProtect Trojan-Clicker/W32.Agent.249624
Panda Antivirus Trj/CI.A
Qihoo-360 HEUR/Malware.QVM30.Gen
SUPERAntiSpyware Adware.BrowseFox/Variant
Symantec Trojan.ADH
Tencent Win32.Adware.Agent.Anfs
VIPRE Antivirus Yontoo (fs)
Zillya Adware.Agent.Win32.9046
Agnitum Outpost Riskware.Agent!
Fortinet FortiGate Adware/Kranet
McAfee BrowseFox.c
Sophos Generic PUA HM
Trend Micro TROJ_GEN.R0C1C0EJJ14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJJ14

Software Behaviors

Services:
  • updateGrabRez.exe runs as a service named 'Update GrabRez' (Update GrabRez).

Software Details

URL:
https://grabmyrez.co/support
Support:
https://mailto:
Installation path:
C:\Program Files\GrabRez
Uninstaller:
C:\Program Files\GrabRez\GrabRezuninstall.exe
Size:
1.00 MB
Language:
English

GrabRez Executable Details

Primary executable:
GrabRez.FirstRun.exe
Name:
GrabRez
Path:
C:\Program Files\GrabRez\GrabRez.FirstRun.exe
MD5:
–
SHA-1:
–
SHA-256:
–
Files installed by GrabRez
File Type Filename MD5
EXE
c3b44da13a8e972809780c2f64c6683a
EXE
758d7c3f7317b284693927dad395d4bc
DLL
ee7885eb233aced5b129a72fa0aeddff
EXE
e01ac2ff775a53375d87cb403c98e50e
EXE
da2744c2157964dace7aec883c9c545e
CRX
2f5889f84c7f5917faa04a3fb7ed1bc7
EXE
c7f636c05a3aa9e3f1d804355a59c6a1
DLL
00cd7f83964bffb98748f69fd7900c6b
EXE
637905688583717006fe6facf55a2b4e