outobox

outobox

Known Malware

by Yontoo Technology, Inc.

What is outobox?

outobox is software application developed by Yontoo Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 62.01% of installations running this operating system. outobox's installer is typically 0.99 MB in size and installs around 10 files. The most common release is 2013.12.07.011955 with 89.50% of all installations currently using this version.

outobox is most popular in the United States with 5.97% of installations residing in this country.

About outobox?

This software is a potentially unwanted web browser extension that may modify the user's browser home and search pages in order to deliver search-based redirection. It has the capability to track and monitor a user's web browsing activities and display various banner and link-context ads, in addition to redirecting searches. Upon installation, the software will introduce several unwanted features to the web browser, including inline text and multi-site searching, comparison shopping, related search results, additional offers and coupons, as well as website ratings and reviews. This is achieved through the analysis of the content of the web pages the user visits, along with tracking URLs and navigation. Furthermore, outobox may introduce additional features post-installation through its 'auto-enabled updater', which operates as a Windows service. According to the Terms of the software, "outobox content includes advertisements... User info is collected and shared for ad relevance and other purposes."

Multiple virus scanners have detected malware in outobox.

updateoutobox.exe (MD5: 5cf2e2f24a079d43727678a74628efa1) has been flagged by 27 scanners:
Scanner Software Result
Agnitum Outpost PUA.Kranet!
AhnLab-V3 PUP/Win32.OutBrowse
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/MSIL.Kranet
avast! Win32:BrowseFox-AH [PUP]
AVG Outobox.C42
Avira ADWARE/BrowseFox.Gen7
AVware Yontoo (fs)
Baidu-International Adware.Win32.BrowseFox.H
CAT-QuickHeal AdWare.MSIL.r3 (Not a Virus)
Comodo Security UnclassifiedMalware
Dr.Web Trojan.BPlug.250
ESET-NOD32 a variant of Win32/BrowseFox.H
Fortinet FortiGate Adware/Kranet
F-Prot W32/A-db42cb3b!Eldorado
K7 AntiVirus Trojan ( 0049f7ad1 )
K7GW Trojan ( 0049f7ad1 )
Kaspersky not-a-virus:HEUR:AdWare.MSIL.Kranet.heur
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.Outobox.A
McAfee BrowseFox.c
McAfee-GW-Edition BrowseFox.c
nProtect Trojan-Clicker/W32.Agent.323352.B
Qihoo-360 Win32/Virus.Adware.e4c
Sophos OutoBox
Tencent Win32.Trojan.Falsesign.Taza
TrendMicro-HouseCall Suspicious_GEN.F47V0827
VIPRE Antivirus Yontoo (fs)
outoboxBHO.dll (MD5: 448aff98fa4cc97ebfa3b3a82959e8fc) has been flagged by 32 scanners:
Scanner Software Result
Antiy-AVL AdWare/Win32.Agent
AVG MalSign.Outobox
Bkav FE W32.Clod838.Trojan
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Adware.Plugin.100
ESET-NOD32 a variant of Win32/BrowseFox.F
Fortinet FortiGate Adware/Agent
IKARUS anti.virus not-a-virus:AdWare.Win32.Agent
Jiangmin Adware/Agent.izz
K7 AntiVirus Unwanted-Program
K7GW Unwanted-Program ( 00454f261 )
Kaspersky not-a-virus:AdWare.Win32.Agent
Malwarebytes PUP.Optional.Outobox.A
NANO AntiVirus Riskware.Win32.Agent.cqsznp
Sophos Generic PUA NB
TrendMicro-HouseCall TROJ_GEN.F47V1122
Vba32 AntiVirus AdWare.Agent
Agnitum Outpost PUA.Kranet!
AhnLab-V3 PUP/Win32.OutBrowse
avast! Win32:BrowseFox-AH [PUP]
Avira ADWARE/BrowseFox.Gen7
AVware Yontoo (fs)
Baidu-International Adware.Win32.BrowseFox.H
CAT-QuickHeal AdWare.MSIL.r3 (Not a Virus)
F-Prot W32/A-db42cb3b!Eldorado
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee BrowseFox.c
McAfee-GW-Edition BrowseFox.c
nProtect Trojan-Clicker/W32.Agent.323352.B
Qihoo-360 Win32/Virus.Adware.e4c
Tencent Win32.Trojan.Falsesign.Taza
VIPRE Antivirus Yontoo (fs)

Software Behaviors

Services:
  • updateoutobox.exe runs as a service named 'Update outobox' (Update outobox).

Software Details

URL:
https://outobox.net/support
Support:
https://mailto:
Installation path:
C:\Program Files\outobox
Uninstaller:
C:\Program Files\outobox\outoboxuninstall.exe
Size:
0.99 MB
Language:
English

outobox Executable Details

Primary executable:
outoboxBHO.dll
Name:
outobox
Path:
C:\Program Files\outobox\outoboxBHO.dll
MD5:
448aff98fa4cc97ebfa3b3a82959e8fc
SHA-1:
SHA-256:
Files installed by outobox
File Type Filename MD5
EXE
0b86536bba2a922f5f32ad1792d8a03b
DLL
67a8a7b8b939bb6fb03184f236f724ad
EXE
38dcf478cd6a59cb0d4cd280071c2fdd
EXE
5cf2e2f24a079d43727678a74628efa1
DLL
448aff98fa4cc97ebfa3b3a82959e8fc
EXE
676c4701df18e81739b2091bd5f23686
CRX
fdc0f3b5b1d45c2a4fbab3eae455c1e4
EXE
1a2bccd706068a9271559f32be89a70b
DLL
154d5948a20d8ae180b0c815e144183a
DLL
491fa6499d56a50658d30509ca4d21ae