ScanTack

ScanTack

Known Adware

by Yontoo Technology, Inc.

What is ScanTack?

ScanTack is software application developed by Yontoo Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 52.45% of installations running this operating system. ScanTack's installer is typically 869.00 KB in size and installs around 18 files. The most common release is 2014.06.13.140957 with 0.75% of all installations currently using this version.

ScanTack is most popular in the United States with 31.15% of installations residing in this country.

About ScanTack?

ScanTack is an adware application distributed by Yontoo, a division of Sambreel Holdings based in Carlsbad, CA. It is a web browser extension designed to inject various forms of advertising, including inline text, multi-site searching, comparison shopping popups, banners, and popups/popunders. This adware alters web browser settings to facilitate its ad injection offers, including disabling the two-second load time warning in Internet Explorer. It also modifies the browser's Instant Search feature and alters the behavior of search engine results page links.

Multiple virus scanners have detected malware in ScanTack.

updateScanTack.exe (MD5: de8b46589cc595aee43ec0a8c07b952f) has been flagged by 45 scanners:
Scanner Software Result
AVG MalSign.Generic
Baidu-International Adware.Win32.BrowseFox.H
ESET-NOD32 a variant of Win32/BrowseFox.H
Malwarebytes PUP.Optional.ScanTack.A
TrendMicro-HouseCall TROJ_GEN.F47V0326
Lavasoft Ad-Aware Adware.SwiftBrowse.Y
Agnitum Outpost Riskware.Agent!
AhnLab-V3 Adware/Win32.Agent
ALYac Adware.SwiftBrowse.Y
avast! Win32:BrowseFox-J [PUP]
Avira ADWARE/BrowseFox.apb
AVware Yontoo (fs)
Bitdefender Adware.SwiftBrowse.Y
Bkav FE W32.HfsAdware.B486
Comodo Security Application.Win32.BrowseFox.JM
Cyren W32/S-7bed2e86!Eldorado
Emsisoft Anti-Malware Adware.SwiftBrowse.Y (B)
Fortinet FortiGate Riskware/BrowseFox
F-Prot W32/S-7bed2e86!Eldorado
F-Secure Adware.SwiftBrowse.Y
G Data Adware.SwiftBrowse.Y
Jiangmin Adware/Agent.aakf
K7 AntiVirus Trojan ( 0040f9921 )
K7GW Trojan ( 0040f9921 )
McAfee BrowseFox-FRR
McAfee-GW-Edition BrowseFox-FRR
MicroWorld-eScan Adware.SwiftBrowse.Y
NANO AntiVirus Trojan.Win32.BPlug.dfogbn
nProtect Adware.SwiftBrowse.Y
Panda Antivirus Trj/CI.A
Qihoo-360 Win32/Virus.Adware.06a
Sophos Generic PUA AB
Symantec Trojan.Gen.2
Tencent Trojan.Win32.Qudamah.Gen.10
Trend Micro TROJ_GEN.R0C1C0ELU14
Vba32 AntiVirus AdWare.Kranet
VIPRE Antivirus Yontoo (fs)
Zillya Backdoor.PePatch.Win32.64126
Avira AntiVir APPL/BrowseFox.Gen2
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Dr.Web Trojan.BPlug.28
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
SUPERAntiSpyware Adware.BrowseFox/Variant
ScanTackBHO.dll (MD5: 2dda317ecfc71241d65be903030a1b08) has been flagged by 45 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.SwiftBrowse.Y
Agnitum Outpost Riskware.Agent!
AhnLab-V3 Adware/Win32.Agent
ALYac Adware.SwiftBrowse.Y
avast! Win32:BrowseFox-J [PUP]
AVG BrowseFox.F
Avira ADWARE/BrowseFox.apb
AVware Yontoo (fs)
Baidu-International Adware.Win32.BrowseFox.O
Bitdefender Adware.SwiftBrowse.Y
Bkav FE W32.HfsAdware.B486
Comodo Security Application.Win32.BrowseFox.JM
Cyren W32/S-7bed2e86!Eldorado
Emsisoft Anti-Malware Adware.SwiftBrowse.Y (B)
ESET-NOD32 a variant of Win32/BrowseFox.O potentially unwanted
Fortinet FortiGate Riskware/BrowseFox
F-Prot W32/S-7bed2e86!Eldorado
F-Secure Adware.SwiftBrowse.Y
G Data Adware.SwiftBrowse.Y
Jiangmin Adware/Agent.aakf
K7 AntiVirus Trojan ( 0040f9921 )
K7GW Trojan ( 0040f9921 )
Malwarebytes PUP.Optional.ScanTack.A
McAfee BrowseFox-FRR
McAfee-GW-Edition BrowseFox-FRR
MicroWorld-eScan Adware.SwiftBrowse.Y
NANO AntiVirus Trojan.Win32.BPlug.dfogbn
nProtect Adware.SwiftBrowse.Y
Panda Antivirus Trj/CI.A
Qihoo-360 Win32/Virus.Adware.06a
Sophos Generic PUA AB
Symantec Trojan.Gen.2
Tencent Trojan.Win32.Qudamah.Gen.10
Trend Micro TROJ_GEN.R0C1C0ELU14
TrendMicro-HouseCall TROJ_GEN.R0C1C0ELU14
Vba32 AntiVirus AdWare.Kranet
VIPRE Antivirus Yontoo (fs)
Zillya Backdoor.PePatch.Win32.64126
Avira AntiVir APPL/BrowseFox.Gen2
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Dr.Web Trojan.BPlug.28
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
SUPERAntiSpyware Adware.BrowseFox/Variant
9FA9D905-02BD-4B41-B2C4-04FD6291B112.dll (MD5: d7706db9520ced5179df70c4bb08c3e5) has been flagged by 31 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.SwiftBrowse.Y
Agnitum Outpost PUA.Agent!
Avira AntiVir APPL/BrowseFox.Gen2
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
AVG BrowseFox.F
Baidu-International Adware.Win32.Agent.Au
Bitdefender Adware.SwiftBrowse.Y
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.28
Emsisoft Anti-Malware Adware.SwiftBrowse.Y (B)
ESET-NOD32 a variant of Win32/BrowseFox.F
Fortinet FortiGate Adware/Agent
F-Secure Adware.SwiftBrowse.Y
G Data Adware.SwiftBrowse.Y
Jiangmin Adware/Agent.izz
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Trojan ( 050000001 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.ScanTack.A
McAfee Artemis!D7706DB9520C
McAfee-GW-Edition Artemis!D7706DB9520C
MicroWorld-eScan Adware.SwiftBrowse.Y
NANO AntiVirus Riskware.Win32.Agent.cuenda
nProtect Adware.SwiftBrowse.Y
Panda Antivirus Trj/CI.A
Sophos Generic PUA JJ
SUPERAntiSpyware Adware.BrowseFox/Variant
TrendMicro-HouseCall Suspicious_GEN.F47V0616
VIPRE Antivirus Yontoo (fs)
Zillya Adware.Agent.Win32.9037
756E8178-4B62-4FB3-8800-79C21098E5D0.dll (MD5: 03000d04ff7ccbd2a221eaea6bebdaa0) has been flagged by 32 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.SwiftBrowse.Y
Agnitum Outpost PUA.Agent!
Avira AntiVir APPL/BrowseFox.Gen2
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
AVG BrowseFox.F
Baidu-International Adware.Win32.BrowseFox.bF
Bitdefender Adware.SwiftBrowse.Y
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.28
Emsisoft Anti-Malware Adware.SwiftBrowse.Y (B)
ESET-NOD32 a variant of Win32/BrowseFox.F
Fortinet FortiGate Adware/Agent
F-Secure Adware.SwiftBrowse.Y
G Data Adware.SwiftBrowse.Y
Jiangmin Adware/Agent.izz
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Trojan ( 050000001 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.ScanTack.A
McAfee Artemis!03000D04FF7C
McAfee-GW-Edition Artemis!03000D04FF7C
MicroWorld-eScan Adware.SwiftBrowse.Y
NANO AntiVirus Riskware.Win32.Agent.cuenda
nProtect Adware.SwiftBrowse.Y
Panda Antivirus Trj/CI.A
Sophos Generic PUA HD
SUPERAntiSpyware Adware.BrowseFox/Variant
TrendMicro-HouseCall Suspicious_GEN.F47V0610
VIPRE Antivirus Yontoo (fs)
Zillya Adware.Agent.Win32.9037
721C8BB8-71D9-4A7E-A4D7-1BE5D2993C50.dll (MD5: 3338a4df2479c2305d6264d73fb42730) has been flagged by 31 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.SwiftBrowse.Y
Agnitum Outpost PUA.Agent!
Avira AntiVir APPL/BrowseFox.Gen2
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
AVG BrowseFox.F
Baidu-International Adware.Win32.BrowseFox.bF
Bitdefender Adware.SwiftBrowse.Y
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.28
Emsisoft Anti-Malware Adware.SwiftBrowse.Y (B)
ESET-NOD32 a variant of Win32/BrowseFox.F
Fortinet FortiGate Adware/Agent
F-Secure Adware.SwiftBrowse.Y
G Data Adware.SwiftBrowse.Y
Jiangmin Adware/Agent.izz
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Trojan ( 050000001 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.ScanTack.A
McAfee Artemis!3338A4DF2479
McAfee-GW-Edition Artemis!3338A4DF2479
MicroWorld-eScan Adware.SwiftBrowse.Y
NANO AntiVirus Riskware.Win32.Agent.cuenda
nProtect Adware.SwiftBrowse.Y
Panda Antivirus Trj/CI.A
Sophos Generic PUA IO
SUPERAntiSpyware Adware.BrowseFox/Variant
TrendMicro-HouseCall Suspicious_GEN.F47V0613
VIPRE Antivirus Yontoo (fs)
Zillya Adware.Agent.Win32.9037

Software Behaviors

Services:
  • updateScanTack.exe runs as a service named 'Update ScanTack' (Update ScanTack).
  • utilScanTack.exe runs as a service named 'Update ScanTack' (Update ScanTack).

Software Details

URL:
https://scantack.net/support
Support:
https://mailto:
Installation path:
C:\Program Files\ScanTack
Uninstaller:
C:\Program Files\ScanTack\ScanTackuninstall.exe
Size:
869.00 KB
Language:
English

ScanTack Executable Details

Primary executable:
updateScanTack.exe
Name:
ScanTack
Path:
C:\Program Files\ScanTack\updateScanTack.exe
MD5:
de8b46589cc595aee43ec0a8c07b952f
SHA-1:
–
SHA-256:
–
Files installed by ScanTack
File Type Filename MD5
EXE
e92604e043f51c604b6d1ac3bcd3a202
EXE
de8b46589cc595aee43ec0a8c07b952f
EXE
8c039d4314608b9e5ab1ce680a52deb3
EXE
3e903f26ce04251ae62f3679db2e2df7
EXE
9600bf084fb52af19cf55da989e261e7
DLL
2dda317ecfc71241d65be903030a1b08
DLL
3338a4df2479c2305d6264d73fb42730
DLL
3338a4df2479c2305d6264d73fb42730
DLL
3338a4df2479c2305d6264d73fb42730
DLL
ad3db3f81373b7c6558c10bc9be08055