Threat Database Adware Adware.FreeVox

Adware.FreeVox

By CagedTech in Adware

Threat Scorecard

Popularity Rank: 18,428
Threat Level: 20 % (Normal)
Infected Computers: 44
First Seen: February 23, 2022
Last Seen: July 6, 2026
OS(es) Affected: Windows

The detection of Adware.FreeVox on your system indicates the presence of unwanted software that may be compromising your online experience and potentially exposing you to more serious threats. Adware, by its nature, is designed to display unwanted advertisements, but it can also collect user data and lead to further malware infections if not addressed promptly.

What Is Adware.FreeVox?

Adware.FreeVox refers to a specific detection of adware, a type of malware that is primarily designed to display advertisements on your computer, often in the form of pop-ups, banners, or sponsored content within websites. Unlike viruses or Trojans, adware is typically not designed to cause direct harm to your system but can significantly degrade your browsing experience and system performance. It may also track your browsing habits and collect personal data, which can be a significant privacy concern.

How Adware.FreeVox Operates

Adware like Adware.FreeVox usually operates by integrating itself into your web browser or installing as a standalone application. Once installed, it can monitor your browsing activity, search for keywords, and then display targeted advertisements. This software might be bundled with other programs you download from the internet or could be installed through deceptive means, such as pretending to be a useful utility or update. The primary goal of adware is to generate revenue for its creators through the display of advertisements, often without the user's consent or knowledge of the full implications of the software's presence.

Symptoms of Infection

Symptoms of an adware infection can vary but commonly include an increase in the number of advertisements displayed on your computer, especially within web browsers. You might notice pop-ups, new tabs opening with advertisements, or your homepage and default search engine changing without your input. System performance can also be affected, as adware often runs in the background, consuming system resources. Additionally, some adware can redirect your searches or lead you to fake or dangerous websites, further compromising your security and privacy.

How to Remove Adware.FreeVox

  1. Enter Safe Mode with Networking: This will help prevent the adware from interfering with the removal process. To do this, restart your computer and immediately start tapping the F8 key. Select Safe Mode with Networking from the Advanced Boot Options menu.
  2. Perform a Full Scan with a Reputable Tool: Utilize a reputable anti-malware tool, such as SpyHunter, to scan your system for adware and other malware. Ensure the tool is updated before running the scan to catch the latest threats.
  3. Uninstall Suspicious Programs: Go through the list of installed programs on your computer and uninstall any that you do not recognize or that were installed around the time your issues began.
  4. Reset Your Browser Settings: For browsers like Chrome, Firefox, and Edge, resetting the browser settings can help remove changes made by the adware. This will restore your browser to its default state, so be aware that you will lose any customized settings.
  5. Reboot and Re-scan: After completing the above steps, restart your computer in normal mode and perform another scan with your anti-malware tool to ensure all traces of the adware have been removed.

Conclusion

Removing Adware.FreeVox requires a combination of technical knowledge and the right tools. By following the steps outlined above and maintaining vigilance in your online activities, you can protect your system from adware and other forms of malware. Regularly updating your operating system, browsers, and security software, as well as being cautious with downloads and email attachments, are crucial steps in preventing future infections. Remember, the presence of adware can be a precursor to more severe security issues, so addressing the problem promptly is essential for safeguarding your personal data and system integrity.

Analysis Report

General information

Family Name: Adware.FreeVox
Signature status: Hash Mismatch

Known Samples

MD5: 9d335434b324de943745cd5f280d8db6
SHA1: 7ea5ba0e6fb29a5f1ffe7581209fdaf4a4e9b8f4
SHA256: 2F66EB2E6D982E1482CFF904CB810253EC8A54B96C761D18A93E1DDC5EDB72DE
File Size: 117.60 KB, 117600 bytes
MD5: f34d903964a0f9b72267a81f2037b43e
SHA1: 3db4c81bb850493497f15ef10fd9b4d6cc41e402
SHA256: 5C76E6741AA07442E94F8AD23624ABD7817800E977369C3144F42D7A8A10F8BC
File Size: 103.57 KB, 103568 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Digital Signatures

Signer Root Status
FreeVox SA DigiCert Assured ID Code Signing CA-1 Hash Mismatch
FreeVox SA DigiCert Assured ID Code Signing CA-1 Self Signed

Block Information

Similar Families

  • AdGazelle.A
  • Downloader.Agent.TJ
  • Mobogenie
  • SearchSuite.C
  • Zusy.CA

Files Modified

File Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\custom.ini Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\inetc.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\modern-wizard.bmp Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\modern-wizard.bmp Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\nsdialogs.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\price_logo.bmp Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\system.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\toolbar_iminent_logo.bmp Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsz5891.tmp\toolbar_mixidj_logo.bmp Generic Write,Read Attributes

Registry Modifications

Key::Value Data API Name
HKCU\software\microsoft\windows\currentversion\internet settings\5.0\cache\content::cacheprefix RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\5.0\cache\cookies::cacheprefix Cookie: RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\5.0\cache\history::cacheprefix Visited: RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::proxybypass  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::intranetname  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::uncasintranet  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::autodetect RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::proxybypass  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::intranetname  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::uncasintranet  RegNtPreCreateKey
Show More
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::autodetect RegNtPreCreateKey

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation
User Data Access
  • GetUserObjectInformation
Network Wininet
  • HttpOpenRequest
  • HttpQueryInfo
  • HttpSendRequest
  • InternetConnect
  • InternetOpen
  • InternetQueryOption

Related Posts

Trending

Most Viewed

Loading...