youtubeaccelerator.exe

YouTube Accelerator

Goobzo LTD

This is part of the Goobzo YouTube Accelerator program which is a web browser extension that includes advertising in the form of injected coupons (based on the visited web page) as well as additional advertising. - "The Software provides a suite of browser features that customize and enhance your interaction with video and other various websites by rendering download button, graphics, text, or other functional or interactive content in your browser." The application youtubeaccelerator.exe by Goobzo has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘GoobzoYouTubeAccelerator’. This file is typically installed with the program YouTube Accelerator by Goobzo Ltd. which is a potentially unwanted software program.
Publisher:
GOOBZO  (signed by Goobzo LTD)

Product:
YouTube Accelerator

Version:
3.3.8.9

MD5:
592989a426ae8bd543816906b4e404b6

SHA-1:
4dce838a8f791ee583d42f4a6c75ce06201550ed

SHA-256:
b7f01fe740eaae2df8a5f2feb90daa531711b9c78b03bcbfa89cabd445310658

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
10/15/2019 11:01:26 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Goobzo (M)
17.3.16.7

File size:
2.1 MB (2,227,048 bytes)

Product version:
3.3.8.9

Copyright:
Copyright © 2013 GOOBZO Ltd.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\youtube accelerator\youtubeaccelerator.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
5/1/2013 5:00:00 PM

Valid to:
5/2/2015 4:59:59 PM

Subject:
CN=Goobzo LTD, O=Goobzo LTD, L=Haifa, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
120B25DDE57B88636AD4D97D23B99C88

File PE Metadata
Compilation timestamp:
2/5/2014 6:06:38 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
83.82

Entry address:
0x193C0F

Entry point:
E8, E0, D7, 00, 00, E9, 16, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 57, 56, 8B, 75, 0C, 8B, 4D, 10, 8B, 7D, 08, 8B, C1, 8B, D1, 03, C6, 3B, FE, 76, 08, 3B, F8, 0F, 82, A4, 01, 00, 00, 81, F9, 00, 01, 00, 00, 72, 1F, 83, 3D, 04, 04, 60, 00, 00, 74, 16, 57, 56, 83, E7, 0F, 83, E6, 0F, 3B, FE, 5E, 5F, 75, 08, 5E, 5F, 5D, E9, A8, D8, 00, 00, F7, C7, 03, 00, 00, 00, 75, 15, C1, E9, 02, 83, E2, 03, 83, F9, 08, 72, 2A, F3, A5, FF, 24, 95, 94, 3D, 59, 00, 90, 8B, C7, BA, 03, 00, 00, 00, 83, E9, 04, 72...
 
[+]

Entropy:
7.2897

Code size:
708 KB (724,992 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
GoobzoYouTubeAccelerator

Command:
"C:\Program Files\youtube accelerator\youtubeaccelerator.exe" \startup


The file youtubeaccelerator.exe has been discovered within the following programs.

YouTube Accelerator  by Goobzo Ltd.
Bundles and includes itself various adware toolbars that are designed to modify the user's web browser search settings and home page as well as inject advertising in the browser in the form of coupons/deals, banners and text links as well as 'download' buttons.
www.youtubeaccelerator.com/support
74% remove it
 
Powered by Should I Remove It?

Remove youtubeaccelerator.exe - Powered by Reason Core Security