FlashEnhancer is a software usually installs without your knowledge vith the download of freeware. In fact some sites use the method of repackaging. This is an operation that is to redo the module software installation by adding download options. These options allow to add other software as for example toolbars browser, or potentially unwanted software. The addition of these new programs can decrease the performance of the system but also slow or redirect internet surfing. As a general rule, should focus on the author’s official site to download your software.
Identified : 07/08/2015.

0_Features

– It belongs to a family of PUP (Potentially Unwanted Program).
– A polluteware is a software that pollutes storage and/or the Base of registers.
– Vendor : PUP.Optional

0_Main_Actions

– It installs a plugin of the browser Google Chrome (G2)
– It installs a program of extension for browser Mozilla Firefox (M2)
– It installs a plugin of the browser Mozilla Firefox (P2)
– It is installed as a BHO (Browser Helper Object) of internet browser (O2),
– It installs as a program (O42),
– It creates to many registry keys ‘Software’
– It creates additional folders (O43),
– It moved to the Windows prefetcher folder (O45).
– It creates multiple files users (O61),

0_Zhpdiag

G2 – GCE: Preference

[User Data\Default] [ehmnjgkmbpbohelngpclcdhgochdeoej] flash-Enhancer v.2.1 (Désactivé)
O2 – BHO: AmiExt IE plugin [64Bits] – {5A60B6BB-FA81-4EFA-AB9C-A820E2143736} . (…) — C:\Program Files (x86)\AmiExt\flashEnhancer\ie\AmiBho.dll
O42 – Logiciel: flash-Enhancer – (.flash-Enhancer.com.) [HKLM][64Bits] — flash-Enhancer[HKCU\Software\AmiExt] [HKLM\Software\Wow6432Node\AmiExt] O43 – CFD: 03/01/2014 – 11:05:54 – [0,909] —-D C:\Program Files (x86)\AmiExt
O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\images\Thumbs.db [26112] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\images\star1_128.png [12036] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\images\star1_16.png [745] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\images\star1_32.png [2804] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\images\star1_48.png [3002] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\images\star1_64.png [5513] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\contentscript.js [359] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\core\core.js [3151] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\amiextension.js [32850] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\amihelper.js [2154] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\amilocal.js [130] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\chaddon.js [771] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\chback.js [0] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\ffaddon.js [499] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\hostutils.js [18688] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\js\utils\ieaddon.js [252] O61 – LFC: 09/01/2014 – 23:21:09 —A- . (…) — C:\Users\Coolman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehmnjgkmbpbohelngpclcdhgochdeoej\2.1_1\manifest.json [1129] [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5A60B6BB-FA81-4EFA-AB9C-A820E2143736}] [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5A60B6BB-FA81-4EFA-AB9C-A820E2143736}] [HKLM\Software\Classes\CLSID\{5A60B6BB-FA81-4EFA-AB9C-A820E2143736}] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5A60B6BB-FA81-4EFA-AB9C-A820E2143736}] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5A60B6BB-FA81-4EFA-AB9C-A820E2143736}] C:\Program Files (x86)\AmiExt
C:\Program Files (x86)\AmiExt\flashEnhancer
C:\Program Files (x86)\AmiExt\flashEnhancer\ie\AmiBho.dll

0_Alias

PUP.Optional.Amonetize.A [ Malwarebytes Antimalware ] variant of Win32/Amonetize.X [ESET Nod32] Adware.FlashEnhancer [PCTools] Artemis!25DCD812C7D2 [McAfee] Adware.FlashEnhancer [Symantec]

Remove_Software

– Remove software in Windows Configuration Panel,
0_ZHPcleaner
Remove with ZHPcleaner
ZHPCleaner_EN2
0_Zhpdiag
Diagnose with ZHPDiag
ZHPDiag_2-300x220

2016-12-30T07:34:20+00:00 Categories: Polluteware, PUP|Tags: , |Comments Off on PUP.Optional.FlashEnhancer