PineTree is an advertising program whose objective is to earn money by generating Web traffic. It usually moved without your knowledge via the download of freeware. For consultation of some sites, like Amazon, it offers coupons on multiple products. It collects information about your navigation habits. It promotes its products (advertisements) and boosted the ranking of sponsored sites. It displays messages of safety on the instability of the system. It slowed down the performance of the system and internet navigation.
Identified 06/06/2015

0_Features

– It belongs to a family of PUP (Potentially Unwanted Program).
– A polluteware is a software that pollutes storage and/or the Base of registers.
– An Adware is a program that adds other programs without the knowledge of the user.
– Vendor : PUP.Optional

0_Main_Actions

– It installs as a process launched at startup of the system (RP),
– It changes the start page of the browser Internet Explorer (R0),
– It changes the browser Internet Explorer search page (R1),
– It installs a program of extension for browser Mozilla Firefox (M2)
– It installs a plugin for the browser Mozilla Firefox (M3)
– It installs a program of extension for the browser Google Chrome (G2)
– It is installed as a BHO (Browser Helper Object) of internet browser (O2),
– It installs as a service to be launched each time the system (O23),(SS/SR).
– It installs as a program (O42),
– It creates to many registry keys ‘Software’
– It creates additional folders (O43),
– It moved to the Windows prefetcher folder (O45),
– It creates multiple files users (O61),
– It creates a Legacy pointing to a malware service, key in the registry (O64),
– It creates registry keys Tracing (O100),
– It creates keys from registry CLSID (O101),

0_Zhpdiag

[MD5.52C771FB97777DB4541FA2ED16E4468B] – (…) — C:\Program Files\Pine Tree\bin\utilPineTree.exe [472816] [PID.3276] [MD5.52C771FB97777DB4541FA2ED16E4468B] – (…) — C:\Program Files\Pine Tree\updatePineTree.exe [472816] [PID.3780] G2 – EXT: C:\Users\Win8\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcebcamlglhkapoamkiionjnboafedda [Pine Tree] O2 – BHO: Pine Tree 1.0.0.7 – {198925f1-49b9-47f6-8a88-7c1fd063c99a} . (.Pine Tree – Pine Tree.) — C:\Program Files\Pine Tree\PineTreebho.dll
O23 – Service: Update Pine Tree (Update Pine Tree) . (…) – C:\Program Files\Pine Tree\updatePineTree.exe
O23 – Service: Util Pine Tree (Util Pine Tree) . (…) – C:\Program Files\Pine Tree\bin\utilPineTree.exe
O42 – Logiciel: Pine Tree – (.Pine Tree.) [HKLM] — Pine Tree[HKCU\Software\Pine Tree] [HKLM\Software\Wow6432Node\Pine Tree] O43 – CFD: 18/06/2015 – 14:31:28 – [] —-D C:\Program Files\Pine Tree
O64 – Services: CurCS – 18/06/2014 – C:\Program Files\Pine Tree\updatePineTree.exe (Update PineTree) .(…) – LEGACY_UPDATE_PineTree
O64 – Services: CurCS – 18/06/2014 – C:\Program Files\Pine Tree\bin\utilPineTree.exe (Util PineTree) .(…) – LEGACY_UTIL_PineTree
SR – | Auto 18/06/2015 467696 | (Update Pine Tree) . (…) – C:\Program Files\Pine Tree\updatePineTree.exe
SR – | Auto 18/06/2015 467696 | (Util Pine Tree) . (…) – C:\Program Files\Pine Tree\bin\utilPineTree.exe
HKLM\SOFTWARE\Microsoft\Tracing\PineTree_RASAPI32
HKLM\SOFTWARE\Microsoft\Tracing\PineTree_RASMANCS
HKLM\SOFTWARE\Microsoft\Tracing\updatePineTree_RASAPI32
HKLM\SOFTWARE\Microsoft\Tracing\updatePineTree_RASMANCS
HKLM\SOFTWARE\Microsoft\Tracing\utilPineTree_RASAPI32
HKLM\SOFTWARE\Microsoft\Tracing\utilPineTree_RASMANCS[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pine Tree] [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{198925f1-49b9-47f6-8a88-7c1fd063c99a}] [HKLM\Software\Classes\CLSID\{198925f1-49b9-47f6-8a88-7c1fd063c99a}] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{198925f1-49b9-47f6-8a88-7c1fd063c99a}] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{198925f1-49b9-47f6-8a88-7c1fd063c99a}] [HKLM\SYSTEM\CurrentControlSet\Services\Update PineTree] [HKLM\SYSTEM\CurrentControlSet\Services\Util PineTree] [HKCU\Software\PineTree] [HKLM\Software\Wow6432Node\PineTree] C:\Program Files\Pine Tree
C:\Program Files (x86)\Pine Tree
C:\Program Files (x86)\Pine Tree\updatePineTree.exe
C:\Program Files (x86)\Pine Tree\bin\utilPineTree.exe
C:\Program Files (x86)\Pine Tree\PineTreeBHO.dll

0_Alias

PUP.Optional.???.A [ Malwarebytes Antimalware ] PUP.Optional.Sambreel [ Malwarebytes Antimalware ] Adware.???
Adware.SuperWeb
Adware.Sambreel

Remove_Software

– Remove extension of all installed browsers
– Remove the plugin of all installed browsers,
– Remove software in Windows Configuration Panel,

0_ZHPcleaner
Remove with ZHPcleaner
ZHPCleaner_EN2

0_Zhpdiag
Diagnose with ZHPDiag
ZHPDiag_2-300x220

2016-12-30T07:34:16+00:00 Categories: Adware, Polluteware, PUP, Tutorial|Tags: , , |Comments Off on PUP.Optional.PineTree