SmileyCentral
|
Description:
|
Adware
|
|
Risk Level:
|
Low
|
|
Date of First Occurence:
|
Monday, April 14, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Adware
Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
ENTFERNEN SPYWARE »
Geographical Distribution of Threat "SmileyCentral"
Threat Info
View All
Detected Items
- Detected Files:
%PROGRAMFILES%\funwebproducts\installr\1.bin\f3ezsetp.dll
MD5: A76DE3A3D9DFEBC631F6AD9495D9617C Size:77824
MD5: 556A17EDDBFE43A0BBD3A515073EE36B Size:90112
%PROGRAMFILES%\FunWebProducts\Installr\Cache\003913C1.exe
MD5: E69ABF192D831DFD604CE6F463E07A14 Size:173
%PROGRAMFILES%\FunWebProducts\Installr\Cache\008C32EE.exe
MD5: 80B2E446AF8D80BC2FE7CD90543718C3 Size:1604000
- Detected Files with variable Filenames:
MD5: F3ED25E48AD95EBAE7C5003410F5595F Size: 102487
%PROGRAMFILES%\funwebproducts\installr\1.bin\f3ezsetp.dll
%PROGRAMFILES%\FunWebProducts\Installr\2.bin\F3EZSETP.DLL
%PROGRAMFILES%\FunWebProducts\Installr\6.bin\F3EZSETP.DLL
%PROGRAMFILES%\FunWebProducts\Installr\9.bin\F3EZSETP.DLL
%PROGRAMFILES%\FunWebProducts\Installr\3.bin\F3EZSETP.DLL
MD5: 94A589AC61BA2042176129893E22EB41 Size: 2441399
%PROGRAMFILES%\FunWebProducts\Installr\Cache\002B3B81.exe
%PROGRAMFILES%\FunWebProducts\Installr\Cache\0014D7FF.exe
%PROGRAMFILES%\FunWebProducts\Installr\Cache\01F7EC65.exe
%PROGRAMFILES%\FunWebProducts\Installr\Cache\11524017.exe
%PROGRAMFILES%\FunWebProducts\Installr\Cache\0010CFF4.exe
Detecting items list:
- Files by Name
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3CJPEG.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3DTACTL.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3HISTSW.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3HTMLMU.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3HTTPCT.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3IMSTUB.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3POPSWT.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3PSSAVR.SCR
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3REPROX.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3RESTUB.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3SCHMON.EXE
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3SCRCTR.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3SHLLVW.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\F3WPHOOK.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\M3HTML.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\M3IDLE.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\M3OUTLCN.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\M3PLUGIN.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\M3SKIN.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\M3SKPLAY.EXE
%PROGRAMFILES%\MyWebSearch\bar\2.bin\MWSBAR.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\MWSOEMON.EXE
%PROGRAMFILES%\MyWebSearch\bar\2.bin\MWSOEPLG.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\MWSOESTB.DLL
%PROGRAMFILES%\MyWebSearch\bar\2.bin\NPMYWEBS.DLL
- Files by Directories
%PROGRAMFILES%\FunWebProducts
%PROGRAMFILES%\MyWebSearch
- Files by CLSID or Name
CLSID=0F8ECF4F-3646-4C3A-8881-8E138FFCAF70
CLSID=25560540-9571-4D7B-9389-0F166788785A
CLSID=2EFF3CF7-99C1-4c29-BC2B-68E057E22340
CLSID=3DC201FB-E9C9-499C-A11F-23C360D7C3F8
CLSID=63D0ED2C-B45B-4458-8B3B-60C69BBBD83C
CLSID=8E6F1832-9607-4440-8530-13BE7C4B1D14
CLSID=98D9753D-D73B-42D5-8C85-4469CDA897AB
CLSID=B813095C-81C0-4E40-AA14-67520372B987
CLSID=C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7
- Registry Keys
HKCR\FunWebProducts.DataControl
HKCR\FunWebProducts.DataControl.1
HKCR\FunWebProducts.HistoryKillerScheduler
HKCR\FunWebProducts.HistoryKillerScheduler.1
HKCR\FunWebProducts.HistorySwatterControlBar
HKCR\FunWebProducts.HistorySwatterControlBar.1
HKCR\FunWebProducts.HTMLMenu
HKCR\FunWebProducts.HTMLMenu.1
HKCR\FunWebProducts.HTMLMenu.2
HKCR\FunWebProducts.IECookiesManager
HKCR\FunWebProducts.IECookiesManager.1
HKCR\FunWebProducts.KillerObjManager
HKCR\FunWebProducts.KillerObjManager.1
HKCR\FunWebProducts.PopSwatterBarButton
HKCR\FunWebProducts.PopSwatterBarButton.1
HKCR\FunWebProducts.PopSwatterSettingsControl
HKCR\FunWebProducts.PopSwatterSettingsControl.1
HKCR\FunWebProducts.ShellViewControl
HKCR\FunWebProducts.ShellViewControl.1
HKCU\Software\FunWebProducts
HKCU\Software\FunWebProducts\Settings
HKLM\SOFTWARE\Fun Web Products
«
Go to Software Database