Parent Tools for AIM
|
Description:
|
Spyware
|
|
Risk Level:
|
Low
|
|
Date of First Occurence:
|
Tuesday, June 10, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Spyware is computer software that is installed surreptitiously on a personal computer to intercept or take partial control over the user's interaction with the computer, without the user's informed consent.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
ELIMINAR SPYWARE »
Geographical Distribution of Threat "Parent Tools for AIM"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\ptrun32\wspoolsv.exe
MD5: 05486A24A4B8E367BA0607C69A7EEE2A Size:65536
%SYSDIR%\ptrun32\unins000.exe
MD5: 6C5B161F15FB12C51BBFC445F753A602 Size:640967
%SYSDIR%\ptrun32\ptrun32.exe
MD5: 0E37537BAE9DC8B501D62DE3089960B9 Size:905216
%SYSDIR%\ptrun32\ptr32w.exe
MD5: F5955165CF53F0C74D8E6B561114C1CD Size:65536
%SYSDIR%\ptrun32\PTUpgrade.exe
MD5: 535D3393A3911AA4193A0A8D637F21C0 Size:57344
- Detected Files with variable Filenames:
Detecting items list:
- Files by Name
%SYSDIR%\ptrun32\acl.bat
%SYSDIR%\ptrun32\PTHelp.cnt
%SYSDIR%\ptrun32\PTHELP.HLP
%SYSDIR%\ptrun32\ptr32w.exe
%SYSDIR%\ptrun32\ptrun32.exe
%SYSDIR%\ptrun32\rtc.dat
%SYSDIR%\ptrun32\unins000.dat
%SYSDIR%\ptrun32\unins000.exe
%SYSDIR%\ptrun32\wspoolsv.exe
%SystemDiskRoot%\Documents and Settings\All Users\Desktop\Parent Tools.lnk
%START_PROGRAMSALL%\Ignite Software\Parent Tools for AIM.lnk
%START_PROGRAMSALL%\Ignite Software\Parent Tools Help.lnk
- Files by Directories
%SYSDIR%\ptrun32
- Registry Keys
HKLM\SOFTWARE\Ignite Software\Parent Tools AIM
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Httpdrv
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Parent Tools for AIM_is1
- Registry Values
HKCU\Software\Microsoft\Windows\CurrentVersion\Run ValueName=PTRUN32
«
Go to Software Database