TeoSoft

Description: Adware
Risk Level: Low
Date of First Occurence: Tuesday, June 03, 2008
Software Developer: (unknown)
Brief Info: Adware Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
Removal: This threat can be removed using "Spyware Terminator"

SUPPRIMER SPYWARE »

Geographical Distribution of Threat "TeoSoft"

Threat Info

View All

Detected Items

  1. Detected Files: %PROGRAMFILES%\TeoSoft.com\launcher.exe MD5: ACB545B720C85C8589FEE7140487DEC9 Size:122880 MD5: 3E168FB0F61793C1E4E0F6BA4C88764D Size:122880 MD5: 5D09B489BE5A12F9F6A35B9ECC95C9B7 Size:118784 MD5: 110F96124B0327135F9FDDD038B6065E Size:122880 MD5: 0826A7B726A2889F450DE47520D90C24 Size:122880 %PROGRAMFILES%\TeoSoft.com\Installer.exe MD5: 2FF98A2648B4656EC55BA3BD2E87C9DF Size:200704 MD5: 52BE88AB0954C3D040339C2BD2C40E23 Size:200704 MD5: 9330052BC8DFD865C654F0E9713D331E Size:122880 MD5: 26F40F036EB2CE20DFF577827013C980 Size:200704 MD5: 30DB18619C2F7C1FDE2F6676BA4A1352 Size:200704 MD5: A41854F4BDA472E83A0722E0FB3BBBE7 Size:126976 %PROGRAMFILES%\TeoSoft.com\Temp\Installs\setup_from_web_23_3_9_7.exe MD5: 02B1861EA61104EA934F799126F45606 Size:1406600 %PROGRAMFILES%\TeoSoft.com\secretdrive.exe MD5: 2749FEBCC8F228D9CD271FF3297AF60C Size:266240 MD5: 3782F4A227C635BE68057A25B284B219 Size:266240 %PROGRAMFILES%\TeoSoft.com\UNWISE.EXE MD5: 973567B98CDFC147DF4E60471D9DF072 Size:153088 %PROGRAMFILES%\TeoSoft.com\register.exe MD5: 1D9441027D6FB54F69290D70EA537C27 Size:167936 MD5: 882CDC25B35747BA96691E7FE532A064 Size:172032 %PROGRAMFILES%\TeoSoft.com\Hide.exe MD5: 9DBE00C0D994E1376146728BA9F3BA91 Size:118784 MD5: C82A7E5148088024917F0B4688359E61 Size:118784 %PROGRAMFILES%\TeoSoft.com\cs10.exe MD5: 53AE5CE50266B87B51EBF81CC02E2D66 Size:577536 MD5: 1E335165367C2F94BBB757C060936100 Size:565248 %PROGRAMFILES%\TEOSOFT.COM\UPDATE.EXE MD5: 6FC1B4668ACEBCACCD06AC803F120141 Size:208896 MD5: DB61FF61978FDE1EB2BA05E4745DA25D Size:212992 %PROGRAMFILES%\TeoSoft.com\trayagent.exe MD5: B1D93B3474B64F8DE568C0203AB956E1 Size:172032 MD5: 347A43AE2B65506B155FCCF2881319A2 Size:167936 MD5: 5F00D066C64C8FBB4630BB2EB920EF09 Size:167936 %PROGRAMFILES%\TeoSoft.com\update.exe MD5: 6808A80150293E8413C43FD91BA63065 Size:208896 %PROGRAMFILES%\TeoSoft.com\Temp\Installs\setup_from_web_22_15_29_9.exe MD5: 3E568C7221B60EA1E99D444E0C51CA52 Size:1406600
  2. Detected Files with variable Filenames: MD5: 98D49BC678963BBC1B08C4BDC7A93BE2 Size: 1469064 %PROGRAMFILES%\TeoSoft.com\Temp\Installs\setup_from_web_16_11_26_2.exe %PROGRAMFILES%\TeoSoft.com\Temp\Installs\setup_from_web_9_56_10_4.exe

Detecting items list:

  1. Files by Name %PROGRAMFILES%\TeoSoft.com\cs10.exe %PROGRAMFILES%\TeoSoft.com\Hide.exe %PROGRAMFILES%\TeoSoft.com\Installer.exe %PROGRAMFILES%\TeoSoft.com\launcher.exe %PROGRAMFILES%\TeoSoft.com\register.exe %PROGRAMFILES%\TeoSoft.com\secretdrive.exe %PROGRAMFILES%\TeoSoft.com\trayagent.exe %PROGRAMFILES%\TeoSoft.com\UNWISE.EXE %PROGRAMFILES%\TeoSoft.com\update.exe %PROGRAMFILES%\TeoSoft.com\Temp\Installs\setup_from_web_11_14_29_8.exe %START_PROGRAMS%\TeoSoft.com\Clean Space 10.lnk %START_PROGRAMS%\TeoSoft.com\Online Update.lnk %START_PROGRAMS%\TeoSoft.com\Secret drive.lnk %START_PROGRAMS%\TeoSoft.com\TeoProxy - anonymous Internet surfing.lnk %START_PROGRAMS%\TeoSoft.com\More\How to run this software invisibly on this PC.lnk %START_PROGRAMS%\TeoSoft.com\More\Register software.lnk %START_PROGRAMS%\TeoSoft.com\More\Software agreement and Privacy Policy.lnk %START_PROGRAMS%\TeoSoft.com\More\Visit web site for news and support.lnk %DESKTOP%\TeoProxy - anonymous Internet surfing.lnk %DESKTOP%\Clean Space 10.lnk
  2. Files by Directories %PROGRAMFILES%\TeoSoft.com %START_PROGRAMS%\TeoSoft.com
  3. Registry Keys HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TeoSoft.com
  4. Registry Values HKCU\Software\Microsoft\Windows\CurrentVersion\Run ValueName=Clean Space 10 trayagent HKCU\Software\Microsoft\Windows\CurrentVersion\Run ValueName=TeoSoft.com Online Update

« Go to Software Database