Web Explorer

Description: Spyware
Risk Level: Low
Date of First Occurence: Wednesday, June 18, 2008
Software Developer: (unknown)
Brief Info: Spyware is computer software that is installed surreptitiously on a personal computer to intercept or take partial control over the user's interaction with the computer, without the user's informed consent.
Removal: This threat can be removed using "Spyware Terminator"

SUPPRIMER SPYWARE »

Geographical Distribution of Threat "Web Explorer"

Threat Info

View All

Detected Items

  1. Detected Files: %ALLUSERS_APPDATA%\WEL\xcacls.exe MD5: 78FD41A1E1D2CF1C7657CF80BDDE1164 Size:45056 %ALLUSERS_APPDATA%\WEL\WELUninstaller.exe MD5: C1FDC9D5162F2632A6C127F9236C948C Size:978944 MD5: D640AABE62648CF87A4B661A2EC09472 Size:430080 %ALLUSERS_APPDATA%\WEL\WEL.exe MD5: 48624596C7F3B3383FB7F7EB7DCF9713 Size:2551808 MD5: 151EF79150695FDF201489AF54FA84DE Size:2514944 %ALLUSERS_APPDATA%\WEL\EML.exe MD5: 484C4562BA2699CD935DB2935BC95D32 Size:69632 %ALLUSERS_APPDATA%\WEL\WEL.dll MD5: CB61A496C7301FD51A224586AB90DE22 Size:229376 MD5: 2A4B6DF24C19629D279797C4ACF6A6CA Size:294912
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %ALLUSERS_APPDATA%\WEL\EML.exe %ALLUSERS_APPDATA%\WEL\WEL.chm %ALLUSERS_APPDATA%\WEL\WEL.dll %ALLUSERS_APPDATA%\WEL\WEL.exe %ALLUSERS_APPDATA%\WEL\WELUninstaller.exe %ALLUSERS_APPDATA%\WEL\Reps\TestEmail.xml %ALLUSERS_APPDATA%\WEL\Reps\WELAllDayWELWeb.xsl %ALLUSERS_APPDATA%\WEL\Reps\WELbk.bmp %ALLUSERS_APPDATA%\WEL\Reps\WELErrors.txt %ALLUSERS_APPDATA%\WEL\Reps\WELWeb.xsl
  2. Files by Directories %ALLUSERS_APPDATA%\WEL
  3. Registry Keys HKLM\SOFTWARE\WEL
  4. Registry Values HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=WEL

« Go to Software Database