Ezula.TopText

Description: Adware
Risk Level: High
Date of First Occurence: Friday, May 09, 2008
Software Developer: eZula, Inc.
Brief Info: Ezula/TopText is a browser hijacker that will alter all pages viewed in Internet Explorer by adding extra links to words and phrases targeted by advertisers.
Removal: This threat can be removed using "Spyware Terminator"

RIMUOVI SPYWARE »

Geographical Distribution of Threat "Ezula.TopText"

Threat Info

View All

Detected Items

  1. Detected Files: %PROGRAMFILES%\eZula\eabh.dll MD5: 6645D467BED01872034FAFEB416EB586 Size:471110 MD5: A728A5A21C0F346862409A3148760C64 Size:442438 MD5: E0A620F51971128C05303E1DA6905AEA Size:462918 MD5: 208C757EB47327BB0DDBD5C8FD84FB96 Size:442438 MD5: 5B3EA549A4E363DD78B05F2B62096503 Size:471110 MD5: 28760235E731E3C85DD6A5BC0DC0F6D6 Size:471110 MD5: D85F7E16D27BC6466F4A9946402597BC Size:442438 MD5: 4E9C3BAD3D924F9F9E0F2EEFD51D7E21 Size:462918 MD5: 579E645FF5BB39F9434B8C46BF35CDCA Size:442438 MD5: 5E66DC4BFEF8266165FEA3331DBD7CF1 Size:442438 MD5: 280CC7EF7086A5BD45FFF3845C6A61F5 Size:471110 MD5: 5F70683FBBB6955A9D7E97CB39E291E0 Size:462918 and more.... %PROGRAMFILES%\eZula\eabh.dll MD5: 5688AA4F31CBBDB10A3AABB6D4D3C571 Size:471110 MD5: 02F0B2EF1621943D98610B2C1C0803E4 Size:446534 MD5: 1959066BC60B9420562C49D81CB5EAF6 Size:471110 MD5: 2703EA031800C81A9DED32CEFFB7FA69 Size:462918 MD5: 6EEE0599A17AA6EA264EAE4DC5B3403A Size:442438 MD5: 6A575BD5418F2F926A1B529EC7D81238 Size:471110 MD5: DCA8DD093308CC7CD3F900C6ADA16A2D Size:471110 MD5: 534158D982D6DE8B6068D4CD2B88AB21 Size:471110 MD5: 94E641085D34D809D25B81C42EB96E40 Size:446534 MD5: 202831916646490B91C5DCB06D1C13D3 Size:442438 MD5: E6DF7AF403AB3A295C17DDF99795330B Size:446534
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %START_PROGRAMS%\toptext ilookup\help.url %START_PROGRAMS%\toptext ilookup\my keywords.lnk %START_PROGRAMS%\toptext ilookup\my preferences.lnk %START_PROGRAMS%\toptext ilookup\readme.url %START_PROGRAMS%\toptext ilookup\toptext button show - hide.lnk %ProgramFiles%\eZula\CHCON.dll %ProgramFiles%\eZula\eabh.dll %START_PROGRAMS%\toptext ilookup\feedback.url
  2. Files by Directories %START_PROGRAMS%\toptext ilookup
  3. Files by CLSID or Name CLSID=3D7247E8-5DB8-11D4-8A72-0050DA2EE1BE

« Go to Software Database