AdTraffic

Description: Spyware
Risk Level: High
Date of First Occurence: Monday, April 28, 2008
Software Developer: (unknown)
Brief Info: AdTraffic changes Internet Explorer hompage and redirects error and search pages.
Removal: This threat can be removed using "Spyware Terminator"

RIMUOVI SPYWARE »

Geographical Distribution of Threat "AdTraffic"

Threat Info

View All

Detected Items

  1. Detected Files: %PROGRAMFILES%\EE\Installers\GoogleToolbarInstaller4.0.0.002.msi MD5: AB00F515E50D2E176162F71F1DB7313A Size:1067520 %PROGRAMFILES%\EE\GoogleToolbarNotifier\3.1.807.1746\swg.dll MD5: AB32387A8F8C696A0739768B6B913714 Size:737776 %PROGRAMFILES%\EE\GoogleToolbarNotifier\3.1.807.1746\gtn.dll MD5: C287432FD819BB1E3A6AF2D3B73DF084 Size:130544 %PROGRAMFILES%\EE\GoogleToolbarNotifier\3.1.807.1746\gth.dll MD5: D638506636281B001EBB882DE41B91D1 Size:10736 %PROGRAMFILES%\EE\GoogleToolbarNotifier\GoogleToolbarNotifier.exe MD5: E616A6A6E91B0A86F2F6217CDE835FFE Size:68856 %PROGRAMFILES%\EE\Common\Google Updater\GoogleUpdaterService.exe MD5: 751C1D2CA2ABF4A9F5A6B8D7D45B907C Size:138168 %PROGRAMFILES%\EE\googletoolbar1user.exe MD5: 4B7C04F6A3D6DDBD5A0924558B3EA491 Size:52272 %PROGRAMFILES%\EE\GoogleToolbar1.dll MD5: 6319F2D4708DBCAE37CFA03DA10782C0 Size:2403392 %PROGRAMFILES%\EE\3.1\SelfEn.exe MD5: 679A905209DF60AC68130739B9322D27 Size:320512 %PROGRAMFILES%\EE\KIDS\MICROSOFT.ENCARTA.WEBCOMPANION.DLL MD5: 27DE896389E751259E841B07D916FF4E Size:47896 %PROGRAMFILES%\EE\KIDS\ENCSPLSH.DLL MD5: A98B5ED8F416A59EE5630364AD843839 Size:1637144 %PROGRAMFILES%\EE\ENCARTA\QMLISTUI.DLL MD5: 9E06D38C3407A9CAB1E37EB79788A774 Size:240408 %PROGRAMFILES%\EE\ENCARTA\MICROSOFT.ENCARTA.QUICKMATCHINTEROP.DLL MD5: 6F147F9D2E56AE5C6F5F3703A1D8715B Size:59160 %PROGRAMFILES%\EE\ENCARTA\GEOCOMP.DLL MD5: 37A466DB836DD2ABE3059DE28EB0CC4D Size:31080 %PROGRAMFILES%\EE\ENCARTA\ESBSI.EXE MD5: BD7C5C97F604AA202F159E2BABAD71EE Size:88856 %PROGRAMFILES%\EE\ENCARTA\ENCSPLSH.DLL MD5: F34DEEFEA47AA7241621D30EABA61FAB Size:420632 %PROGRAMFILES%\EE\ENCARTA\ENCSET.EXE MD5: 717BAC4A479BBBE95176EEF03B89349A Size:8704 %PROGRAMFILES%\EE\ENCARTA\EDICTRES.DLL MD5: F14EB095552BCDBB75BE9CF9B1B88478 Size:563992 %PROGRAMFILES%\EE\ENCARTA\EDICT.EXE MD5: 783F7F39A134AA5A9FE78A137980190B Size:351000 %PROGRAMFILES%\EE\ENCARTA\CONTENTUPDATEDOWNLOADER.EXE MD5: F61D017605BCCE71A0D4910885F26578 Size:224024 %PROGRAMFILES%\EE\L08EXLRD.msi MD5: 2C589715D6058EA5A9E9CEA50A63A668 Size:1362944 %PROGRAMFILES%\EE\INSTWI31.EXE MD5: 342F79337765760AD4E392EB67D5ED2C Size:2585872 %PROGRAMFILES%\EE\NHL2001\gfxpak.exe MD5: 0365ADAC70ECED4C8114C7C03C1CF1B1 Size:339968 %PROGRAMFILES%\EE\3.1\EEShell.dll MD5: 314FB58A4F802C434BA639F2A4B89A5C Size:519680 %PROGRAMFILES%\EE\Sierra Update\SuIT.dll MD5: 8F5F5FB3D1718D4D1D3B3D3B15DEB442 Size:57344 %PROGRAMFILES%\EE\Sierra Update\SuFR.dll MD5: 7C97F4FDAEADC68883AC8D234F460C70 Size:57344 %PROGRAMFILES%\EE\Sierra Update\SuES.dll MD5: 5A6F5BC7A6C91053936758BB08944F1B Size:57344 %PROGRAMFILES%\EE\Sierra Update\SuDE.dll MD5: 83711A2114C9881A906C9DF4904E8E26 Size:57344 %PROGRAMFILES%\EE\Sierra Update\SierraUp.exe MD5: B12268711A871A9D64019E9927B2A937 Size:466944 %PROGRAMFILES%\EE\Sierra Update\SierraPt.dll MD5: 26AA8ED0ED98EFCC615A5974BB6437A8 Size:630784 %PROGRAMFILES%\EE\Sierra Update\EESkin.dll MD5: 94DE77ECE8E10F2C84B3231183EB983D Size:327680
  2. Detected Files with variable Filenames: MD5: 38BC410F00193B585BA2DE0487BE44A4 Size: 1082864 %PROGRAMFILES%\EE\GoogleToolbarNotifier\1.2.1128.5462\swg-3.1.807.1746\SearchWithGoogleUpdate.exe %PROGRAMFILES%\EE\GoogleToolbarNotifier\1.0.720.3640\swg-3.1.807.1746\SearchWithGoogleUpdate.exe MD5: F29A80F607703CA1FC5D25993CC7FEDA Size: 86016 %PROGRAMFILES%\EE\KIDS\MSSPELL3.DLL %PROGRAMFILES%\EE\ENCARTA\MSSPELL3.DLL MD5: CD1CBFB782C6394BB0043FAD29840613 Size: 1171456 %PROGRAMFILES%\EE\KIDS\MOBB200.DLL %PROGRAMFILES%\EE\ENCARTA\MOBB200.DLL MD5: 9F5409CA86B901CC98812AF81C34C016 Size: 27416 %PROGRAMFILES%\EE\KIDS\MICROSOFT.ENCARTA.UTILITY.DLL %PROGRAMFILES%\EE\ENCARTA\MICROSOFT.ENCARTA.UTILITY.DLL MD5: 4BFF48B4A9CB8473D8460B913FAA78D1 Size: 142104 %PROGRAMFILES%\EE\KIDS\MICROSOFT.ENCARTA.SEARCH.DLL %PROGRAMFILES%\EE\ENCARTA\MICROSOFT.ENCARTA.SEARCH.DLL MD5: C60D053481208DB0C0ADAD43DC27D466 Size: 39704 %PROGRAMFILES%\EE\KIDS\MICROSOFT.ENCARTA.FGSEARCH.DLL %PROGRAMFILES%\EE\ENCARTA\MICROSOFT.ENCARTA.FGSEARCH.DLL MD5: 3EA06205DA970083E6AE90D7C57BFDDD Size: 60184 %PROGRAMFILES%\EE\KIDS\MICROSOFT.ENCARTA.BTREE.DLL %PROGRAMFILES%\EE\ENCARTA\MICROSOFT.ENCARTA.BTREE.DLL MD5: BCD60A516B9FC89697426C7319E41E78 Size: 310040 %PROGRAMFILES%\EE\KIDS\ENCARTAU.DLL %PROGRAMFILES%\EE\ENCARTA\ENCARTAU.DLL MD5: D9107C469F1E7C30F39E1BF79513D528 Size: 8162072 %PROGRAMFILES%\EE\KIDS\ENCARTAR.DLL %PROGRAMFILES%\EE\ENCARTA\ENCARTAR.DLL MD5: F9CCA4C67735D99A3FC4C3330F2B957D Size: 3205912 %PROGRAMFILES%\EE\KIDS\ENCARTA.EXE %PROGRAMFILES%\EE\ENCARTA\ENCARTA.EXE MD5: 1FF80EBE5082A13D02253B415AA26F60 Size: 33792 %PROGRAMFILES%\EE\KIDS\CUSTSAT.DLL %PROGRAMFILES%\EE\ENCARTA\CUSTSAT.DLL

Detecting items list:

  1. Files by Name %PROGRAMFILES%\EE\ee.exe %PROGRAMFILES%\EE\EEF.dll %PROGRAMFILES%\EE\eeu.exe %PROGRAMFILES%\EE\SEF.dll
  2. Files by Directories %PROGRAMFILES%\EE
  3. Files by CLSID or Name CLSID=0F9C37FC-72C6-4D7C-887E-21FB58DA7A41 CLSID=40CE5A28-D816-4F52-9777-70054C35425A CLSID=17808054-5679-46A5-B2F2-54496900332B CLSID=9516919A-9D32-4B17-BD14-2CE488599F65 CLSID=DC7152CF-16A1-4F9A-A7AF-A4E0911034E1 CLSID=A07F8651-D428-4B89-B722-926A14A31FFB
  4. Registry Keys HKCU\Software\EEI

« Go to Software Database