7FaSSt

Description: Spyware
Risk Level: High
Date of First Occurence: Wednesday, May 14, 2008
Software Developer: 7Search.com
Brief Info: 7FaSST is a Browser Helper Object. This means that an instance of the application will run each time you start Internet Explorer.
Removal: This threat can be removed using "Spyware Terminator"

SCAN & REMOVE NOW »

Geographical Distribution of Threat "7FaSSt"

Threat Info

View All

Detected Items

  1. Detected Files: %PROGRAMFILES%\fs\pdfcr\FPC_Uninstall.exe MD5: 47954C3355C5435AE9E0377E5669FC41 Size:81920 %PROGRAMFILES%\FS\FoxitReader\Foxit Reader.exe MD5: 654AF68E9819729B4EB2DCEB8511AF00 Size:4037888 %PROGRAMFILES%\fs\SHN_Live\system\vtext.exe MD5: C96729AB5F29648FF06603C0C0ABC554 Size:405504 %PROGRAMFILES%\fs\SHN_Live\system\vdib.exe MD5: 461C7B0A38DCFFADB07AF4FD00DA5311 Size:204800 %PROGRAMFILES%\fs\SHN_Live\system\tcp.dll MD5: 562E634E114A3B414860CDF6D757224C Size:7680 %PROGRAMFILES%\fs\SHN_Live\system\sc.exe MD5: E7E8F0627A33BE9AD2B085BF94CE22B1 Size:54032 %PROGRAMFILES%\fs\SHN_Live\system\reg.exe MD5: 31E1B2FE1F1FE4F418439BF1EC991EEF Size:95744 %PROGRAMFILES%\fs\SHN_Live\system\msvcrt.dll MD5: 055B02D711CDEDB8C5997274C4E99CB8 Size:295000 %PROGRAMFILES%\fs\SHN_Live\system\mfc42.dll MD5: A430FAAE0A4DB973500B6C882F8848E5 Size:995383 %PROGRAMFILES%\fs\SHN_Live\system\meditor.dll MD5: 4406CE57E069CF8F0D8C56692C53102A Size:88576 %PROGRAMFILES%\fs\SHN_Live\system\maudio.dll MD5: 095FA8592ABD228F2E649CEA3AF7833E Size:61440 %PROGRAMFILES%\fs\SHN_Live\system\magicservice.exe MD5: 3F672E04FFF2D93AEB77F0FFF9C77EF2 Size:20480 %PROGRAMFILES%\fs\SHN_Live\system\magicoa.dll MD5: 67683E1742108866968BE9E1064BBE98 Size:516096 %PROGRAMFILES%\fs\SHN_Live\system\magic.exe MD5: D7F948B52256B8ABBE3D01B0AAE8157B Size:167056 %PROGRAMFILES%\fs\SHN_Live\system\ipc.dll MD5: 4F6C7CBD770EB38BDDE0B06FA034D7ED Size:10240 %PROGRAMFILES%\fs\SHN_Live\system\instupd.exe MD5: 62BD373D4313D5BD0949DFCA1B6E84C9 Size:196608 %PROGRAMFILES%\fs\SHN_Live\system\graph.dll MD5: E57D84708A304D9734CC15DF8CEFEE7C Size:45056 %PROGRAMFILES%\fs\SHN_Live\system\fsw.dll MD5: B2CB875F5FACDFD891F305EC4358161B Size:57344 %PROGRAMFILES%\fs\SHN_Live\system\fsv.dll MD5: E9724881C2322E5D14E2291811105D3E Size:65536 %PROGRAMFILES%\fs\SHN_Live\system\fsu.dll MD5: 10AFCE5CE25EBB268A565D255ABA262C Size:94208 %PROGRAMFILES%\fs\SHN_Live\system\fsr.dll MD5: F38601B99FD2B5D5B1110B65E8949823 Size:14848 %PROGRAMFILES%\fs\SHN_Live\system\fsf.dll MD5: ECCC9C62A99F5A6E2FCBF3EC13700EC7 Size:90112 %PROGRAMFILES%\fs\SHN_Live\system\fse.dll MD5: A1B414ADAD4995D297511D8120F5BBAD Size:307200 %PROGRAMFILES%\fs\SHN_Live\system\fsd.dll MD5: 6D9A40013E0ADBE60A7B8CEF049E00E8 Size:233472 %PROGRAMFILES%\fs\SHN_Live\system\fsa.dll MD5: A15DACDC25686DBB0845542CF019D248 Size:13312 %PROGRAMFILES%\fs\SHN_Live\system\dzprog32.exe MD5: F47114B5FA10E4B219163EABCBDF3686 Size:32768 %PROGRAMFILES%\fs\SHN_Live\system\dzip32.dll MD5: 49BA4D895140CFE64CBAB8582BFEF492 Size:131072 %PROGRAMFILES%\fs\SHN_Live\system\dzip.dll MD5: 213BD07FB2298585F15515054EE812EC Size:17408 %PROGRAMFILES%\fs\SHN_Live\system\dunzip32.dll MD5: 93D15B41E9301803524AB1F286074C19 Size:110592 %PROGRAMFILES%\fs\SHN_Live\system\cfx2032.dll MD5: 256334C52FA0E84AB44CE102AE1B0050 Size:317440 %PROGRAMFILES%\fs\FSRegister.exe MD5: 7F9A9FB4541841B2AB3D1616242CA26B Size:16384 %PROGRAMFILES%\fs\uninstx.exe MD5: A6A245AD877DC75B7F31B3905EC80837 Size:17408 %PROGRAMFILES%\FS\7Search.dll MD5: C3E0338399152E141152020DB1687876 Size:159744
  2. Detected Files with variable Filenames: MD5: A5A0B8116B38A2994896BF7EFC330F9E Size: 553984 %PROGRAMFILES%\fs\SHN_Live\system\mimage.dll %PROGRAMFILES%\fs\SHN_Live\system\fsp.dll

Detecting items list:

  1. Files by Name %programfiles%\fs\fsgetuserid.exe %programfiles%\fs\fsregister3.exe %programfiles%\fs\uninstx.exe %programfiles%\fs\7search.dll %sysdir%\7search.dll
  2. Files by Directories %programfiles%\fs
  3. Files by CLSID or Name CLSID=06dfedaa-6196-11d5-bfc8-00508b4a487d CLSID=3277cd27-4001-4ef8-9d96-c6ca745ac2f9 CLSID=37686c62-d497-42e3-baab-78d89a74e151 CLSID=669695bc-a811-4a9d-8cdf-ba8c795f261e CLSID=b8875bfe-b021-11d4-bfa8-00508b8e9bd3 CLSID=38493f7f-2922-4c6c-9a9a-8da2c940d0ee
  4. Registry Keys HKLM\software\microsoft\windows\currentversion\uninstall\7fasstsearch

« Go to Software Database