CoolWebSearch

Description: Adware
Risk Level: High
Date of First Occurence: Monday, April 14, 2008
Software Developer: CoolWebSearch.com
Brief Info: CoolWebSearch is a Browser Helper Object HomePage and SearchPage hijacker and host file hijacker. CoolWebSearch comes in many variants and as of rescent hijacks more than just the internet browser.
Removal: This threat can be removed using "Spyware Terminator"

REMOVER SPYWARE »

Geographical Distribution of Threat "CoolWebSearch"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\image.dll MD5: 103B776B3E3CD44A2A0674FB605F60A2 Size:208896 MD5: 88A77D510D57B1B78EA3292FE827A7B6 Size:1110016 MD5: 3EC6D35204D6240E9A66B2ED20E8FB83 Size:86016 MD5: 1F1679261941D342C293460EA09800E0 Size:110592 MD5: D9FD0CFEA0DC36DB9AE8FBCACD4BC8E5 Size:208896 MD5: 85B8376626A2547EEBDE370C16480E4E Size:644608 MD5: ABCB09DBFAF01FCE96E7BB9CFD5E5E56 Size:131072 MD5: 285C00453C0A9552F830F8281D5FECA6 Size:108957 MD5: 31565FFCA9C7BEA5D208F7BC47C964CA Size:61440 MD5: 85F6CA948A705E48CADC60F6F88480B7 Size:169 MD5: A6E6FF3A87D012B5B81C7F0AA19370BF Size:154 %SYSDIR%\addbc32.dll MD5: 9F4F1BEC4DB38E42C75E22E3F7F8DBDB Size:93763 MD5: CEC08EA7B16436F194BEE3B4EC8FE2C4 Size:89861 %WINDIR%\javaei.dll MD5: 918D70F1809BB092BEB6661F4C13020D Size:125399
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %DESKTOP%\asd3.dll %SysDir%\image.dll %SysDir%\msew\msew32.dll %SysDir%\msew\msiesh.dll %SysDir%\msew\mssearch.dll %DESKTOP%\asd3.dll %DESKTOP%\tbar.exe %windir%\javaei.dll %FAVORITES%\!!! exclusive youngest porn !!!.url %FAVORITES%\~ fully categories porn database. enjoy!.url %FAVORITES%\~ new porn pics everyday.url %FAVORITES%\censored youngest porn.url %FAVORITES%\free hidden cams world.url %FAVORITES%\free spy cam.url %FAVORITES%\free web cams chats.url %FAVORITES%\free xxx pics * movies.url %FAVORITES%\fresh xxx pics * movie.url %FAVORITES%\get this 4 free.url %FAVORITES%\super xxx pics.url %FAVORITES%\young masha sucking huge dick until her lips teared open.url %sysdir%\image.dll %sysdir%\msew\msew32.dll %sysdir%\msew\msiesh.dll %sysdir%\msew\mssearch.dll %sysdir%\system32\msqsb.dll %sysdir%\system32\seqsb.dll %SysDir%\addbc32.dll
  2. Files by CLSID or Name CLSID=C57C2283-6E09-A0F3-2CC1-E4ED822B5340 CLSID=064D7349-A77F-B038-ADF3-F789A75B907C CLSID=A30E09EF-197E-B658-38C6-C38B368232DA

« Go to Software Database