Adware.MyWebSearch.az
|
Description:
|
Adware
|
|
Risk Level:
|
Critical
|
|
Date of First Occurence:
|
Monday, April 14, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Adware
Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "Adware.MyWebSearch.az"
Threat Info
View All
Detected Items
- Detected Files:
%PROGRAMFILES%\AskTBar\bar\1.bin\ASKTBAR.DLL
MD5: 37AC510F81CBD57F4D8B73C564516213 Size:237568
MD5: 59DBFE16AA20144CB11E7FC8B2D21EAA Size:245760
MD5: 59DBFE16AA20144CB11E7FC8B2D21EAA
- Detected Files with variable Filenames:
MD5: 30E4C0A012AE80E8479523A8D9A3217F Size: 57344
%PROGRAMFILES%\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
%PROGRAMFILES%\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
%PROGRAMFILES%\AskTBar\SrchAstt\3.bin\A5SRCHAS.DLL
%PROGRAMFILES%\AskTBar\SrchAstt\4.bin\A5SRCHAS.DLL
%PROGRAMFILES%\AskTBar\SrchAstt\10.bin\A5SRCHAS.DLL
%SystemDiskRoot%\System Volume Information\_restore{03F610A5-17ED-4F43-A985-7D9B4A9C3C3D}\RP215\A0055037.DLL
%PROGRAMFILES%\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL.ren
%SystemDiskRoot%\System Volume Information\_restore{62E7BFDF-AAFF-455D-BC15-A019BDFA4F14}\RP124\A0020775.DLL
G:\Archivos de programa\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
%SystemDiskRoot%\System Volume Information\_restore{5D527826-05BD-4A83-8416-28ACDDA14001}\RP161\A0073443.DLL
%PROGRAMFILES%\AskTBar\SrchAstt\7.bin\A5SRCHAS.DLL
and next 49 variations.
MD5: 59DBFE16AA20144CB11E7FC8B2D21EAA Size: 245760
%PROGRAMFILES%\AskTBar\bar\1.bin\ASKTBAR.DLL
%PROGRAMFILES%\AskTBar\bar\9.bin\ASKTBAR.DLL
%PROGRAMFILES%\Uninstall Ask Toolbar.dll
%PROGRAMFILES%\AskTBar\bar\2.bin\ASKTBAR.DLL
%PROGRAMFILES%\AskTBar\bar\1.bin\ASKTBAR.DLL.ren
%PROGRAMFILES%\AskTBar\bar\5.bin\ASKTBAR.DLL
%PROGRAMFILES%\AskTBar\bar\7.bin\ASKTBAR.DLL
%PROGRAMFILES%\AskTBar\bar\3.bin\ASKTBAR.DLL
%SystemDiskRoot%\System Volume Information\_restore{24778AD5-E1E8-4BFE-9A53-23D94CE1D5AF}\RP36\A0007361.DLL
%WINDIR%\TEMP\tmp00002a1d\tmp00000082
%PROGRAMFILES%\AskTBar\bar\a.bin\ASKTBAR.DLL
and next 5 variations.
MD5: 69A3EB924678BB23047E6248648E6534 Size: 118784
%PROGRAMFILES%\AskTBar\bar\3.bin\A5POPSWT.DLL
%PROGRAMFILES%\AskTBar\bar\1.bin\A5POPSWT.DLL
%SystemDiskRoot%\Windows.old.001\Program Files\AskTBar\bar\1.bin\A5POPSWT.DLL
%SystemDiskRoot%\Windows.old.000\Program Files\AskTBar\bar\1.bin\A5POPSWT.DLL
%PROGRAMFILES%\AskTBar\bar\2.bin\A5POPSWT.DLL
%PROGRAMFILES%\AskTBar\bar\4.bin\A5POPSWT.DLL
%SystemDiskRoot%\System Volume Information\_restore{16433FEA-F9F7-4745-ABF2-13C1202916C6}\RP106\A0018980.DLL
%SystemDiskRoot%\System Volume Information\_restore{269BA34A-00D3-4E86-A96A-0B5006878130}\RP84\A0007073.DLL
%SystemDiskRoot%\System Volume Information\_restore{AB349E2A-44CB-4BC8-847B-45619F3C0B27}\RP79\A0039119.DLL
%SystemDiskRoot%\System Volume Information\_restore{4F2E240E-8F41-4D4E-B31F-3D0F9A19503F}\RP89\A0116178.DLL
%SystemDiskRoot%\System Volume Information\_restore{E61AC4F1-5528-47EB-BCF9-291C23BDB67A}\RP438\A0080394.DLL
and next 19 variations.
Detecting items list:
- Files by Name
%PROGRAMFILES%\AskTBar\bar\1.bin\A5POPSWT.DLL
%PROGRAMFILES%\AskTBar\bar\1.bin\ASKTBAR.DLL
%PROGRAMFILES%\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
- Files by MD5
MD5: 69A3EB924678BB23047E6248648E6534 Size: 118784
MD5: 59DBFE16AA20144CB11E7FC8B2D21EAA Size: 245760
MD5: 30E4C0A012AE80E8479523A8D9A3217F Size: 57344
- Files by Directories
%PROGRAMFILES%\AskTBar\SrchAstt
«
Go to Software Database