ActualNames

ActualNames Description


ActualNames is an address bar search hijacker which targets IE, Netscape and AOL browsers. ActualNames seems to contain components to interfere with sending of e-mail from many softwares and web sites. Bundled with KazaaMate. Suspected also to be installed by ActiveX drive-by download from some pop-ups. ActualNames has the ability to update itself via the Internet. It includes the uninstaller.
Download SpyHunter Spyware Scanner

ActualNames Automatic Detection Tool (Recommended)


Is your PC infected with ActualNames? To safely & quickly detect ActualNames, we highly recommend you run the malware scanner listed below.



File System Modifications

  • The following files were created in the system:
    # File Name
    1 cliner.exe
    2 finddll.dll
    3 findservice.exe
    4 mailbook.exe
    5 mailbookproxy.dll
    6 mydll.dll
    7 nn7dll.dll
    8 nndll.dll
    9 spredirect.dll
    10 unins000.exe
    11 update.exe
    12 updater.exe
    13 updaterproxy.dll

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}7197649B-548D-41C0-B2C1-45ED402594AHKEY_CLASSES_ROOTAdvSearch.AlarIT.LioN.UpdaterHKEY_CLASSES_ROOTAdvSearch.AlarIT.LioN.Updater.1HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunBrowseProxy
  • The following CLSID’s were detected:
    HKEY..\..\{CLSID Path}4CD051DD-AA90-4C5C-BD55-EA52969BE48B300D6635-E419-47E3-9642-6D73337684CDDEE456F3-A075-4F60-BEA0-8748D0917701B9CD23F0-086D-4190-9C04-FBFA1EA09FF892C7D65C-52F3-4545-8A35-213D730DB1ED80751B22-3FB8-4ED9-B029-E6F568BB48A833403499-E238-4F35-8F5A-7F53D24FF9E2
Posted: March 28, 2006 | By
Share:
Follow Me on Pinterest More More
Threat Level: 5/10
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Rate this article:

Leave a Reply

What is 11 + 8 ?
Please leave these two fields as-is:
IMPORTANT! To be able to proceed, you need to solve the following simple math (so we know that you are a human) :-)