Home Malware Programs Adware AdvSearch

AdvSearch

Posted: March 28, 2006

Threat Metric

Threat Level: 2/10
Infected PCs: 36
First Seen: July 24, 2009
OS(es) Affected: Windows

AdvSearch is a nasty adware application. AdvSearch loads with Internet Explorer and has the ability to update itself secretly. AdvSearch is designed to monitor your browsing habits and generate large amounts of extremely intrusive pop-up advertisements. Removal of AdvSearch is strongly recommended.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



spredirect.dll File name: spredirect.dll
Size: 24.57 KB (24576 bytes)
MD5: 710aa3816758651feb49fc183bc4eb50
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
mailbook.exe File name: mailbook.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
cliner.exe File name: cliner.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
update.exe File name: update.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
updater.exe File name: updater.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
findservice.exe File name: findservice.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
finddll.dll File name: finddll.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
mailbookproxy.dll File name: mailbookproxy.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
updaterproxy.dll File name: updaterproxy.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
mydll.dll File name: mydll.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
nn7dll.dll File name: nn7dll.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
nndll.dll File name: nndll.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
unins000.dat File name: unins000.dat
File type: Data file
Mime Type: unknown/dat
Group: Malware file

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CLASSES_ROOT\Typelib{92c7d65c-52f3-4545-8a35-213d730db1ed}
Loading...