Home Malware Programs Adware Adware.Multiplug/Variant

Adware.Multiplug/Variant

Posted: May 23, 2014

Threat Metric

Ranking: 338
Threat Level: 2/10
Infected PCs: 1,060,435
First Seen: May 23, 2014
Last Seen: March 10, 2025
OS(es) Affected: Windows


Adware.Multiplug/Variant is considered to be adware that may proliferate and enter a PC as an additional program packaged with other freeware. Once installed on a computer system, Adware.Multiplug/Variant may may insert its own toolbar and replace the default start page and search engine or a new tab window with a potentially promotional website. Adware.Multiplug/Variant may show commercial pop-up advertisements carrying various deals, offers and sponsored links in search results of any genuine search engine. Adware.Multiplug/Variant may also gather search terms from the computer user's search requests to deliver and show targeted advertisements. Adware.Multiplug/Variant may use browser hijacking methods to unwillingly reroute computer users to predefined advertising websites. Adware.Multiplug/Variant may also be embedded into the custom installer on many unprotected download websites. So if the PC user has downloaded a free tool from a suspicious download website, Adware.Multiplug/Variant might have also been installed during the setup process of the free application.

Aliases

Generic6.AXCM [AVG]Riskware/MultiPlug [Fortinet]PUA.Multiplug [Ikarus]Generic Suspicious [Panda]PUP/Win32.MultiPlug [AhnLab-V3]MultiPlug-FYT [McAfee-GW-Edition]TROJ_GEN.R021C0FF915 [TrendMicro]Trojan.Crossrider1.33816 [DrWeb]Gen:Variant.Adware.Kazy [F-Secure]Trojan-Dropper.Win32.Agent.biqise [Kaspersky]Win.Trojan.Agent-880756 [ClamAV]Win32:PUP-gen [PUP] [Avast]PUA.Gen.2 [Symantec]Trojan ( 0040fa761 ) [K7AntiVirus]TrojanDropper.Agent.g6 [CAT-QuickHeal]
More aliases (30)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files\GamesTechStore\gamestechstore_helper_service.exe File name: gamestechstore_helper_service.exe
Size: 191.69 KB (191696 bytes)
MD5: eafb798e13c296281878e70bcfe41a69
Detection count: 862
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\GamesTechStore\gamestechstore_helper_service.exe
Group: Malware file
Last Updated: November 9, 2023
%PROGRAMFILES(x86)%\SectionDouble\SectionDouble.dll File name: SectionDouble.dll
Size: 2.75 MB (2758656 bytes)
MD5: ff5ca4e5d5425589a14064a34e20b4b1
Detection count: 119
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\SectionDouble
Group: Malware file
Last Updated: April 9, 2020
%ALLUSERSPROFILE%\quickset\sk-enhancer\Sk-Enhancer.exe File name: Sk-Enhancer.exe
Size: 799.23 KB (799232 bytes)
MD5: 08fd9792eb734a2de1c9766251172062
Detection count: 92
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\quickset\sk-enhancer
Group: Malware file
Last Updated: March 25, 2016
%ALLUSERSPROFILE%\TextEnhance_6.2.2999.522\TextEnhance_6.2.2999.522.dll File name: TextEnhance_6.2.2999.522.dll
Size: 2.93 MB (2930688 bytes)
MD5: 3b2697d63c404ce3eec49de4c4741c0f
Detection count: 85
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\TextEnhance_6.2.2999.522
Group: Malware file
Last Updated: September 21, 2016
Flava Clipper.exe File name: Flava Clipper.exe
Size: 522.75 KB (522752 bytes)
MD5: 1ce9fe173a0c0d14a670488daee98fcf
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 1, 2015
%USERPROFILE%\My Documents\TextEnhance.exe File name: TextEnhance.exe
Size: 8.39 MB (8399568 bytes)
MD5: c05c9608289ac4bdaea46e31308d3531
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents
Group: Malware file
Last Updated: September 21, 2016
%ALLUSERSPROFILE%\SystemAssister\SystemAssister.dll File name: SystemAssister.dll
Size: 2.55 MB (2551296 bytes)
MD5: 419b9a3aa15b866aafd5ec08847d4a61
Detection count: 80
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\SystemAssister
Group: Malware file
Last Updated: April 9, 2016
%ALLUSERSPROFILE%\Web Light\weblight.dll File name: weblight.dll
Size: 4.39 MB (4391424 bytes)
MD5: b5c305c3b2ff2e35d4a270fad0675649
Detection count: 75
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\Web Light
Group: Malware file
Last Updated: February 26, 2016
%ALLUSERSPROFILE%\Web Light\WebLight_x64.dll File name: WebLight_x64.dll
Size: 4.33 MB (4332544 bytes)
MD5: 5ce8eb47df6a284281572ff9ef95012e
Detection count: 74
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\Web Light
Group: Malware file
Last Updated: February 26, 2016
%PROGRAMFILES(x86)%\PragmaGeneration\PragmaGeneration.dll File name: PragmaGeneration.dll
Size: 1.65 MB (1659392 bytes)
MD5: 73d090cde17b05df9e4d8f28c2e248f7
Detection count: 60
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\PragmaGeneration
Group: Malware file
Last Updated: April 22, 2015
%PROGRAMFILES(x86)%\PragmaInstance\PragmaInstance.dll File name: PragmaInstance.dll
Size: 1.61 MB (1619968 bytes)
MD5: aff69b29881975ef4af17e1e7760f6cd
Detection count: 50
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\PragmaInstance
Group: Malware file
Last Updated: April 22, 2015
%ALLUSERSPROFILE%\TextEnhance_26.0.1773.401\TextEnhance_26.0.1773.401.dll File name: TextEnhance_26.0.1773.401.dll
Size: 2.72 MB (2726912 bytes)
MD5: 43eea0c9b47d493fa5cbb7f823f6b14f
Detection count: 44
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\TextEnhance_26.0.1773.401
Group: Malware file
Last Updated: February 19, 2020
%PROGRAMFILES(x86)%\PragmaMaker\PragmaMaker.dll File name: PragmaMaker.dll
Size: 1.58 MB (1581568 bytes)
MD5: a1965fdddaac1b4c845984dc636d1066
Detection count: 40
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\PragmaMaker
Group: Malware file
Last Updated: April 22, 2015
%ALLUSERSPROFILE%\{4b22572e-5d6b-90ae-4b22-2572e5d65cb9}\spyhunter 4.17.6.4336 full version with patch.exe File name: spyhunter 4.17.6.4336 full version with patch.exe
Size: 2.04 MB (2047488 bytes)
MD5: af8685a1052b3013679584c6246284b7
Detection count: 36
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\{4b22572e-5d6b-90ae-4b22-2572e5d65cb9}
Group: Malware file
Last Updated: May 28, 2015
%PROGRAMFILES(x86)%\PragmaFunc\PragmaFunc.dll File name: PragmaFunc.dll
Size: 1.66 MB (1661440 bytes)
MD5: d32457048b71db2b49e8718db7f57795
Detection count: 33
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\PragmaFunc
Group: Malware file
Last Updated: April 22, 2015
%PROGRAMFILES%\Perplexed Examination\Perplexed Examination.exe File name: Perplexed Examination.exe
Size: 8.01 MB (8016472 bytes)
MD5: d7411b426fbed97813cff3775e932df4
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Perplexed Examination
Group: Malware file
Last Updated: February 26, 2016
C:\Program Files\TextEnhance\TextEnhance.dll File name: TextEnhance.dll
Size: 2.85 MB (2852352 bytes)
MD5: 30d21c9739fcf4fb21c26ce396e54b10
Detection count: 28
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files\TextEnhance\TextEnhance.dll
Group: Malware file
Last Updated: October 11, 2022
%ALLUSERSPROFILE%\{9ef77b15-a5d2-d12b-9ef7-77b15a5dec56}\2163ea13116fdd9a1add4d7966c7b2a3f5da4e8eaa5ac340cdbb290510ad21b1.exe File name: 2163ea13116fdd9a1add4d7966c7b2a3f5da4e8eaa5ac340cdbb290510ad21b1.exe
Size: 1.04 MB (1047040 bytes)
MD5: 74f7a01054b981708f7335510834124c
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\{9ef77b15-a5d2-d12b-9ef7-77b15a5dec56}
Group: Malware file
Last Updated: April 21, 2015
%PROGRAMFILES(x86)%\PragmaEdit\PragmaEdit.dll File name: PragmaEdit.dll
Size: 1.7 MB (1705984 bytes)
MD5: 9e18b5177db0318259d5a1e0c03f8adf
Detection count: 20
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\PragmaEdit
Group: Malware file
Last Updated: April 22, 2015
%ALLUSERSPROFILE%\{83665d8d-949c-051f-8366-65d8d9497636}\Troj31.exe File name: Troj31.exe
Size: 384.51 KB (384512 bytes)
MD5: 6b940263fda0d67f604a7784c9db2390
Detection count: 10
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\{83665d8d-949c-051f-8366-65d8d9497636}
Group: Malware file
Last Updated: May 22, 2015
file.exe File name: file.exe
Size: 497.66 KB (497664 bytes)
MD5: e20d9121513d22e39a64034dcf41d1cd
Detection count: 4
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: July 9, 2015

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{0F19EF48-CB8C-416A-B84C-C33B02970632}{138E44EF-8988-4DC7-8F48-FBC4FCEF83D1}{157B1AA6-3E5C-404A-9118-C1D91F537040}{382F6195-1B46-40D5-B9FD-0493263E6132}{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}{3C94CD82-91C5-4DA7-AC36-BC96B16DEB26}{41F978F3-431A-4464-A789-5C0692D562FB}{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}{5F189DF5-2D05-472B-9091-84D9848AE48B}{7041156A-0D2B-4DCD-A8EE-D0608BFCB2D0}{9129BF03-EE04-4C16-B8AA-5DA6ADE6AB2B}{9B41579A-1996-42F9-8F84-7B7786818CEF}{9D4DC1C6-EFD1-44B1-91F9-6C7D4FC13CBD}{ADA38E4E-F20A-4399-BE91-E260AC341C69}{BB1C0445-8E37-4D66-B4E4-947E53F654A8}{BB50CC62-09E1-4DD9-912C-F1DA4D6D71D8}{C3510196-382C-41D1-8E63-6E84DB3709C9}{DFF50D27-9859-4F50-9BE1-A4CBFA102B9D}{E0D6077D-7186-48B2-A6C6-2F7C533E8CFF}{E2343056-CC08-46AC-B898-BFC7ACF4E755}{E481A870-86C7-44E1-97DF-E759FC147CBE}{E55496A1-3090-44B0-96BF-518EA4B6828B}{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}{EB559340-3A8F-4456-B24D-160098054EF0}{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}{FE332809-93C1-48DF-929F-AEC0BC4BFCFE}Regexp file mask%APPDATA%\appdataFr[NUMBERS].bin%PROGRAMFILES%\AppendGeneration\AppendGeneration.dll%PROGRAMFILES%\AppendInit\AppendInit.dll%PROGRAMFILES%\AppendMonitor\AppendMonitor.dll%PROGRAMFILES%\BorderlineMaker\BorderlineMaker.dll%PROGRAMFILES%\brainwash\brainwash.dll%PROGRAMFILES%\CutterFoobar\CutterFoobar.dll%PROGRAMFILES%\decodit\decodit.dll%PROGRAMFILES%\goopad\goopad.dll%PROGRAMFILES%\IncludeInstance\IncludeInstance.dll%PROGRAMFILES%\IncludeMonitor\IncludeMonitor.dll%PROGRAMFILES%\IncrementEdit\IncrementEdit.dll%PROGRAMFILES%\IncrementModule\IncrementModule.dll%PROGRAMFILES%\IncrementMonitor\IncrementMonitor.dll%PROGRAMFILES%\IndepthFunc\IndepthFunc.dll%PROGRAMFILES%\LinkFunc\LinkFunc.dll%PROGRAMFILES%\PathFoobar\PathFoobar.dll%PROGRAMFILES%\PragmaEdit\PragmaEdit.dll%PROGRAMFILES%\ProcessFoobar\ProcessFoobar.dll%PROGRAMFILES%\ProcessMaker\ProcessMaker.dll%PROGRAMFILES%\ReactorKeeper\ReactorKeeper.dll%PROGRAMFILES%\ReactorSubs\ReactorSubs.dll%PROGRAMFILES%\RelayDouble\RelayDouble.dll%PROGRAMFILES%\RelaySoft\RelaySoft.dll%PROGRAMFILES%\RelaySys\RelaySys.dll%PROGRAMFILES%\sayescoupon\sayescoupon.dll%PROGRAMFILES%\SegmentProlonger\SegmentProlonger.dll%PROGRAMFILES%\SegmentSystem\SegmentSystem.dll%PROGRAMFILES%\SoftwarePlus\SoftwarePlus.dll%PROGRAMFILES%\StatFoobar\StatFoobar.dll%PROGRAMFILES%\SystemConserve\SystemConserve.dll%PROGRAMFILES%\SystemEnterprise\SystemEnterprise.dll%PROGRAMFILES%\SystemHelp\SystemHelp.dll%PROGRAMFILES%\SystemRaise\SystemRaise.dll%PROGRAMFILES%\SystemUphold\SystemUphold.dll%PROGRAMFILES%\TerminusDefender\TerminusDefender.dll%PROGRAMFILES%\TerminusExtender\TerminusExtender.dll%PROGRAMFILES%\TerminusMaker\TerminusMaker.dll%PROGRAMFILES%\ToolMaker\ToolMaker.dll%PROGRAMFILES%\TrimAppend\TrimAppend.dll%PROGRAMFILES%\TrimEdit\TrimEdit.dll%PROGRAMFILES%\turbostrength\turbostrength.dll%PROGRAMFILES(x86)%\AppendEngine\AppendEngine.dll%PROGRAMFILES(x86)%\AppendFoobar\AppendFoobar.dll%PROGRAMFILES(x86)%\AppendInit\AppendInit.dll%PROGRAMFILES(x86)%\AppendModule\AppendModule.dll%PROGRAMFILES(x86)%\AppendRunner\AppendRunner.dll%PROGRAMFILES(x86)%\BorderlineEngine\BorderlineEngine.dll%PROGRAMFILES(x86)%\BorderlineInit\BorderlineInit.dll%PROGRAMFILES(x86)%\BorderlineMonitor\BorderlineMonitor.dll%PROGRAMFILES(x86)%\couponight\couponight.dll%PROGRAMFILES(x86)%\CutterFoobar\CutterFoobar.dll%PROGRAMFILES(x86)%\CutterProc\CutterProc.dll%PROGRAMFILES(x86)%\decodit\decodit.dll%PROGRAMFILES(x86)%\goopad\goopad.dll%PROGRAMFILES(x86)%\IncludeInstance\IncludeInstance.dll%PROGRAMFILES(x86)%\IncrementEdit\IncrementEdit.dll%PROGRAMFILES(x86)%\IncrementFunc\IncrementFunc.dll%PROGRAMFILES(x86)%\IncrementProc\IncrementProc.dll%PROGRAMFILES(x86)%\IndepthEngine\IndepthEngine.dll%PROGRAMFILES(x86)%\IndepthMonitor\IndepthMonitor.dll%PROGRAMFILES(x86)%\IndepthProc\IndepthProc.dll%PROGRAMFILES(x86)%\LinkFunc\LinkFunc.dll%PROGRAMFILES(x86)%\LinkGeneration\LinkGeneration.dll%PROGRAMFILES(x86)%\PathGeneration\PathGeneration.dll%PROGRAMFILES(x86)%\PragmaEdit\PragmaEdit.dll%PROGRAMFILES(x86)%\PragmaGeneration\PragmaGeneration.dll%PROGRAMFILES(x86)%\PragmaMaker\PragmaMaker.dll%PROGRAMFILES(x86)%\PragmaModulator\PragmaModulator.dll%PROGRAMFILES(x86)%\PragmaSystem\PragmaSystem.dll%PROGRAMFILES(x86)%\ProcessMaker\ProcessMaker.dll%PROGRAMFILES(x86)%\ProcessRunner\ProcessRunner.dll%PROGRAMFILES(x86)%\ReactorKeeper\ReactorKeeper.dll%PROGRAMFILES(x86)%\RelayDefender\RelayDefender.dll%PROGRAMFILES(x86)%\RelayDouble\RelayDouble.dll%PROGRAMFILES(x86)%\RelaySoft\RelaySoft.dll%PROGRAMFILES(x86)%\RelaySys\RelaySys.dll%PROGRAMFILES(X86)%\sayescoupon\sayescoupon.dll%PROGRAMFILES(x86)%\SegmentProlonger\SegmentProlonger.dll%PROGRAMFILES(x86)%\SoftwarePlus\SoftwarePlus.dll%PROGRAMFILES(x86)%\StatFoobar\StatFoobar.dll%PROGRAMFILES(x86)%\StatInit\StatInit.dll%PROGRAMFILES(x86)%\SystemChronicles\SystemChronicles.dll%PROGRAMFILES(x86)%\SystemConserve\SystemConserve.dll%PROGRAMFILES(x86)%\SystemContinue\SystemContinue.dll%PROGRAMFILES(x86)%\SystemEnterprise\SystemEnterprise.dll%PROGRAMFILES(x86)%\SystemHelp\SystemHelp.dll%PROGRAMFILES(x86)%\SystemPlus\SystemPlus.dll%PROGRAMFILES(x86)%\systempreserve\systempreserve.dll%PROGRAMFILES(x86)%\SystemRaise\SystemRaise.dll%PROGRAMFILES(x86)%\TampaFoobar\TampaFoobar.dll%PROGRAMFILES(x86)%\TampaModule\TampaModule.dll%PROGRAMFILES(x86)%\TampaMonitor\TampaMonitor.dll%PROGRAMFILES(x86)%\TampaRunner\TampaRunner.dll%PROGRAMFILES(x86)%\TerminusDefender\TerminusDefender.dll%PROGRAMFILES(x86)%\TerminusKeeper\TerminusKeeper.dll%PROGRAMFILES(x86)%\TerminusMaker\TerminusMaker.dll%PROGRAMFILES(x86)%\TrimFunc\TrimFunc.dll%PROGRAMFILES(x86)%\TrimInit\TrimInit.dll%PROGRAMFILES(x86)%\TrimMaker\TrimMaker.dllHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}SOFTWARE\Classes\..9Software\Classes\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\BestSleep.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\BestSleep.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task[3c32].jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task[3c32].job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task[74c7].jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task[74c7].job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task[pr].jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Bidaily Synchronize Task[pr].job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bidaily Synchronize TaskSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bidaily Synchronize Task[3c32]SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bidaily Synchronize Task[74c7]SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bidaily Synchronize Task[pr]SOFTWARE\Wow6432Node\{12A61307-94CD-4F8E-94BC-918E511FAA81}SOFTWARE\Wow6432Node\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}SOFTWARE\Wow6432Node\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}SOFTWARE\Wow6432Node\{77D46E27-0E41-4478-87A6-AABE6FBCF252}SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}Software\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}SYSTEM\ControlSet001\services\1998d97cSYSTEM\ControlSet001\Services\24c54e38SYSTEM\ControlSet001\services\6135ae48SYSTEM\ControlSet001\services\813b67ceSYSTEM\ControlSet001\Services\863788faSYSTEM\ControlSet001\services\a89d7674SYSTEM\ControlSet001\services\a952796eSYSTEM\ControlSet001\services\abc71024SYSTEM\ControlSet001\services\cf05acd1SYSTEM\ControlSet001\Services\d45d88d8SYSTEM\ControlSet001\Services\d6b52028SYSTEM\ControlSet001\services\e3f7f5ffSYSTEM\ControlSet001\services\fc67e7a0SYSTEM\ControlSet001\services\fd3b02eeSYSTEM\ControlSet002\services\1998d97cSYSTEM\ControlSet002\Services\24c54e38SYSTEM\ControlSet002\services\6135ae48SYSTEM\ControlSet002\services\a952796eSYSTEM\ControlSet002\services\abc71024SYSTEM\ControlSet002\services\cf05acd1SYSTEM\ControlSet002\Services\d6b52028SYSTEM\ControlSet002\services\e3f7f5ffSYSTEM\ControlSet002\services\fc67e7a0SYSTEM\ControlSet002\services\fd3b02eeSYSTEM\CurrentControlSet\services\1998d97cSYSTEM\CurrentControlSet\Services\24c54e38SYSTEM\CurrentControlSet\services\6135ae48SYSTEM\CurrentControlSet\services\813b67ceSYSTEM\CurrentControlSet\Services\863788faSYSTEM\CurrentControlSet\services\a89d7674SYSTEM\CurrentControlSet\Services\a952796eSYSTEM\CurrentControlSet\services\abc71024SYSTEM\CurrentControlSet\services\cf05acd1SYSTEM\CurrentControlSet\Services\d45d88d8SYSTEM\CurrentControlSet\Services\d6b52028SYSTEM\CurrentControlSet\services\e3f7f5ffSYSTEM\CurrentControlSet\services\fc67e7a0SYSTEM\CurrentControlSet\services\fd3b02eeHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}S-46480778{11F6D5AB-263F-388E-74DE-E3DECD390E3F}{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{813b67ce}{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{fc67e7a0}{355FE5A0-F76C-0FCB-3575-FAD0CBA4A5F3}{3F7D597C-7512-F73C-B0F3-5D711BC91948}{476D78C4-1DB0-2D88-7FCC-AA6559F59A8D}{4820778D-AB0D-6D18-C316-52A6A0E1D507}{5F189DF5-2D05-472B-9091-84D9848AE48B}{1a34a8e0}{5F189DF5-2D05-472B-9091-84D9848AE48B}{699fd52f}{5F189DF5-2D05-472B-9091-84D9848AE48B}{dfc86759}{5F189DF5-2D05-472B-9091-84D9848AE48B}{e81a9dc1}{5F189DF5-2D05-472B-9091-84D9848AE48B}{f7dc94c1}{65886F9B-214B-530F-E4EA-7565AFF6DE8D}{681002C6-5019-81A2-7871-A43754F71E56}{6C998B44-82D8-CC7E-D847-4CD73036412A}{6F10CA8F-97E3-48FB-9003-3EE8E9050577}{75F9BF4A-AF67-A478-A37B-31D73186D3F3}{7F90CB46-EB38-83F9-7DB4-CB89897D5836}{842C4394-47F7-60DE-480B-C09116B63559}{88E96402-3BBD-02D9-0A36-6FB806AEE04E}{924C3DC2-8E4E-432E-F973-9A2174A39774}{A695893E-A5C7-2E5C-6953-52B0E61E4C1A}{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}{B0EC0808-6922-8705-C255-F9C79C315BD5}{B945F928-45A2-231E-495F-38C40CA198E9}{C1C6816E-CBB3-A748-85F9-A8B47B68985B}{D8A9D3D9-F414-952D-AC93-E5F96D47B5BD}{E32743D3-5789-6E4F-3998-06FB87C9214B}{E96338DC-1468-4918-8EC2-8454BFFC5025}{F04D4328-4631-1CBE-1907-201B33FAF2E8}{F364255F-18D3-2E0A-6D4D-A0C3FF4A43B1}{F679D2F0-CE91-93C8-BD2D-062DF04DA0C1}{F6EF44E0-CA47-4F41-8C06-431C005AAEFE}{F7FFE175-E3D6-2E86-0226-1D3AE4905E40}

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\5e6fb5de08469020%ALLUSERSPROFILE%\Accelewin%ALLUSERSPROFILE%\Application Data\Accelewin%ALLUSERSPROFILE%\Application Data\Browser Enhancer%ALLUSERSPROFILE%\Application Data\Browser Stabilizer%ALLUSERSPROFILE%\Application Data\Content Accelerator%ALLUSERSPROFILE%\Application Data\FastSys%ALLUSERSPROFILE%\Application Data\Intelewin filter%ALLUSERSPROFILE%\Application Data\InteliWeb%ALLUSERSPROFILE%\Application Data\Interenet Optimizer%ALLUSERSPROFILE%\Application Data\Performance Optimizer%ALLUSERSPROFILE%\Application Data\Speed Streamer%ALLUSERSPROFILE%\Application Data\System Booster%ALLUSERSPROFILE%\Application Data\TurboNet%ALLUSERSPROFILE%\Application Data\WebGeniuos%ALLUSERSPROFILE%\Application Data\WebPlat%ALLUSERSPROFILE%\Application Data\Win sys filter%ALLUSERSPROFILE%\Application Data\WinSpeed%ALLUSERSPROFILE%\Application Data\WorldWideWebCoupon%ALLUSERSPROFILE%\Browser Enhancer%ALLUSERSPROFILE%\Browser Stabilizer%ALLUSERSPROFILE%\Codec-C%ALLUSERSPROFILE%\CodecC%ALLUSERSPROFILE%\Content Accelerator%ALLUSERSPROFILE%\Coolyou%ALLUSERSPROFILE%\FastSys%ALLUSERSPROFILE%\Intelewin filter%ALLUSERSPROFILE%\InteliWeb%ALLUSERSPROFILE%\Interenet Optimizer%ALLUSERSPROFILE%\Network Acceleration%ALLUSERSPROFILE%\Performance Optimizer%ALLUSERSPROFILE%\Speed Streamer%ALLUSERSPROFILE%\Surf Protect%ALLUSERSPROFILE%\System Booster%ALLUSERSPROFILE%\TurboNet%ALLUSERSPROFILE%\Web Light%ALLUSERSPROFILE%\WebGeniuos%ALLUSERSPROFILE%\WebPlat%ALLUSERSPROFILE%\WebTouch%ALLUSERSPROFILE%\Win sys filter%ALLUSERSPROFILE%\WinSpeed%ALLUSERSPROFILE%\WorldWideWebCoupon%PROGRAMFILES%\ Mail Checker%PROGRAMFILES%\ Similar Pages%PROGRAMFILES%\ Translate%PROGRAMFILES%\BocaEdit%PROGRAMFILES%\BocaFunc%PROGRAMFILES%\ChromeReload%PROGRAMFILES%\Clip to OneNote%PROGRAMFILES%\CutterMaker%PROGRAMFILES%\DiscountCouponPro%PROGRAMFILES%\Godzilla Shopper%PROGRAMFILES%\IncludeMaker%PROGRAMFILES%\IncludeRunner%PROGRAMFILES%\IndepthEdit%PROGRAMFILES%\IndepthRunner%PROGRAMFILES%\PragmaEngine%PROGRAMFILES%\SoftwareHelp%PROGRAMFILES%\TerminusSys%PROGRAMFILES%\TotalComicBooks%PROGRAMFILES%\TrimModule%PROGRAMFILES%\UpgradeLeader%PROGRAMFILES%\Weather Aware%PROGRAMFILES%\coPuunk%PROGRAMFILES%\myselfcoupon%PROGRAMFILES%\reactorrise%PROGRAMFILES%\toolextender%PROGRAMFILES(X86)%\ Mail Checker%PROGRAMFILES(X86)%\ Translate%PROGRAMFILES(X86)%\TotalComicBooks%PROGRAMFILES(x86)%\ Similar Pages%PROGRAMFILES(x86)%\BocaEdit%PROGRAMFILES(x86)%\BocaFunc%PROGRAMFILES(x86)%\ChromeReload%PROGRAMFILES(x86)%\Clip to OneNote%PROGRAMFILES(x86)%\CutterMaker%PROGRAMFILES(x86)%\DiscountCouponPro%PROGRAMFILES(x86)%\Godzilla Shopper%PROGRAMFILES(x86)%\IncludeMaker%PROGRAMFILES(x86)%\IncludeRunner%PROGRAMFILES(x86)%\IndepthEdit%PROGRAMFILES(x86)%\IndepthRunner%PROGRAMFILES(x86)%\PragmaEngine%PROGRAMFILES(x86)%\SoftwareHelp%PROGRAMFILES(x86)%\TerminusSys%PROGRAMFILES(x86)%\TrimModule%PROGRAMFILES(x86)%\UpgradeLeader%PROGRAMFILES(x86)%\Weather Aware%PROGRAMFILES(x86)%\coPuunk%PROGRAMFILES(x86)%\myselfcoupon%PROGRAMFILES(x86)%\reactorrise%PROGRAMFILES(x86)%\toolextender%ProgramFiles%\DeltaFix%ProgramFiles(x86)%\DeltaFix
The following URL's were detected:
"Azm9CdOLvepicunitscan.infomynamedomain.koko
Loading...