Home Malware Programs Adware ezSearchBar

ezSearchBar

Posted: April 14, 2005

Threat Metric

Ranking: 8,958
Threat Level: 1/10
Infected PCs: 19,381
First Seen: July 24, 2009
Last Seen: September 22, 2023
OS(es) Affected: Windows

ezSearchBar is an Internet Explorer toolbar that may redirect your browser search requests through its parent server, and may also generate pop-up advertisements on your computer.

www.ezCyberSearch.com

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\TEMP\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 52.73 KB (52736 bytes)
MD5: b71b2ce6d52f201570dc138ff7b3c356
Detection count: 93
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP\WS
Group: Malware file
Last Updated: July 15, 2017
%TEMP%\WS\WindowService.exe File name: WindowService.exe
Size: 119.8 KB (119808 bytes)
MD5: 47279fb341d0968d9ff80375f26c6d88
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%TEMP%\WS\WindowService.exe File name: WindowService.exe
Size: 120.83 KB (120832 bytes)
MD5: d40bc8e4dc7c61d4669cc57d6f1b7319
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.71 KB (51712 bytes)
MD5: c28f4600240f86fc7e35a0d4227292f6
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\WindowService.exe File name: WindowService.exe
Size: 122.36 KB (122368 bytes)
MD5: ebad70c319294168779542ce23efed4e
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 52.22 KB (52224 bytes)
MD5: ce30b1ba5ff70be2f4288d60e680f76e
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\WindowService.exe File name: WindowService.exe
Size: 119.8 KB (119808 bytes)
MD5: 6c30311125dab7dc2473a73d22b9de5a
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 52.73 KB (52736 bytes)
MD5: 77d21f3b8273f0cdfcf6ddcea539aded
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 52.22 KB (52224 bytes)
MD5: eb07e10c276d30ae7c2857d13a8983af
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\WindowService.exe File name: WindowService.exe
Size: 119.8 KB (119808 bytes)
MD5: 3cf8e20bd5f4d55c7191198eb13af127
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.71 KB (51712 bytes)
MD5: c6ea70c645f3633ebaad73ea3625e8fe
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\WindowService.exe File name: WindowService.exe
Size: 122.88 KB (122880 bytes)
MD5: 27b0e52096ac63ebb9cf7b8d19e50497
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%WINDIR%\TEMP\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 50.17 KB (50176 bytes)
MD5: 08637d8e6153373ba8af3d6d5f20a9b7
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP\WS
Group: Malware file
Last Updated: April 19, 2020
%WINDIR%\TEMP\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.2 KB (51200 bytes)
MD5: 27dafa1cb1110fccf2abd73c0cca7c71
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP\WS
Group: Malware file
Last Updated: July 15, 2017
%TEMP%\WS\realtek_amd64.exe File name: realtek_amd64.exe
Size: 84.48 KB (84480 bytes)
MD5: 2a835cb5056ceb518600e0a491fdc933
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%WINDIR%\TEMP\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.2 KB (51200 bytes)
MD5: 1a43d7838183caee18599101cf1b4010
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP\WS
Group: Malware file
Last Updated: July 15, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 52.73 KB (52736 bytes)
MD5: f54ddb7ad9fac668e726467b75304918
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.71 KB (51712 bytes)
MD5: 8ea97bf272cb64770799585f8b70da28
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.71 KB (51712 bytes)
MD5: 872c4c473d3ef824d762fe65685ad2e4
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 52.73 KB (52736 bytes)
MD5: ae496bdbd2f65326158f06074ebe066d
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017
%WINDIR%\TEMP\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.2 KB (51200 bytes)
MD5: ac91ab58cb640ab02b534bce9134716c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP\WS
Group: Malware file
Last Updated: August 23, 2020

More files

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Tracing\WindowService_RASAPI32SOFTWARE\Microsoft\Tracing\WindowService_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\WindowService_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\WindowService_RASMANCSSYSTEM\ControlSet001\services\eventlog\Application\WindowServiceSYSTEM\ControlSet002\services\eventlog\Application\WindowServiceSYSTEM\CurrentControlSet\services\eventlog\Application\WindowServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}EZSearchSearchy{24F5E422-6A70-4FAA-8CAD-E23D5DC1DAE6}{DD0688A5-FC8B-4E93-A485-CBF606A56D49}

Additional Information

The following directories were created:
%PROGRAMFILES%\EZSearch%PROGRAMFILES(x86)%\EZSearch
Loading...