Home Malware Programs Adware ezSearchBar

ezSearchBar

Posted: April 14, 2005

Threat Metric

Ranking: 14,449
Threat Level: 1/10
Infected PCs: 19,446
First Seen: July 24, 2009
Last Seen: March 7, 2025
OS(es) Affected: Windows

ezSearchBar is an Internet Explorer toolbar that may redirect your browser search requests through its parent server, and may also generate pop-up advertisements on your computer.

www.ezCyberSearch.com

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



ezs.dll File name: ezs.dll
Size: 106.49 KB (106496 bytes)
MD5: 7a9761576f19ceb77885201d39a1d644
Detection count: 63
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
ezsearch.dll File name: ezsearch.dll
Size: 57.34 KB (57344 bytes)
MD5: 88bb84f3e7752e0422befb9f46af1fe3
Detection count: 24
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: November 4, 2019
%TEMP%\WS\WindowService.exe File name: WindowService.exe
Size: 122.88 KB (122880 bytes)
MD5: 27b0e52096ac63ebb9cf7b8d19e50497
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%TEMP%\WS\realtek_amd64.exe File name: realtek_amd64.exe
Size: 84.48 KB (84480 bytes)
MD5: 2a835cb5056ceb518600e0a491fdc933
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: June 13, 2017
%TEMP%\WS\mediatek_86.exe File name: mediatek_86.exe
Size: 51.71 KB (51712 bytes)
MD5: 8ea97bf272cb64770799585f8b70da28
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\WS
Group: Malware file
Last Updated: October 6, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Tracing\WindowService_RASAPI32SOFTWARE\Microsoft\Tracing\WindowService_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\WindowService_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\WindowService_RASMANCSSYSTEM\ControlSet001\services\eventlog\Application\WindowServiceSYSTEM\ControlSet002\services\eventlog\Application\WindowServiceSYSTEM\CurrentControlSet\services\eventlog\Application\WindowServiceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}EZSearchSearchy{24F5E422-6A70-4FAA-8CAD-E23D5DC1DAE6}{DD0688A5-FC8B-4E93-A485-CBF606A56D49}

Additional Information

The following directories were created:
%PROGRAMFILES%\EZSearch%PROGRAMFILES(x86)%\EZSearch
Loading...