Saturday, December 6, 2008

BrowserAid Adware

How To Remove BrowserAid?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
BrowserAid is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.A Search hijacker redirects search results to other pages and may
transmit search and browsing data to unknown servers. An error page hijacker directs
the browser to another page, usually an advertising page, instead of the usual error
page when the requested URL is not found.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.Malware includes a range of programs that do not threaten computers directly,
but are used to create viruses or Trojans, or used to carry out illegal activities
such as DoS attacks and breaking into other computers.

BrowserAid Symptoms:

Files:
[%SYSTEM%]\e6f1873b.dll
[%SYSTEM%]\stlb2.xml
[%SYSTEM%]\broweraidtoolbar.dll
[%SYSTEM%]\highlighthelper.dll
[%SYSTEM%]\quicklaunchie.dll
[%SYSTEM%]\rsstoolbar.dll
[%WINDOWS%]\downloaded program files\bbarwnd.dll
[%WINDOWS%]\downloaded program files\conflict.1\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearchie.dll
[%WINDOWS%]\downloaded program files\lstoolbarconfig.inf
[%WINDOWS%]\system\broweraidtoolbar.dll
[%WINDOWS%]\system\highlighthelper.dll
[%WINDOWS%]\system\rsstoolbar.dll
[%SYSTEM%]\e6f1873b.dll
[%SYSTEM%]\stlb2.xml
[%SYSTEM%]\broweraidtoolbar.dll
[%SYSTEM%]\highlighthelper.dll
[%SYSTEM%]\quicklaunchie.dll
[%SYSTEM%]\rsstoolbar.dll
[%WINDOWS%]\downloaded program files\bbarwnd.dll
[%WINDOWS%]\downloaded program files\conflict.1\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearchie.dll
[%WINDOWS%]\downloaded program files\lstoolbarconfig.inf
[%WINDOWS%]\system\broweraidtoolbar.dll
[%WINDOWS%]\system\highlighthelper.dll
[%WINDOWS%]\system\rsstoolbar.dll

Folders:
[%APPDATA%]\browser pal
[%PROGRAM_FILES%]\browser pal
[%PROGRAM_FILES%]\letssearch

Registry Keys:
HKEY_CLASSES_ROOT\AppID\My404.DLL
HKEY_CLASSES_ROOT\AppID\{418B46A9-5343-4E1A-A654-42B04E3F869E}
HKEY_CLASSES_ROOT\AppID\{87690003-2714-45E7-8A1B-DC0658DE778C}
HKEY_CLASSES_ROOT\bho.FResultsRequest
HKEY_CLASSES_ROOT\bho.FResultsRequest.1
HKEY_CLASSES_ROOT\bho.FResultsRequestDispatcher
HKEY_CLASSES_ROOT\bho.FResultsRequestDispatcher.1
HKEY_CLASSES_ROOT\CLSID\{12EE7A5E-0674-42f9-A76B-000000004D00}
HKEY_CLASSES_ROOT\CLSID\{606220AE-90E0-41CA-BF6D-C89272ED680C}
HKEY_CLASSES_ROOT\CLSID\{DBD7AAA2-1725-4663-8C8B-52A840693469}
HKEY_CLASSES_ROOT\CLSID\{E004800A-73C6-4587-B855-98D0CE0C16B1}
HKEY_CLASSES_ROOT\Interface\{4B0FCEB7-8163-46EE-9EAF-85BD933D0A46}
HKEY_CLASSES_ROOT\Interface\{670801FD-C247-4E44-9424-69E5D77C6725}
HKEY_CLASSES_ROOT\Interface\{E58F4168-608C-45C2-9BFF-061229730B2E}
HKEY_CLASSES_ROOT\Interface\{EE06D877-386F-4A44-A9ED-75EB6C3E7E80}
HKEY_CLASSES_ROOT\Interface\{EE06D877-386F-4A44-A9ED-75EB6C3E7E81}
HKEY_CLASSES_ROOT\Interface\{F8D96098-E9F7-42E1-88F3-A3719D70EA8D}
HKEY_CLASSES_ROOT\My404.Bho404
HKEY_CLASSES_ROOT\My404.Bho404.1
HKEY_CLASSES_ROOT\TypeLib\{12EE7A5E-0674-42F9-A76C-000000004D00}
HKEY_CURRENT_USER\Software\A70F6A1D-0195-42a2-934C-D8AC0F7C08EB
HKEY_CURRENT_USER\software\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_CURRENT_USER\software\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{12EE7A5E-0674-42f9-A76B-000000004D00}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runwindowsupdate
HKEY_LOCAL_MACHINE\software\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_CLASSES_ROOT\AppID\bho.DLL
HKEY_CLASSES_ROOT\CLSID\{80672997-D58C-4190-9843-C6C61AF8FE97}
HKEY_CLASSES_ROOT\TypeLib\{85C2C2A1-3F20-4EAD-ADC3-BD3217391543}
HKEY_CURRENT_USER\Software\{12EE7A5E-0674-42f9-A76B-000000004D00}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{80672997-D58C-4190-9843-C6C61AF8FE97}
HKEY_CLASSES_ROOT\appid\my404.dll
HKEY_CLASSES_ROOT\appid\{418b46a9-5343-4e1a-a654-42b04e3f869e}
HKEY_CLASSES_ROOT\appid\{87690003-2714-45e7-8a1b-dc0658de778c}
HKEY_CLASSES_ROOT\bho.featuredresultsbho
HKEY_CLASSES_ROOT\bho.featuredresultsbho.1
HKEY_CLASSES_ROOT\bho.fresultsrequest
HKEY_CLASSES_ROOT\bho.fresultsrequest.1
HKEY_CLASSES_ROOT\bho.fresultsrequestdispatcher
HKEY_CLASSES_ROOT\bho.fresultsrequestdispatcher.1
HKEY_CLASSES_ROOT\bho.iadvertisementbho
HKEY_CLASSES_ROOT\bho.iadvertisementbho.1
HKEY_CLASSES_ROOT\browseraidtoolbar.helper
HKEY_CLASSES_ROOT\browseraidtoolbar.helper.1
HKEY_CLASSES_ROOT\browseraidtoolbar.ieshower
HKEY_CLASSES_ROOT\browseraidtoolbar.ieshower.1
HKEY_CLASSES_ROOT\browseraidtoolbar.ietoolbar
HKEY_CLASSES_ROOT\browseraidtoolbar.ietoolbar.1
HKEY_CLASSES_ROOT\browserpaltoolbar.helper
HKEY_CLASSES_ROOT\browserpaltoolbar.helper.1
HKEY_CLASSES_ROOT\browserpaltoolbar.ieshower
HKEY_CLASSES_ROOT\browserpaltoolbar.ieshower.1
HKEY_CLASSES_ROOT\browserpaltoolbar.ietoolbar
HKEY_CLASSES_ROOT\browserpaltoolbar.ietoolbar.1
HKEY_CLASSES_ROOT\clsid\{087173ef-9829-4f49-8340-a524177d3f60}
HKEY_CLASSES_ROOT\clsid\{0ddbb570-0396-44c9-986a-8f6f61a51c2f}
HKEY_CLASSES_ROOT\clsid\{12ee7a5e-0674-42f9-a76a-000000004d00}
HKEY_CLASSES_ROOT\clsid\{12ee7a5e-0674-42f9-a76b-000000004d00}
HKEY_CLASSES_ROOT\clsid\{2a167e61-d100-450d-a1b0-6eaf394bcb87}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c0-5297ef71f443}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c2-5297ef71f44a}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}
HKEY_CLASSES_ROOT\clsid\{337d0c1d-4053-4fab-af2b-45c2f7b0faa6}
HKEY_CLASSES_ROOT\clsid\{337d0c1d-4053-4fab-af2b-45c2f7b0faa7}
HKEY_CLASSES_ROOT\clsid\{4a2563c7-fc68-4ee8-a11c-2022ebcc1b0f}
HKEY_CLASSES_ROOT\clsid\{5f5564ac-de7a-4dcd-9296-32e71a35dcb6}
HKEY_CLASSES_ROOT\clsid\{606220ae-90e0-41ca-bf6d-c89272ed680c}
HKEY_CLASSES_ROOT\clsid\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_CLASSES_ROOT\clsid\{7313bfd0-62c4-40f4-8041-3fbdbc80ac07}
HKEY_CLASSES_ROOT\clsid\{80672997-d58c-4190-9843-c6c61af8fe97}
HKEY_CLASSES_ROOT\clsid\{8a7d38be-849d-478f-a7cf-55ec95722358}
HKEY_CLASSES_ROOT\clsid\{d7258abe-571f-4dc2-abd1-8393b13b1269}
HKEY_CLASSES_ROOT\clsid\{dbd7aaa2-1725-4663-8c8b-52a840693469}
HKEY_CLASSES_ROOT\clsid\{e004800a-73c6-4587-b855-98d0ce0c16b1}
HKEY_CLASSES_ROOT\clsid\{f20ae630-6de2-43ca-a988-7cd40c36ef0b}
HKEY_CLASSES_ROOT\interface\{2a167e61-d100-450d-a1b0-6eaf394bcb87}
HKEY_CLASSES_ROOT\interface\{2a167e61-d100-450d-a1b0-6eaf394bcb89}
HKEY_CLASSES_ROOT\interface\{4a2563c7-fc68-4ee8-a11c-2022ebcc1b0f}
HKEY_CLASSES_ROOT\interface\{4a2563c7-fc68-4ee8-a11c-2022ebcc1b10}
HKEY_CLASSES_ROOT\interface\{4b0fceb7-8163-46ee-9eaf-85bd933d0a46}
HKEY_CLASSES_ROOT\interface\{670801fd-c247-4e44-9424-69e5d77c6725}
HKEY_CLASSES_ROOT\interface\{8a7d38be-849d-478f-a7cf-55ec95722358}
HKEY_CLASSES_ROOT\interface\{8a7d38be-849d-478f-a7cf-55ec95722359}
HKEY_CLASSES_ROOT\interface\{e58f4168-608c-45c2-9bff-061229730b2e}
HKEY_CLASSES_ROOT\interface\{ee06d877-386f-4a44-a9ed-75eb6c3e7e80}
HKEY_CLASSES_ROOT\interface\{ee06d877-386f-4a44-a9ed-75eb6c3e7e81}
HKEY_CLASSES_ROOT\interface\{f8d96098-e9f7-42e1-88f3-a3719d70ea8d}
HKEY_CLASSES_ROOT\my404.bho404
HKEY_CLASSES_ROOT\my404.bho404.1
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_CLASSES_ROOT\typelib\{12ee7a5e-0674-42f9-a76c-000000004d00}
HKEY_CLASSES_ROOT\typelib\{7313bfd0-62c4-40f4-8041-3fbdbc80ac07}
HKEY_CLASSES_ROOT\typelib\{7313bfd0-62c4-40f4-8041-3fbdbc80ac08}
HKEY_CLASSES_ROOT\typelib\{7eb64065-dfd1-41b0-99d7-6ba3e0a15916}
HKEY_CLASSES_ROOT\typelib\{85c2c2a1-3f20-4ead-adc3-bd3217391543}
HKEY_CLASSES_ROOT\typelib\{ba87b15b-7de7-4da4-8bf7-5c616d6c99da}
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarbho
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarbho.1
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarname
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarname.1
HKEY_CURRENT_USER\software\a70f6a1d-0195-42a2-934c-d8ac0f7c08eb
HKEY_CURRENT_USER\software\popup stopper
HKEY_LOCAL_MACHINE\software\classes\clsid\{337d0c1d-4053-4fab-af2b-45c2f7b0faa7}
HKEY_LOCAL_MACHINE\software\classes\clsid\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d7258abe-571f-4dc2-abd1-8393b13b1269}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{f20ae630-6de2-43ca-a988-7cd40c36ef0b}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{12ee7a5e-0674-42f9-a76b-000000004d00}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\extensions\{07b7f771-1b8e-4b7b-823e-ffac1732aa9e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{12ee7a5e-0674-42f9-a76a-000000004d00}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{2cf0b992-5eeb-4143-99c0-5297ef71f443}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{2cf0b992-5eeb-4143-99c2-5297ef71f44a}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{80672997-d58c-4190-9843-c6c61af8fe97}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\letssearch
HKEY_LOCAL_MACHINE\software\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
PWS.Ghost Trojan Removal
Tanukbot Trojan Symptoms
Remove God Trojan

No comments: