Wednesday, January 7, 2009

BrowserAid Adware

Click here to remove BrowserAid malware
BrowserAid description:
BrowserAid Category:Adware,BHO,Hijacker,Toolbar,Malware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

The BHO (Browser Helper Object) waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
A desktop hijacker replaces the desktop wallpaper with advertising
for products and services on the desktop.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.
It replaces your start page, continuosly open a number of pop up windows and so on.
Malware includes a range of programs that do not threaten computers directly,
but are used to create viruses or Trojans, or used to carry out illegal activities
such as DoS attacks and breaking into other computers.

Detection BrowserAid :

BrowserAid Files:
[%SYSTEM%]\e6f1873b.dll
[%SYSTEM%]\stlb2.xml
[%SYSTEM%]\broweraidtoolbar.dll
[%SYSTEM%]\highlighthelper.dll
[%SYSTEM%]\quicklaunchie.dll
[%SYSTEM%]\rsstoolbar.dll
[%WINDOWS%]\downloaded program files\bbarwnd.dll
[%WINDOWS%]\downloaded program files\conflict.1\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearchie.dll
[%WINDOWS%]\downloaded program files\lstoolbarconfig.inf
[%WINDOWS%]\system\broweraidtoolbar.dll
[%WINDOWS%]\system\highlighthelper.dll
[%WINDOWS%]\system\rsstoolbar.dll
[%SYSTEM%]\e6f1873b.dll
[%SYSTEM%]\stlb2.xml
[%SYSTEM%]\broweraidtoolbar.dll
[%SYSTEM%]\highlighthelper.dll
[%SYSTEM%]\quicklaunchie.dll
[%SYSTEM%]\rsstoolbar.dll
[%WINDOWS%]\downloaded program files\bbarwnd.dll
[%WINDOWS%]\downloaded program files\conflict.1\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearch.exe
[%WINDOWS%]\downloaded program files\letssearchie.dll
[%WINDOWS%]\downloaded program files\lstoolbarconfig.inf
[%WINDOWS%]\system\broweraidtoolbar.dll
[%WINDOWS%]\system\highlighthelper.dll
[%WINDOWS%]\system\rsstoolbar.dll

BrowserAid Folders:
[%APPDATA%]\browser pal
[%PROGRAM_FILES%]\browser pal
[%PROGRAM_FILES%]\letssearch

BrowserAid Registry Keys:
HKEY_CLASSES_ROOT\AppID\My404.DLL
HKEY_CLASSES_ROOT\AppID\{418B46A9-5343-4E1A-A654-42B04E3F869E}
HKEY_CLASSES_ROOT\AppID\{87690003-2714-45E7-8A1B-DC0658DE778C}
HKEY_CLASSES_ROOT\bho.FResultsRequest
HKEY_CLASSES_ROOT\bho.FResultsRequest.1
HKEY_CLASSES_ROOT\bho.FResultsRequestDispatcher
HKEY_CLASSES_ROOT\bho.FResultsRequestDispatcher.1
HKEY_CLASSES_ROOT\CLSID\{12EE7A5E-0674-42f9-A76B-000000004D00}
HKEY_CLASSES_ROOT\CLSID\{606220AE-90E0-41CA-BF6D-C89272ED680C}
HKEY_CLASSES_ROOT\CLSID\{DBD7AAA2-1725-4663-8C8B-52A840693469}
HKEY_CLASSES_ROOT\CLSID\{E004800A-73C6-4587-B855-98D0CE0C16B1}
HKEY_CLASSES_ROOT\Interface\{4B0FCEB7-8163-46EE-9EAF-85BD933D0A46}
HKEY_CLASSES_ROOT\Interface\{670801FD-C247-4E44-9424-69E5D77C6725}
HKEY_CLASSES_ROOT\Interface\{E58F4168-608C-45C2-9BFF-061229730B2E}
HKEY_CLASSES_ROOT\Interface\{EE06D877-386F-4A44-A9ED-75EB6C3E7E80}
HKEY_CLASSES_ROOT\Interface\{EE06D877-386F-4A44-A9ED-75EB6C3E7E81}
HKEY_CLASSES_ROOT\Interface\{F8D96098-E9F7-42E1-88F3-A3719D70EA8D}
HKEY_CLASSES_ROOT\My404.Bho404
HKEY_CLASSES_ROOT\My404.Bho404.1
HKEY_CLASSES_ROOT\TypeLib\{12EE7A5E-0674-42F9-A76C-000000004D00}
HKEY_CURRENT_USER\Software\A70F6A1D-0195-42a2-934C-D8AC0F7C08EB
HKEY_CURRENT_USER\software\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_CURRENT_USER\software\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{12EE7A5E-0674-42f9-A76B-000000004D00}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runwindowsupdate
HKEY_LOCAL_MACHINE\software\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_CLASSES_ROOT\AppID\bho.DLL
HKEY_CLASSES_ROOT\CLSID\{80672997-D58C-4190-9843-C6C61AF8FE97}
HKEY_CLASSES_ROOT\TypeLib\{85C2C2A1-3F20-4EAD-ADC3-BD3217391543}
HKEY_CURRENT_USER\Software\{12EE7A5E-0674-42f9-A76B-000000004D00}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{80672997-D58C-4190-9843-C6C61AF8FE97}
HKEY_CLASSES_ROOT\appid\my404.dll
HKEY_CLASSES_ROOT\appid\{418b46a9-5343-4e1a-a654-42b04e3f869e}
HKEY_CLASSES_ROOT\appid\{87690003-2714-45e7-8a1b-dc0658de778c}
HKEY_CLASSES_ROOT\bho.featuredresultsbho
HKEY_CLASSES_ROOT\bho.featuredresultsbho.1
HKEY_CLASSES_ROOT\bho.fresultsrequest
HKEY_CLASSES_ROOT\bho.fresultsrequest.1
HKEY_CLASSES_ROOT\bho.fresultsrequestdispatcher
HKEY_CLASSES_ROOT\bho.fresultsrequestdispatcher.1
HKEY_CLASSES_ROOT\bho.iadvertisementbho
HKEY_CLASSES_ROOT\bho.iadvertisementbho.1
HKEY_CLASSES_ROOT\browseraidtoolbar.helper
HKEY_CLASSES_ROOT\browseraidtoolbar.helper.1
HKEY_CLASSES_ROOT\browseraidtoolbar.ieshower
HKEY_CLASSES_ROOT\browseraidtoolbar.ieshower.1
HKEY_CLASSES_ROOT\browseraidtoolbar.ietoolbar
HKEY_CLASSES_ROOT\browseraidtoolbar.ietoolbar.1
HKEY_CLASSES_ROOT\browserpaltoolbar.helper
HKEY_CLASSES_ROOT\browserpaltoolbar.helper.1
HKEY_CLASSES_ROOT\browserpaltoolbar.ieshower
HKEY_CLASSES_ROOT\browserpaltoolbar.ieshower.1
HKEY_CLASSES_ROOT\browserpaltoolbar.ietoolbar
HKEY_CLASSES_ROOT\browserpaltoolbar.ietoolbar.1
HKEY_CLASSES_ROOT\clsid\{087173ef-9829-4f49-8340-a524177d3f60}
HKEY_CLASSES_ROOT\clsid\{0ddbb570-0396-44c9-986a-8f6f61a51c2f}
HKEY_CLASSES_ROOT\clsid\{12ee7a5e-0674-42f9-a76a-000000004d00}
HKEY_CLASSES_ROOT\clsid\{12ee7a5e-0674-42f9-a76b-000000004d00}
HKEY_CLASSES_ROOT\clsid\{2a167e61-d100-450d-a1b0-6eaf394bcb87}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c0-5297ef71f443}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c2-5297ef71f44a}
HKEY_CLASSES_ROOT\clsid\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}
HKEY_CLASSES_ROOT\clsid\{337d0c1d-4053-4fab-af2b-45c2f7b0faa6}
HKEY_CLASSES_ROOT\clsid\{337d0c1d-4053-4fab-af2b-45c2f7b0faa7}
HKEY_CLASSES_ROOT\clsid\{4a2563c7-fc68-4ee8-a11c-2022ebcc1b0f}
HKEY_CLASSES_ROOT\clsid\{5f5564ac-de7a-4dcd-9296-32e71a35dcb6}
HKEY_CLASSES_ROOT\clsid\{606220ae-90e0-41ca-bf6d-c89272ed680c}
HKEY_CLASSES_ROOT\clsid\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_CLASSES_ROOT\clsid\{7313bfd0-62c4-40f4-8041-3fbdbc80ac07}
HKEY_CLASSES_ROOT\clsid\{80672997-d58c-4190-9843-c6c61af8fe97}
HKEY_CLASSES_ROOT\clsid\{8a7d38be-849d-478f-a7cf-55ec95722358}
HKEY_CLASSES_ROOT\clsid\{d7258abe-571f-4dc2-abd1-8393b13b1269}
HKEY_CLASSES_ROOT\clsid\{dbd7aaa2-1725-4663-8c8b-52a840693469}
HKEY_CLASSES_ROOT\clsid\{e004800a-73c6-4587-b855-98d0ce0c16b1}
HKEY_CLASSES_ROOT\clsid\{f20ae630-6de2-43ca-a988-7cd40c36ef0b}
HKEY_CLASSES_ROOT\interface\{2a167e61-d100-450d-a1b0-6eaf394bcb87}
HKEY_CLASSES_ROOT\interface\{2a167e61-d100-450d-a1b0-6eaf394bcb89}
HKEY_CLASSES_ROOT\interface\{4a2563c7-fc68-4ee8-a11c-2022ebcc1b0f}
HKEY_CLASSES_ROOT\interface\{4a2563c7-fc68-4ee8-a11c-2022ebcc1b10}
HKEY_CLASSES_ROOT\interface\{4b0fceb7-8163-46ee-9eaf-85bd933d0a46}
HKEY_CLASSES_ROOT\interface\{670801fd-c247-4e44-9424-69e5d77c6725}
HKEY_CLASSES_ROOT\interface\{8a7d38be-849d-478f-a7cf-55ec95722358}
HKEY_CLASSES_ROOT\interface\{8a7d38be-849d-478f-a7cf-55ec95722359}
HKEY_CLASSES_ROOT\interface\{e58f4168-608c-45c2-9bff-061229730b2e}
HKEY_CLASSES_ROOT\interface\{ee06d877-386f-4a44-a9ed-75eb6c3e7e80}
HKEY_CLASSES_ROOT\interface\{ee06d877-386f-4a44-a9ed-75eb6c3e7e81}
HKEY_CLASSES_ROOT\interface\{f8d96098-e9f7-42e1-88f3-a3719d70ea8d}
HKEY_CLASSES_ROOT\my404.bho404
HKEY_CLASSES_ROOT\my404.bho404.1
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_CLASSES_ROOT\typelib\{12ee7a5e-0674-42f9-a76c-000000004d00}
HKEY_CLASSES_ROOT\typelib\{7313bfd0-62c4-40f4-8041-3fbdbc80ac07}
HKEY_CLASSES_ROOT\typelib\{7313bfd0-62c4-40f4-8041-3fbdbc80ac08}
HKEY_CLASSES_ROOT\typelib\{7eb64065-dfd1-41b0-99d7-6ba3e0a15916}
HKEY_CLASSES_ROOT\typelib\{85c2c2a1-3f20-4ead-adc3-bd3217391543}
HKEY_CLASSES_ROOT\typelib\{ba87b15b-7de7-4da4-8bf7-5c616d6c99da}
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarbho
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarbho.1
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarname
HKEY_CLASSES_ROOT\_atl_generated.searchtoolbarname.1
HKEY_CURRENT_USER\software\a70f6a1d-0195-42a2-934c-d8ac0f7c08eb
HKEY_CURRENT_USER\software\popup stopper
HKEY_LOCAL_MACHINE\software\classes\clsid\{337d0c1d-4053-4fab-af2b-45c2f7b0faa7}
HKEY_LOCAL_MACHINE\software\classes\clsid\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d7258abe-571f-4dc2-abd1-8393b13b1269}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{f20ae630-6de2-43ca-a988-7cd40c36ef0b}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{12ee7a5e-0674-42f9-a76b-000000004d00}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{2cf0b992-5eeb-4143-99c0-5297ef71f444}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\extensions\{07b7f771-1b8e-4b7b-823e-ffac1732aa9e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{12ee7a5e-0674-42f9-a76a-000000004d00}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{2cf0b992-5eeb-4143-99c0-5297ef71f443}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{2cf0b992-5eeb-4143-99c2-5297ef71f44a}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6d55490c-1bd4-4790-ba31-84d261316e28}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{80672997-d58c-4190-9843-c6c61af8fe97}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\letssearch
HKEY_LOCAL_MACHINE\software\{2cf0b992-5eeb-4143-99c2-5297ef71f44b}

BrowserAid Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing BrowserAid:

you can run trial version of ExterminateIt, or remove BrowserAid manually.


To completely manually remove BrowserAid malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with BrowserAid.


Read also:
Vxidl.AXT Trojan Symptoms
Agent.BJO Downloader Removal
Bombardm Trojan Cleaner
CandyMan Trojan Cleaner

0 comments:

Post a Comment