Adware.Getter

ZulaZuza By ZulaZuza in Adware | 0 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...

Adware.Getter Description

Adware.Getter is an adware infection that can be used to display bogus adverts and install malicious software. Adware.Getter can compromise personal information if it is able to install malware that opens up your system to outside attackers. Manual removal of Adware.Getter can be difficult to perform because it is able to load into memory at startup.

Type: Adware

How Can You Detect Adware.Getter?

 
 

Download SpyHunter’s Detection Scanner
to Detect Adware.Getter.

 
 

Adware.Getter Technical Report

As new Adware.Getter details are reported by our customers and findings from our Threat Research Center, we will update this section.

The following Adware.Getter files with its MD5s were created in the system:

File Name File Size MD5
isadd.dll 13312 aee2b1d1a03b82e1f818fa9b59c0567d
isaddon.dll 11264 6c5cc8da5f96d54cc3c04e3cb2c85dcf
isaddon.dll 13312 745cc5664190667208af61d6263ef631
isadd.dll 13312 c99dd2ca2f531ccc43cf3314c1eb3aee
isadd.dll 13312 737997a8fdefe07daaee81f1f7a6cdb3
isadd.dll 12800 295986e2c3163e5435c9719dc84b84da
isaddon.dll 11264 fe467f717222cdf05ec7591e02bf421b
isaddon.dll 11776 519bdd6215f0374076d60855e114ae3c
isaddon.dll 14336 cd62e8005af8b61b2e08df83a0775bd7

Adware.Getter has typically the following processes in memory:

  • isaddon.dll
  • iesplugin.dll

Adware.Getter creates the following registry entries:

  • HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{202a961f-23ae-42b1-9505-ffe3c818d717}
  • HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{192c5b4a-3efd-40c7-9f99-c472deb8efc0}
  • HKEY_LOCAL_MACHINESoftwareMicrosoftInternet ExplorerToolbar{479fd0cf-5be9-4c63-8cda-b6d371c67bd5}
  • HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{4734044c-7427-43d8-adbe-df942e52bef2}
  • HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{67982BB7-0F95-44C5-92DC-E3AF3DC19D6D}
  • HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{ae18da4e-be15-4925-81bb-890c04af0200}
  • HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{d869742a-e5d2-4624-96c7-aae26170665e}

Important Article Disclaimer

ESG Support Center

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Furl
  • StumbleUpon
  • Technorati
  • YahooMyWeb
This entry was posted on 10/1/09 and is filed under Adware. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Poll

How much money have you spent trying to rid your PC of spyware?
View Results
Follow Us on Twitter

Archives

Home Sitemap RSS Feed Privacy Policy End User License Agreement Copyright 2003-2010. Enigma Software Group USA, LLC. All Rights Reserved.