Fast-Search

By GoldSparrow in Potentially Unwanted Programs

Threat Scorecard

Ranking: 5,064
Threat Level: 20 % (Normal)
Infected Computers: 72,109
First Seen: June 30, 2015
Last Seen: January 26, 2024
OS(es) Affected: Windows

Power users may be interested to try out the Fast-Search browser enhancer (also seen as Fast-Search Apps) that promises to improve their search capabilities. However, security authorities perceive the Fast-Search browser enhancer as a Potentially Unwanted Program (PUP) with adware capabilities. The Fast-Search enhancer has a rather vague EULA (End-user License Agreement) and controversial Privacy Policy. You may want to know that the Fast-Search browser enhancer does not have a publicly known developer and is supported by advertisers. Additionally, the Fast-Search app is not digitally signed and web surfers using Fast-Search may be targeted on untrusted websites via security exploits. The Fast-Search app uses DOM storage data, tracking cookies and detects your approximate geographical location to execute its operations. Web surfers using the Fast-Search app may see sponsored links from Fast-Search on Google and Bing and may be redirected to suspicious services. The Fast-Search app is fully compatible with Internet Explorer, Google Chrome, and Mozilla Firefox and may appear as a browser plugin on the 'Programs and Features' list. The Fast-Search app can be used to show banners, pop-up and pop-under windows loaded with promotions from partners. The Fast-Search enhancer may suggest you to install programs like FiveInstall, AntivirSolution and IB Updater Service that could decrease your computer performance and open attack vectors for web-based attacks. Responsible computer users may want to remove the Fast-Search app and install a trustworthy anti-malware shield to protect their files and secure their Internet traffic.

Aliases

7 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AVG Generic36.BOWX
Ikarus Win32.SuspectCrc
Panda Trj/Genetic.gen
McAfee-GW-Edition Artemis
DrWeb Adware.Superfish.171
Symantec Trojan.Gen.2
McAfee Artemis!84DDCB100857

SpyHunter Detects & Remove Fast-Search

File System Details

Fast-Search may create the following file(s):
# File Name MD5 Detections
1. kl.dll 79c655fd4484febcd5fad00c1f4146a0 41
2. updengine.exe 0207774e2920c215f270ddc323995a9f 34
3. updengine.exe 2c477a0ffdb41f4fddf6203dcbf6388a 31
4. kl.dll 7308f2eb0b898bbd29cb33ee0744bf1d 25
5. updengine.exe b845f073097b0eda68fab782d3dd3cb6 24
6. updengine.exe 19dc0d2ff48a835ffa6119228395620c 17
7. updengine.exe eaa88cbd6868d4fc35aca27e4f7769b7 14
8. updengine.exe afc335857d059e58b91c3a92f446de97 13
9. updengine.exe 24e17104869b48f7bfe28fb70fbd9ceb 11
10. kl.dll 42d0cac3eb55fdc980a5f265f90163a2 10
11. kl.dll c19269baab0946bdb4faa530bba80dd1 10
12. updengine.exe 4669bfb041e261f99ed6511d23395451 7
13. kl.dll bc6e1a6c9a5b17eb6dafe058ad138455 6
14. updengine.exe 555a777bd52bc69a82ec1c8aca61f657 6
15. kl.dll f584416427398a85a38af8752dc2e256 5
16. updengine.exe ce0be74a402da602fcf12731846ec026 5
17. updengine.exe 43d91e0d0432bfc5aa40cd11b7f3f2e5 5
18. updengine.exe 79850e0267c48ab2c27836505911656a 4
19. kl.dll 13adc155a8e21402d0c6e9f5123bda78 3
20. updengine.exe 75b9f258607095085c576629eaa379ea 3
21. kl.dll 5f082e4575cacb0e943043e7b709f54f 2
22. kl.dll 20def2493a742ce3153627abd4efde01 2
23. updengine.exe 017fccce2eb3c2ffc7153945c808d7b4 2
24. updengine.exe 9adc7b26dbecd81d4dfe5e61327f5606 2
25. kl.dll 0b741fe1f841d7f94e3a0e226e50d2c8 1
26. freebl3.dll
27. libnspr4.dll
28. libplc4.dll
29. libplds4.dll
30. nss3.dll
31. nssckbi.dll
32. nssdbm3.dll
33. nssutil3.dll
34. smime3.dll
35. softokn3.dll
36. ssl3.dll
37. abenginecert.dll
38. ABDLL64.dll
39. ABDLL64.exe
40. abengine64.dll
41. lengine64.exe
42. ABDLL.dll
43. abengine.dll
44. abengine.exe
45. abenginep.exe
46. abenginew.exe
47. abenginewd.dll
48. lengine.exe
49. slite.exe
50. sol3007.exe
More files

Registry Details

Fast-Search may create the following registry entry or registry entries:
CLSID
{00E3D575-A24C-4BBC-A708-BCDB8BBCA6C7}
{024BF4C8-B53D-45B9-957F-D3BA9655FF39}
{025EEF9C-90F5-417E-9196-09FA4AAB4C92}
{028F96B8-C73A-4C60-B82F-3944A19B046E}
{029AF757-A988-4BDD-A744-A4C7BCEBB011}
{03F13205-38FF-4361-BECE-EE939A002FA2}
{074DCA49-F6A1-417F-B79E-D5E3ADC30330}
{0FF03983-EAA6-4628-8E7C-387B2D4F8EF2}
{176F706B-5175-479C-A3DF-32420F6FB01A}
{1BCB34DC-BA6D-4B44-B786-4E259598A7C8}
{1FAAF6AB-B931-4D05-BA12-B0ECCCCE2D0F}
{3323765B-5B83-4406-841E-473DBA4B8F29}
{34EBA76A-E745-4B18-96C9-2B8E2BA8B246}
{389562C4-59D9-40C4-966E-28DA91725FFE}
{38BE2BE8-EB8E-41D1-9D94-3B1697094D47}
{3A71C84A-1CC4-4201-B037-C81CE118D66F}
{3A8E009B-E66D-4016-87CF-EC57FA9A4BC1}
{3F8D3B31-AEB8-4ED7-8B05-5556068D6B54}
{432599E9-40CF-41E3-951A-E1E81B7B1D29}
{4AEC2270-2E5F-40C8-BE5A-E5A5264714C0}
{4D4D0357-0376-4656-A040-65AC089E84A2}
{51F7DE65-A990-4213-BDB9-C2657FA7F3F4}
{52E8E39B-2773-448F-BC20-547CD8DA4685}
{53C267B2-B01D-410F-A4DD-A32962EE55F4}
{62163814-0C94-4DC3-BA99-5E9E2420C914}
{63492C58-6CD7-4FF7-8495-06A6869643EE}
{68AEA825-D48B-4A56-87F0-6FCE988A2C48}
{6A0F07D3-F28E-4F45-8D4C-BBF8000F5BB8}
{6D5AF218-5F7E-40E0-B49D-54FFAFE2001A}
{6ED1EF08-DFF4-4252-8986-691D06C54131}
{7AF435BC-80A9-466E-938B-32E4482EBD65}
{7D215707-3E74-4E0E-A078-2C95E1CDE233}
{83E07061-02D1-41EC-8751-BB176B823C38}
{85CEBABD-A775-41E2-8B67-FE06104F06ED}
{879F721E-7F23-4B7F-B65B-F5A8F518864A}
{8804A543-42D3-4D71-9685-B0243D5526F3}
{89E46EA6-2F87-4D79-8FFA-8B264F93F54A}
{9295785F-8C01-4ED3-9322-8BE5C17CA141}
{9ECCDEFC-1C26-4BB3-B6DF-252672D9FFFA}
{9F0948E7-227A-4F1B-9849-2D8912F185A7}
{A0F322D5-6A13-4CAB-84CF-FABB5690618E}
{A471A4AA-5C18-429F-81BF-6C760941DB74}
{A5544F7B-C413-4CAC-8DB4-9A8D1986DD86}
{AC3E336C-B524-47F0-9AA2-5F67AA056086}
{AE92A5AB-E575-4487-BCC0-96D333E5346C}
{B98E44C8-7BB7-4A4A-B8D2-60874CA109B2}
{B9EE49F9-62A3-408D-858F-4ED9A23BAA24}
{BF6D8439-BAC1-4E73-94FE-9910D098AE00}
{C0A7C2B3-86D6-42AF-8221-79C9E4AD50BA}
{C622315B-3049-43D4-9B41-D4B2DC2CD706}
{C656BCEB-6B19-4992-9975-D53CEA283356}
{C68E9BB6-3DBD-4C4B-910B-C5D84A7EBB03}
{CDB85458-AE08-4106-B699-B946FF4A61CD}
{D4F14684-336F-44FC-8D9E-8A73DAE003EC}
{D5AC4B9C-8EE4-48AD-A77E-1560AD886A0B}
{D6914FD3-FD8E-45AD-8993-901E7B2759FD}
{E0106905-0EDD-4F56-BDB5-890A1F6E8F47}
{E26E880F-176C-4007-B2A7-B8F27621EC51}
{E776B534-9402-4049-87C3-089EC0F54BAF}
{F1BC674D-15D8-46C5-AC51-12AB16D67616}
{F2FB003D-07C7-4E4D-80E3-00B49468A6F4}
{F577A1BA-D82D-4BB2-8430-B767285D081D}
{F7971E81-FC71-4659-8CCE-C903576E0924}
{F811C371-1DC7-4E2F-8676-D96B85BE4AF1}
{FCFBBE24-2ADA-4D6E-A381-DEC6E3EAEE21}
File name without path
OtherSearch Inc CA 2.cer
Regexp file mask
%PROGRAMFILES%\FastSearch\[RANDOM CHARACTERS][NUMBERS].exe
%PROGRAMFILES%\FastSearch\abengine.exe
%PROGRAMFILES%\FastSearch\ACDLL.dll
%PROGRAMFILES%\FastSearch\acengine.exe
%PROGRAMFILES%\FastSearch\acengine[RANDOM CHARACTERS].dll
%PROGRAMFILES%\FastSearch\freebl3.dll
%PROGRAMFILES%\FastSearch\lengine64.exe
%PROGRAMFILES%\FastSearch\libnspr4.dll
%PROGRAMFILES%\FastSearch\libplc4.dll
%PROGRAMFILES%\FastSearch\libplds4.dll
%PROGRAMFILES%\FastSearch\nss3.dll
%PROGRAMFILES%\FastSearch\nssckbi.dll
%PROGRAMFILES%\FastSearch\nssdbm3.dll
%PROGRAMFILES%\FastSearch\nssutil3.dll
%PROGRAMFILES%\FastSearch\slite.exe
%PROGRAMFILES%\FastSearch\smime3.dll
%PROGRAMFILES%\FastSearch\softokn3.dll
%PROGRAMFILES%\FastSearch\sqlite3.dll
%PROGRAMFILES%\FastSearch\ssl3.dll
%PROGRAMFILES%\FastSearch\uninstall.exe
%PROGRAMFILES(x86)%\FastSearch\[RANDOM CHARACTERS][NUMBERS].exe
%PROGRAMFILES(x86)%\FastSearch\ACDLL.dll
%PROGRAMFILES(x86)%\FastSearch\ACDLL64.dll
%PROGRAMFILES(x86)%\FastSearch\ACDLL64.exe
%PROGRAMFILES(x86)%\FastSearch\acengine.exe
%PROGRAMFILES(x86)%\FastSearch\acengine.tlb
%PROGRAMFILES(x86)%\FastSearch\acengine[RANDOM CHARACTERS].dll
%PROGRAMFILES(x86)%\FastSearch\ACInstaller.exe
%PROGRAMFILES(x86)%\FastSearch\acwfp[RANDOM CHARACTERS].sys
%PROGRAMFILES(x86)%\FastSearch\freebl3.dll
%PROGRAMFILES(x86)%\FastSearch\lengine.exe
%PROGRAMFILES(x86)%\FastSearch\lengine.ini
%PROGRAMFILES(x86)%\FastSearch\lengine64.exe
%PROGRAMFILES(x86)%\FastSearch\libnspr4.dll
%PROGRAMFILES(x86)%\FastSearch\libplc4.dll
%PROGRAMFILES(x86)%\FastSearch\libplds4.dll
%PROGRAMFILES(x86)%\FastSearch\nss3.dll
%PROGRAMFILES(x86)%\FastSearch\nssckbi.dll
%PROGRAMFILES(x86)%\FastSearch\nssdbm3.dll
%PROGRAMFILES(x86)%\FastSearch\nssutil3.dll
%PROGRAMFILES(x86)%\FastSearch\sab3009.exe
%PROGRAMFILES(x86)%\FastSearch\slite.exe
%PROGRAMFILES(x86)%\FastSearch\smime3.dll
%PROGRAMFILES(x86)%\FastSearch\softokn3.dll
%PROGRAMFILES(x86)%\FastSearch\sol3007.exe
%PROGRAMFILES(x86)%\FastSearch\sqlite3.dll
%PROGRAMFILES(x86)%\FastSearch\ssl3.dll
%PROGRAMFILES(x86)%\FastSearch\tet3008.exe
%PROGRAMFILES(x86)%\FastSearch\uninstall.exe
%TEMP%\zdengine.log
%TEMP%\ziengine.ini.log
%WINDIR%\System32\abengineOff.ini
%WINDIR%\System32\acengine.dll
%WINDIR%\System32\acengine64.dll
%WINDIR%\System32\acengineOff.ini
%WINDIR%\system32\drivers\Lace_tdi_x64.sys
%WINDIR%\system32\drivers\Lace_tdi_x86.sys
%WINDIR%\system32\drivers\Lace_wpf_x64.sys
%WINDIR%\system32\drivers\Lace_wpf_x86.sys
%WINDIR%\system32\Drivers\zdwfp.sys
%WINDIR%\System32\Tasks\gze3012
%WINDIR%\System32\Tasks\kol3015
%WINDIR%\System32\Tasks\rdf3019
%WINDIR%\System32\Tasks\sab3009
%WINDIR%\System32\Tasks\spw3016
%WINDIR%\System32\Tasks\tet3008
%WinDir%\System32\Tasks\wbs3030
%WinDir%\System32\Tasks\yve3032
%WINDIR%\System32\Tasks\zyh3018
%WINDIR%\System32\zcengine64.dll
%WINDIR%\System32\zcengineOff.ini
%WINDIR%\system32\zdengine.dll
%WINDIR%\System32\zdengine64.dll
%WINDIR%\System32\zdengineOff.ini
%WINDIR%\SysWOW64\abengineOff.ini
%WINDIR%\SysWOW64\acengine.dll
%WINDIR%\SysWOW64\acengineOff.ini
%WINDIR%\SysWOW64\zcengine.dll
%WINDIR%\SysWOW64\zcengineOff.ini
%WINDIR%\SysWOW64\zdengine.dll
%WINDIR%\SysWOW64\zdengineOff.ini
%WINDIR%\Temp\abengine.log
%WINDIR%\Temp\acengine.log
%WINDIR%\Temp\zcengine.log
%WINDIR%\Temp\zdengine.log
SOFTWARE\Classes\AppID\abengine.EXE
SOFTWARE\Classes\AppID\zdengine.EXE
SOFTWARE\Classes\AppID\{25B1494D-230A-42CF-BBF6-EC73868D13DC}
SOFTWARE\Classes\AppID\{D1AACF27-6B3D-47D7-AF24-5D48828C0953}
SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\fastsearchext
SOFTWARE\Classes\Wow6432Node\AppID\abengine.EXE
SOFTWARE\Classes\Wow6432Node\AppID\{D1AACF27-6B3D-47D7-AF24-5D48828C0953}
SOFTWARE\Fast-Search
Software\FastSearch
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\sab3009
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\tet3008
SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\wbs3030
SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\fastsearchext
SOFTWARE\OtherSearch
Software\QuickSearch
SOFTWARE\Wow6432Node\Classes\AppID\abengine.EXE
SOFTWARE\Wow6432Node\Classes\AppID\acengine.EXE
SOFTWARE\Wow6432Node\Classes\AppID\zdengine.EXE
SOFTWARE\Wow6432Node\Classes\AppID\{25B1494D-230A-42CF-BBF6-EC73868D13DC}
SOFTWARE\Wow6432Node\Classes\AppID\{D1AACF27-6B3D-47D7-AF24-5D48828C0953}
SOFTWARE\Wow6432Node\Fast-Search
Software\Wow6432Node\FastSearch
SOFTWARE\Wow6432Node\OtherSearch
Software\Wow6432Node\QuickSearch
SOFTWARE\Wow6432Node\zdengine
SOFTWARE\zdengine
SYSTEM\ControlSet001\Control\SafeBoot\Network\abengine
SYSTEM\ControlSet001\Control\SafeBoot\Network\acengine
SYSTEM\ControlSet001\Control\SafeBoot\Network\zdengine
SYSTEM\ControlSet001\Control\SafeBoot\Network\zdwfp
SYSTEM\ControlSet001\Enum\Root\LEGACY_LACE514
SYSTEM\ControlSet001\services\acengine
SYSTEM\ControlSet001\services\Lace514
SYSTEM\ControlSet001\services\OtherSearch
SYSTEM\ControlSet001\services\zdengine
SYSTEM\ControlSet001\services\zdwfp
SYSTEM\ControlSet002\Control\SafeBoot\Network\abengine
SYSTEM\ControlSet002\Control\SafeBoot\Network\acengine
SYSTEM\ControlSet002\Control\SafeBoot\Network\zdengine
SYSTEM\ControlSet002\Enum\Root\LEGACY_LACE514
SYSTEM\ControlSet002\services\acengine
SYSTEM\ControlSet002\services\Lace514
SYSTEM\ControlSet002\services\OtherSearch
SYSTEM\ControlSet002\services\zdengine
SYSTEM\CurrentControlSet\Control\SafeBoot\Network\abengine
SYSTEM\CurrentControlSet\Control\SafeBoot\Network\acengine
SYSTEM\CurrentControlSet\Control\SafeBoot\Network\zdengine
SYSTEM\CurrentControlSet\Control\SafeBoot\Network\zdwfp
SYSTEM\CurrentControlSet\Enum\Root\LEGACY_LACE514
SYSTEM\CurrentControlSet\services\acengine
SYSTEM\CurrentControlSet\services\Lace514
SYSTEM\CurrentControlSet\services\OtherSearch
SYSTEM\CurrentControlSet\services\zdengine
SYSTEM\CurrentControlSet\Services\zdwfp

Directories

Fast-Search may create the following directory or directories:

%LOCALAPPDATA%\zcengine
%PROGRAMFILES%\Fast-Search
%PROGRAMFILES%\OtherSearch
%PROGRAMFILES(x86)%\Fast-Search
%PROGRAMFILES(x86)%\OtherSearch
%WINDIR%\SysWOW64\config\systemprofile\AppData\Local\abengine
%WINDIR%\SysWOW64\config\systemprofile\AppData\Local\acengine
%WINDIR%\SysWOW64\config\systemprofile\AppData\Local\zcengine
%WINDIR%\SysWOW64\config\systemprofile\AppData\Local\zdengine
%appdata%\fastsearch

Related Posts

Trending

Most Viewed

Loading...