AdwareBot

AdwareBot

Found: 
2008-02-26
Known system changes: 

Created Files

  • %CommonDesktop%AdwareBot*.lnk
  • %Windir%Tasks\AdwareBot Scheduled Scan.job
  • %ApplicationData%Microsoft\Internet Explorer\Quick Launch\AdwareBot.lnk
  • %CommonDesktop%AdwareBot.lnk
  • Installer\{C7627E29-F3F5-4121-BE15-4D897D68DCA6}

Created Folders

  • %ApplicationData%AdwareBot
  • %ProgramFiles%AdwareBot
  • %Windir%Installer\{E780C828-E8B2-4E62-A8D4-1A1F17CACFB1}
  • %CommonStartMenu%Programs\AdwareBot
  • %Windir%Installer\{D7A07D87-3F5E-4A1C-8B77-24089CE512BD}
  • %Windir%Installer\{6ABC4127-3449-49E4-988A-F52EA444F4A1}
  • %Windir%Installer\{51D53A32-E009-41F7-9065-6289B088EF97}
  • %Windir%Installer\{CD66B61B-3B4B-4C7B-922B-752CB929FD54}
  • %Windir%Installer\{8D2F70E7-3EAD-4814-B8A4-9605CE60663D}
  • %Windir%Installer\{85CF04F3-D97F-443B-9F8A-4DF231C1079C}
  • %Windir%Installer\{B49694AF-B5C8-4CE5-9C49-5E6CCD1F52E4}
  • %Windir%Installer\{7DE13C90-8F4E-4548-A0AC-1B501D660D43}
  • %Windir%Installer\{8A09C1FF-9964-4F1B-9485-973D1C694E5F}
  • %Windir%Installer\{842D36A7-2D58-4DD3-B949-AC63CC5EC637}
  • %Windir%Installer\{D6709256-3269-4898-A529-9C64332C75D9}
  • %Windir%Installer\{DEDA4884-F271-44FF-9858-664D278FEF96}
  • %Windir%Installer\{9FEE6863-3EE0-4E99-B58E-270EBC7EF601}
  • %Windir%Installer\{66D5619E-818B-4619-942D-17E9C722B032}

Registry Entries

  • Key: HKEY_CURRENT_USER\software\adwarebot
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\clsid\{56598b06-5edf-4dd3-8e3c-1c97ad21987b}
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\828c087e2b8e26e48a4da1f171acfc1b
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\828c087e2b8e26e48a4da1f171acfc1b
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\upgradecodes\3ba493e399df23647b4968681e4173c8
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\controlpanel\namespace\{56598b06-5edf-4dd3-8e3c-1c97ad21987b}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\upgradecodes\3ba493e399df23647b4968681e4173c8
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{e780c828-e8b2-4e62-a8d4-1a1f17cacfb1}
  • Value:
  • Data:
  • Key: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
  • Value: adwarebot
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\documents and settings\all users\start menu\programs\adwarebot\
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\program files\adwarebot\
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\program files\adwarebot\addons\
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{e780c828-e8b2-4e62-a8d4-1a1f17cacfb1}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\820a9d8b7e7a5824197164cfd9dc99fc
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\820a9d8b7e7a5824197164cfd9dc99fc
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{b8d9a028-a7e7-4285-9117-46fc9dcd99cf}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\78d70a7de5f3c1a4b8774280c95e21db
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\78d70a7de5f3c1a4b8774280c95e21db
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\program files\adwarebot\filterdrv\
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{d7a07d87-3f5e-4a1c-8b77-24089ce512bd}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\7214cba694434e9489a85fe24a444f1a
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\7214cba694434e9489a85fe24a444f1a
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{6abc4127-3449-49e4-988a-f52ea444f4a1}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{6abc4127-3449-49e4-988a-f52ea444f4a1}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\23a35d15900e7f14095626980b88fe79
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\23a35d15900e7f14095626980b88fe79
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{51d53a32-e009-41f7-9065-6289b088ef97}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{51d53a32-e009-41f7-9065-6289b088ef97}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\b16b66dcb4b3b7c429b257c29b92df45
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\b16b66dcb4b3b7c429b257c29b92df45
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{cd66b61b-3b4b-4c7b-922b-752cb929fd54}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{cd66b61b-3b4b-4c7b-922b-752cb929fd54}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\7e07f2d8dae341848b4a6950ec0666d3
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\7e07f2d8dae341848b4a6950ec0666d3
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{8d2f70e7-3ead-4814-b8a4-9605ce60663d}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{8d2f70e7-3ead-4814-b8a4-9605ce60663d}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\3f40fc58f79db344f9a8d42f131c70c9
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\3f40fc58f79db344f9a8d42f131c70c9
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{85cf04f3-d97f-443b-9f8a-4df231c1079c}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{85cf04f3-d97f-443b-9f8a-4df231c1079c}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\fa49694b8c5b5ec4c994e5c6dcf1254e
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\fa49694b8c5b5ec4c994e5c6dcf1254e
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{b49694af-b5c8-4ce5-9c49-5e6ccd1f52e4}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{b49694af-b5c8-4ce5-9c49-5e6ccd1f52e4}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\09c31ed7e4f884540acab105d166d034
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\09c31ed7e4f884540acab105d166d034
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{7de13c90-8f4e-4548-a0ac-1b501d660d43}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{7de13c90-8f4e-4548-a0ac-1b501d660d43}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\ff1c90a84699b1f4495879d3c196e4f5
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\ff1c90a84699b1f4495879d3c196e4f5
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{8a09c1ff-9964-4f1b-9485-973d1c694e5f}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{8a09c1ff-9964-4f1b-9485-973d1c694e5f}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\3686eef90ee399e45be872e0cbe76f10
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\3686eef90ee399e45be872e0cbe76f10
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{9fee6863-3ee0-4e99-b58e-270ebc7ef601}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\7a63d24885d23dd49b94ca36cce56c73
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\7a63d24885d23dd49b94ca36cce56c73
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{842d36a7-2d58-4dd3-b949-ac63cc5ec637}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{842d36a7-2d58-4dd3-b949-ac63cc5ec637}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\6529076d962389845a92c94633c2579d
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\6529076d962389845a92c94633c2579d
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{d6709256-3269-4898-a529-9c64332c75d9}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{d6709256-3269-4898-a529-9c64332c75d9}\
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\adwarebot_is1
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\d4153ba0749fc8e4faab9320e520d324
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{0ab3514d-f947-4e8c-afba-39025e023d42}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{0ab3514d-f947-4e8c-afba-39025e023d42}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\features\4884aded172fff44898566d472f8fe69
  • Value:
  • Data:
  • Key: HKEY_CLASSES_ROOT\installer\products\4884aded172fff44898566d472f8fe69
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
  • Value: c:\windows\installer\{deda4884-f271-44ff-9858-664d278fef96}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\Installer\Features\E9165D66B818916449D2719E7C220B23
  • Value:
  • Data:
  • Key: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
  • Value: AdwareBot
  • Data: C:\Program Files\AdwareBot\AdwareBot.exe -boot
  • Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders
  • Value: C:\Program Files\AdwareBot\
  • Data: 1
  • Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders
  • Value: C:\WINDOWS\Installer\{66D5619E-818B-4619-942D-17E9C722B032}\
  • Data:
  • Key: HKEY_CLASSES_ROOT\CLSID\{78EFBAD1-FF3C-4f1c-8360-7247FF1D3BC0}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{66D5619E-818B-4619-942D-17E9C722B032}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{66D5619E-818B-4619-942D-17E9C722B032}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel\NameSpace\{78EFBAD1-FF3C-4f1c-8360-7247FF1D3BC0}
  • Value:
  • Data:
  • Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C7627E29-F3F5-4121-BE15-4D897D68DCA6}
  • Value:
  • Data: