Dmitry Sokolov recommends UnHackMe!
UnHackMe is a powerful tool against malware.UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!
AdWare.W32.MySearch also known as Application.Win32.MyWebSearch.WE, W32.HfsAdware.1166, MyWebSearch.J (v).
Malware Analysis of AdWare.W32.MySearch – T8MEDINT.EXE
Created files:
%Program Files%\SafePCRepair\SPR.exe
%Program Files%\SafePCRepair\SPR.exe.config
%Program Files%\SafePCRepair\t8MedInt.exe
%Program Files%\SafePCRepair\TaskDialog.dll
%Program Files%\SafePCRepair\TooltabExtension.dll
Autostart registry keys:
HKLM\SOFTWARE\CLASSES\CLSID\{7D6E502F-02F7-46E9-AA46-D3364038B6F7}\LOCALSERVER32\: “%SYSTEMDRIVE%\PROGRA~1\SAFEPC~1\IOLOTO~1.EXE”
HKLM\Software\Classes\CLSID\{B680F041-9EDD-436C-8025-C6708916E654}\InprocServer32\: “%Program Files%\SafePCRepair\TooltabExtension.dll”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Mindspark SafePCRepair\DisplayName: “SafePCRepair”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Mindspark SafePCRepair\UninstallString: “”%Program Files%\SafePCRepair\uninstall.exe” “/U:%Program Files%\SafePCRepair\Uninstall\uninstall.xml””
HKLM\System\CurrentControlSet\services\ioloService\ImagePath: “%Program Files%\SafePCRepair\ioloToolService.exe”
HKLM\System\CurrentControlSet\services\ioloService\DisplayName: “ioloToolService”
Detected by UnHackMe:
T8MEDINT.EXE
Default location: %PROGRAM FILES%\SAFEPCREPAIR\T8MEDINT.EXE
Dropper hash(md5): 9d4fd9130821921a18fa523c5c0c6daa
UnHackMe
removes malware invisible for your antivirus!
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.