Systweak Spyware Library
Systweak Spyware Library text
More than 21875 spyware signatures and growing
Microsoft Gold Certified Partner
Search in:
Adtool.MyWebSearch Analysis Report
Threat Submitted On: 10 Nov 2008
Threat Analysed On: 11 Nov 2008
Threat Updated On: 11 Sept 2009
Type : Adtool
Symptoms of sentinel
  • Program that is developed to creep into a computer system without user’s consent
  • Has the capability to amend the system settings, distort the registry and annihilate personal data
Information
Alias : [Not Available]
Md5 Hash : [Not Available]
File Size : [ Not Available ]

Technical Details

Here are the Technical findings of our analysis team after analyzing this malware in detail :-

Creates the following infected Files on user's System
Note:
Delete the following Files to remove Infection
File: the registry sentinel.lnk
Path : %homepath%\desktop

Md5Hash :6796ec7f529d4feced5ca3db1feff13a ( 879 bytes)
File: the web sentinel.lnk
Path : %homepath%\desktop

Md5Hash :389d1fffba574ac113fe72fdc6338d8e ( 819 bytes)
File: the registry sentinel.exe
Path : %programfiles%\the registry sentinel

Md5Hash :162a3694cc7804578ceda7948bf388bd ( 1923584 bytes)
File: uninstallcleanreg.exe
Path : %programfiles%\the registry sentinel

Md5Hash :bf998251f6a23c611b5b2c65fdded550 ( 47818 bytes)
File: the web sentinel.exe
Path : %programfiles%\the web sentinel

Md5Hash :8e455b05255f87c5dbcf663ce0352982 ( 1533440 bytes)
File: uninstallsentinel.exe
Path : %programfiles%\the web sentinel

Md5Hash :2a327bd5832cd1df53384c30b522f93e ( 47951 bytes)
File: the registry sentinel.lnk
Path : %userprofile%\start menu\programs\the registry sentinel

Md5Hash :2403d2ae4dbfb614b6efee10cc550d00 ( 891 bytes)
File: uninstallcleanreg.lnk
Path : %userprofile%\start menu\programs\the registry sentinel

Md5Hash :f057119b4ae42aa6715678e31e710ec6 ( 607 bytes)
File: the web sentinel.lnk
Path : %userprofile%\start menu\programs\the web sentinel

Md5Hash :e35ccf45a00f53c86e07b13d2502808e ( 831 bytes)
File: uninstallsentinel.lnk
Path : %userprofile%\start menu\programs\the web sentinel

Md5Hash :37042f843dc7c3abcb717aade2795b84 ( 583 bytes)
File: iebho.dll
Path : %windir%

Md5Hash :c466680ca2d27e1d87490d29e03b2509 ( 449536 bytes)
File: setupc.exe
Path : %windir%

Md5Hash :5253c515954b69c6ec144cce8ab882b9 ( 1469518 bytes)
File: setups.exe
Path : %windir%

Md5Hash :0633a1d3b8f2936717bac03a67929038 ( 1358310 bytes)
File: [randomname].exe
Path : %workingdir%

Skip Navigation Links.
Collapse Md5Hash :Md5Hash :
162a3694cc7804578ceda7948bf388bd ( 1923584 bytes)
317ceeef6d22dc0d1a2494896518c08f ( 2866259 bytes)
The following Registry Values are added to the provided Registry Keys :-
Note:
Delete the added Values from the Key to remove Infection
|__ Value Added :
the registry sentinel = "%programfiles%\the registry sentinel\the registry sentinel.exe"
|__ Value Added :
the web sentinel = "%programfiles%\the web sentinel\the web sentinel.exe"

NOTE:

1. %homepath% Refers to the windows current user's profile folder. By default it is 'C:\Documents and Settings\[user]'
2. %programfiles% Refers to the program files folder. By default it is 'C:\Program Files'
3. %userprofile% Refers to the windows current user's profile folder. By default it is 'C:\Documents and Settings\[user]'
4. %windir% Refers to the windows root folder. By default it is 'C:\Windows'
5. %workingdir% Refers to the current directory in which user is working.

Important: We strongly recommend that you backup the Registry before making any changes to it. Incorrect changes to the Registry can result in permanent data loss or corrupted Files. Modify the malicious\suspicious Subkeys only.

Click Here for more spywarelib.com recommended PC Security and Optimization Tools

To modify registry entries in Windows Operating System:
Follow Steps:
1. Click Start > Run
2. Type “regedit” : to open registry editor
3. Navigate to required registry Key from the Left Tree control and modify accordingly.


Microsoft Gold Certified Partner

© Systweak Inc., 1999-2011 All rights reserved.