Top 10 Alerts
Latest 10 Malware Files
Testimonials
Wow,
I really can't believe you got back to me. I had bought and paid for 2 other Malware programs in the last 5 days, X********E & P*********c Anti-Spyware, and sent them the same message. I paid for yours and got 2 others from friends that where cracked copies N****n & S*******r but no one has got back to me. I have not heard a peep out of them but You have got back to me.
Well done.
Your faithfully ( a customer forever)
Richard D. P.
CoolWebSearch Registry Values
Scan your Windows registry for CoolWebSearch
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcjdkj0ep5n=[%PROFILE_TEMP%]\.tt168.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhc5htj0evbt=[%WINDOWS%]\Temp\.tt1F.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run, anhao=[%SYSTEM%]\mui\svchost.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcneaj0e35l=[%PROFILE_TEMP%]\.tt4.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcvv0j0evdr=[%WINDOWS%]\Temp\.tt5.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcg2nj0e1c1=[%LOCAL_APPDATA%]\Microsoft\CD Burning\.tt61.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhce05j0ead0=[%PROFILE_TEMP%]\.ttDF88.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhccg7j0ejdp=[%PROFILE_TEMP%]\.ttBC1D.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhceogj0ecf3=[%WINDOWS%]\Temp\.tt9.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhca03j0eg3t=[%PROFILE_TEMP%]\.tt6.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcetkj0e7d5=[%PROFILE%]\Local Settings\Temp\.tt10.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhc7ggj0egtw=[%WINDOWS%]\Temp\.tt7C9.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcednj0endr=[%WINDOWS%]\Temp\.tt6.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcjjdj0etkm=[%PROFILE_TEMP%]\.tt5.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcjcuj0e97c=[%PROFILE_TEMP%]\.tt2D20.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhc5opj0ev4c=[%WINDOWS%]\Temp\.tt7.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcvsjj0eraa=[%PROFILE_TEMP%]\.tt15.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcc8jj0enca=[%PROFILE_TEMP%]\.tt5.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhc1w2j0e90h=[%PROFILE_TEMP%]\.tt6C95.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inrhcgrkj0ee0p=[%PROFILE_TEMP%]\.ttE.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MbarInstall=[%PROFILE_TEMP%]\tem9C.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run, winlogon=C:\CONFIG\svchost.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\winDBB.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win1037.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 8.tmp.exe=[%PROFILE_TEMP%]\8.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices, Windows Security Assistant=[%SYSTEM%]\rundll32.vbe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Windows Security Assistant=[%SYSTEM%]\rundll32.vbe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Windows Security Assistant=[%SYSTEM%]\rundll32.vbe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MbarInstall=[%PROFILE_TEMP%]\tem7C.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, [Ephemeral 2.5] by TreeHugger, =[%PROFILE_TEMP%]\C.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MbarInstall=[%PROFILE_TEMP%]\tem19.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MbarInstall=[%PROFILE_TEMP%]\tem216.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MbarInstall=[%PROFILE_TEMP%]\tem66.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MbarInstall=[%PROFILE_TEMP%]\tem346.tmp.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, aupd=[%SYSTEM%]\sysvcs.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar, {0E1230F8-EA50-42A9-983C-D22ABC2EED3B}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run, 5T19I3B27A=[%WINDOWS%]\svchost.exe
- HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run, svchost.exe=[%PROGRAM_FILES_COMMON%]\svchost.exe
- HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run, svchost.exe=[%WINDOWS%]\svchost.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 126.tmp.exe=[%PROFILE_TEMP%]\126.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 3A3.tmp.exe=[%PROFILE_TEMP%]\3A3.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 3A4.tmp.exe=[%PROFILE_TEMP%]\3A4.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 4.tmp.exe=[%PROFILE_TEMP%]\4.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 5.tmp.exe=[%PROFILE_TEMP%]\5.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 6.tmp.exe=[%PROFILE_TEMP%]\6.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win1D24.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win28B8.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win340.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win35D.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win3842.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win52ED.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win7C0D.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\win??.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\winBFA5.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\winC02.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\winD43.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\winD58.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avp=[%WINDOWS%]\TEMP\winF.tmp.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, inetsrv=[%SYSTEM%]\inetsrv.exe
Scan your system registry for FREE


CURIOLAB S.M.B.A., Amagertorv 15, 2, 1160 Copenhagen K, Denmark, +45.36965533
