Exterminate It! Antimalware

malpedia

Known threats:699,742 Last Update:October 20, 11:34

Testimonials

Just a quick word to say thanks. After trying unsuccessfully to remove some stubborn trojans with various other tools, Exterminate It has done the trick!

Nice work!

Nicola

ChinAd- Registry Keys List

This is a complete list of ChinAd registry keys collected by Exterminate It!. If you find any of these registry keys on your PC, your computer is very likely to be infected with the ChinAd - pua.

IMPORTANT: Because the registry is a core component of your Windows system, it is strongly recommended that you back up the registry before you begin deleting keys and values. For information about backing up the Windows registry, refer to the Registry Editor online help.
  • HKEY_CLASSES_ROOT\GeePlayer.dir
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/npxluser
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_wma
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_MP3
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_ape
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WpSvc
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DrToolKrl
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_WAV
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_TTA
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_OGG
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_MP2
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_MP1
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_M4A
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_FLAC
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_CUE
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_CDA
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_AC3
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_AAC
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_wma
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_WAV
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_TTA
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_OGG
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_MP3
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_MP2
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_MP1
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_M4A
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_FLAC
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_CDA
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_ape
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_AC3
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_AAC
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_CUE
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_KWM
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_KWM
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_WV
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_OPUS
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_DSF
  • HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\kwfile_DFF
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\KwMusic7
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_WV
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_OPUS
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_DSF
  • HKEY_CURRENT_USER\SOFTWARE\Classes\kwfile_DFF
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\GeePlayer.exe
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\HpSvc
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\MozillaPlugins\@xunlei.com/npxluser
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\MozillaPlugins\@xunlei.com/npxunlei;version=1.0.0.2
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\MozillaPlugins\@xunlei.com/npxunlei;version=1.0.0.1
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\MozillaPlugins\@xunlei.com/npaplayer
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\MozillaPlugins\@xunlei.com/DapCtrl
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\App Paths\GeePlayer.exe
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 2015109
  • HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\GeePlayer.exe
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/npaplayer
  • HKEY_CLASSES_ROOT\WOW6432Node\CLSID\{f72c8153-7140-4fee-8f69-ca4579d71195}
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f72c8153-7140-4fee-8f69-ca4579d71195}
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cytdsk
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\MozillaPlugins\@xunlei.com/npxlgamebox
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{97510fac-ed50-46bf-b2a1-25f434bf1030}
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmaMaster
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/npxunlei;version=1.0.0.2
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/DapCtrl
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/npxunlei;version=1.0.0.1
  • HKEY_CLASSES_ROOT\CLSID\{97510fac-ed50-46bf-b2a1-25f434bf1030}
  • HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\aeppgfljjlhcnnbddcccndljodpdkpdh
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AppCheckEnv
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wfcre
  • HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\MozillaPlugins\@xunlei.com/DapCtrlPlugin
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC928540-3D30-4719-A5EF-560B179A9E01}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KwMusic7
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/DapCtrlPlugin
  • HKEY_CLASSES_ROOT\CLSID\{f72c8153-7140-4fee-8f69-ca4579d71195}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f72c8153-7140-4fee-8f69-ca4579d71195}
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/npxlgamebox
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TMCheckVersion
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wtmksyssrv
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wtmkussrv
  • HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ADSPIDEREX
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KwMusic6
  • HKEY_LOCAL_MACHINE\SOFTWARE\Thunder Network\Xmp
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4997Box Legend Files Update Ver 2017419
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@xunlei.com/KKVA
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\160WifiNetPro
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\160wifi
  • HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@jyrili.com/yzwebAssist
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\weiduan Legend Files Update Ver 201737
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 20151014
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\jjk Files Update Ver 20151029
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 2015107
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\jjk Files Update Ver 2015114
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 20151010
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 2015108
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 20151013
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\wer Files Update Ver 2015123
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\wer Files Update Ver 2015121
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 2015922
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\jjk Files Update Ver 20151028
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 2015925
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 20151011
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash box Files Update Ver 20151012