013744 (013744.exe)
013744 (013744.exe) is an adware bundler that installs Adware-Purityscan (Outerinfo) with itself.Purityscan scans Internet Explorer files such like: browser, cache, history, and cookies for adult related material. After scanning these files for adult
related keywords then ads will be served up to your computer.
General information:
| Malware Name: |
013744 (013744.exe) |
| Malware Type: |
Adware Bundler |
| Company Name: |
Unknown |
| Company URL: |
|
| Threat Level: |
Low Risk |
| Operating System: |
WIN XP |
| Installation Type: |
Installed through EXE |
| Operation: |
Time of After Installation |
Company Description:
Spyware Description:
013744 (013744.exe) is an adware bundler that installs Adware-Purityscan (Outerinfo) with itself.Purityscan scans Internet Explorer files such like: browser, cache, history, and cookies for adult related material. After scanning these files for adult
related keywords then ads will be served up to your computer.
Characteristics/Symptoms:
-> It installs Adware-Purityscan (Outerinfo) with itself. -> Purityscan scans Internet Explorer files such like: browser, cache, history, and cookies for adult related material. After scanning these files for adult related keywords
then ads will be served up to your computer.
Additional information might be found here:
Processes Running:
013744.zip
File information Created after Installation:
| File Location |
Size (Bytes) |
Type |
| C:\Documents and Settings\All Users\Start Menu\Programs\AAA Screensavers\AAA Screensavers Downloads.lnk |
471 |
Shortcut |
| C:\Documents and Settings\[USER]\Start Menu\Programs\Outerinfo\Uninstall.lnk |
1569 |
Shortcut |
| C:\Program Files\Outerinfo\FF\install.rdf |
766 |
RDF File |
Folder information Created after Installation:
| Folder Location |
| C:\Program Files\AAA Screensaver |
| C:\Program Files\AAA Screensavers\01374 |
Registry information Created after Installation:
| Main Registry Key |
Sub Registry Key |
Key Value Name |
| HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\AppID\OINAnalytics.DLL |
AppID |
| HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\CLSID\{2E9D4C81-9F27-4c14-B804-7B0F6BC88A4F} |
|
| HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\CLSID\{2E9D4C81-9F27-4c14-B804-7B0F6BC88A4F}\InprocServer32 |
ThreadingModel |