00reddragon

00reddragon is an adware bundler that installs Adware-Purityscan (Outerinfo) with itself.Purityscan scans Internet Explorer files such like: browser, cache, history, and cookies for adult related material. After scanning these files for adult related keywords then ads will be served up to your computer.

General information:

Malware Name: 00reddragon
Malware Type: Adware Bundler
Company Name: Unknown
Company URL:
Threat Level: Low Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

Spyware Description:

00reddragon is an adware bundler that installs Adware-Purityscan (Outerinfo) with itself.Purityscan scans Internet Explorer files such like: browser, cache, history, and cookies for adult related material. After scanning these files for adult related keywords then ads will be served up to your computer.

Characteristics/Symptoms:

    -> It installs Adware-Purityscan (Outerinfo) with itself. -> Purityscan scans Internet Explorer files such like: browser, cache, history, and cookies for adult related material. After scanning these files for adult related keywords then ads will be served up to your computer.

Additional information might be found here:

google Search at Google for 00reddragon
bing Search at Bing for 00reddragon
yahoo Search at Yahoo for 00reddragon

Processes Running:

00reddragon.zip

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\All Users\Start Menu\Programs\AAA Screensavers\AAA Screensavers Downloads.lnk 471 Shortcut
C:\Documents and Settings\[USER]\Start Menu\Programs\Outerinfo\Uninstall.lnk 1487 Shortcut
C:\Program Files\Outerinfo\FF\components\FF.dll 45056 Application Extension

Folder information Created after Installation:

Folder Location
C:\Program Files\AAA Screensaver
C:\Program Files\AAA Screensavers\00reddrago

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\CLSID\{2E9D4C81-9F27-4c14-B804-7B0F6BC88A4F}\InprocServer32 ThreadingModel
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Installer\Features\408871709A0670846A329905E392D64F MainFeature
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Installer\Products\408871709A0670846A329905E392D64F