Categories:Adware,Spyware
Visible Symptoms:
Files in system folders:
[%SYSTEM%]\2search.exe
[%SYSTEM%]\007guard.exe
[%SYSTEM%]\2searchinstaller.exe
In order to ensure that the 2Search is launched automatically each time the system is booted, the 2Search adds a link to its executable file in the system registry:HKLM\Software\Microsoft\Windows\CurrentVersion\Run
[%SYSTEM%]\2search.exe
[%SYSTEM%]\007guard.exe
[%SYSTEM%]\2searchinstaller.exe
Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista
Detecting 2Search:
Files:
[%SYSTEM%]\2search.exe
[%SYSTEM%]\007guard.exe
[%SYSTEM%]\2searchinstaller.exe
Folders:
[%PROGRAM_FILES%]\2search
[%PROGRAM_FILES%]\the guard
Registry Keys:
HKEY_CLASSES_ROOT\googlecatch.clsiespy
HKEY_CLASSES_ROOT\typelib\{20048bb0-db68-11cf-9caf-00aa006cb425}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\uninstall\2search
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4508E20C-ACAD-11D2-9FC0-00550076E06F}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\2search
HKEY_CLASSES_ROOT\iesearch.clsiespy
HKEY_CLASSES_ROOT\interface\{0eb61af8-0b15-48b6-a971-1f206f2e3d5e}
HKEY_CLASSES_ROOT\the007guard.the007guardctrl.1
HKEY_CLASSES_ROOT\typelib\{68e774cb-72d1-4a52-b55b-c0b1011e013b}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\uninstall\the guard
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4508e20c-acad-11d2-9fc0-00550076e06f}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\the guard
Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\new windows\allow
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
Removing 2Search:
An up-to-date copy of ExterminateIt should detect and prevent infection from 2Search.
If you do not have ExterminateIt and you are worried that you may have infected computer,you could run trial version of ExterminateIt, or remove 2Search manually.
To completely manually remove 2Search malware from your computer,you need to delete the Windows registry keys and registry values, the files and foldersassociated with 2Search.
- Use Task Manager to terminate the 2Search process.
- Delete the original 2Search file and folders.
- Delete the system registry key parameters
- Update your antivirus databases or buy antivirus software and perform a full scan of the computer.
We recommends that all Internet users
back up any important information on their computers,
enable maximum protection from network attacks and malicious code on their computers,
refrain from executing suspicious programs received from untrustworthy sources.
ExterminateIt effectively and automatically removes 2Search from you computer
and is a good solution for those who are seeking easy and effective protection for their computer
from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).
Download ExterminateIt! to instantly get rid of 2Search!
Check now if your PC is infected with 2Search
You can buy full version of ExterminateIt at RegNow.com.
Also Be Aware of the Following Threats:
Remove 123Keylogger Spyware
Remove 247Media Tracking Cookie
Remove 123counts.com Tracking Cookie
Remove 00[Sub]7 Trojan
Remove 100hot Tracking Cookie