I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
CREXTP7E.EXE – Adware MyWebSearch removal
File | MD5 | Virus Alias |
---|---|---|
CREXTP7E.EXE | c9fecbc3ec683b4b60cf45ebae9abfcd | Adware MyWebSearch |
CREXTP7E.EXE size: 1386056 bytes
CREXTP7E.EXE hash: C9FECBC3EC683B4B60CF45EBAE9ABFCD
Created files:
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eauxstb.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eauxstb64.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebar.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebarsvc.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebprtct.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebrmon.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebrmon64.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebrstub.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebrstub64.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7edatact.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7edlghk.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7edlghk64.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7efeedmg.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ehighin.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ehkstub.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ehtmlmu.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ehttpct.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eidle.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eieovr.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7emedint.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7emlbtn.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ePlugin.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eradio.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eregfft.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7ereghk.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eregiet.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7escript.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eskin.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eskplay.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eSrcAs.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7eSrchMn.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7esrchmr.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\7etpinst.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\APPINTEGRATOR.EXE
%Program Files%\HomeworkSimplified_7e\bar\1.bin\AppIntegrator64.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\APPINTEGRATORSTUB.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\AppIntegratorStub64.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\ASSISTMONITOR.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\ASSISTMONITOR64.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\assists\ie_default_search_provider\ARBITER.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\assists\ie_default_search_provider\ARBITER64.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\assists\ie_default_search_provider\ASSIST.EXE
%Program Files%\HomeworkSimplified_7e\bar\1.bin\CREXT.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\CrExtP7e.exe
%Program Files%\HomeworkSimplified_7e\bar\1.bin\DPNMNGR.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\EXEMANAGER.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\FF-NativeMessagingDispatcher.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\Hpg64.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\NP7eStub.dll
%Program Files%\HomeworkSimplified_7e\bar\1.bin\T8EPMSUP.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\T8EXTEX.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\T8EXTPEX.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\T8HTML.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\T8RES.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\T8TICKER.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\TPIMANAGERCONSOLE.EXE
%Program Files%\HomeworkSimplified_7e\bar\1.bin\UNIFIEDLOGGING.DLL
%Program Files%\HomeworkSimplified_7e\bar\1.bin\VERIFY.DLL
%Temp%\00005b2cT8SETUP.EXE
%Temp%\00005b2cT8SETUP.EX_
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\HomeworkSimplified_7eService\Type: 10000000
HKLM\System\CurrentControlSet\Services\HomeworkSimplified_7eService\Start: 02000000
HKLM\System\CurrentControlSet\Services\HomeworkSimplified_7eService\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\HomeworkSimplified_7eService\DisplayName: HomeworkSimplifiedService
HKLM\System\CurrentControlSet\Services\HomeworkSimplified_7eService\ImagePath: %Program Files%\HomeworkSimplified_7e\bar\1.bin\7ebarsvc.exe
Detected by UnHackMe:
CREXTP7E.EXE
Default location: %PROGRAM FILES%\HOMEWORKSIMPLIFIED_7E\BAR\1.BIN\CREXTP7E.EXE
Dropper information:
MD5: b0ee8dc87baf22b24b2b4767e6ff7053
File size: 6072720 bytes