Free Spyware Scan!
   Internet Security Suite
   Norton AntiVirus 2006
   Anti-Spyware from CA
   Secure private data!

Digital River oneNetwork 2.0 - Make Money!

ActualNames Removal Instructions

Description: 
Remove Spyware

Spyware Threat Level

ActualNames software is an address bar search hijacker that targets the Internet Explorer, Netscape and AOL browsers. Actual Names also seems to contain components to interfere with the sending of mail from various applications and web sites. Bundled with KazaaMate. Suspected also to be installed by ActiveX drive-by download from some pop-ups. ActualNames is a security threat because it can download unsigned code from its controlling server and execute that code.

CA - eTrust PestPatrol Anti-Spywar

Warning: 
  • This page provides ActualNames removal information "AS IS" without a warranty of any kind. You are advised not to use this information if you are not aware of what you are doing. It must be noted that wrongly using the below given information to remove ActualNames from you PC may generated unexpected results. You must take a registry back and create a System Restore Point before following the below given instructions.

Important Instructions: 
  1. Please do not delete any directory unless you are sure that it is related with ActualNames. Check 'C:\Program Files\', 'C:\Temp', 'C:\Tmp', 'C:\Documents and Settings\(your profile name)\Local Settings\Temp' and/or 'C:\Documents and Settings\All Users\Local Settings\Temp' for these directories. These directories may also exists in 'C:\Windows' directory but deleting a legitimate directory from 'C:\Windows' or sub directories may result in system failure so make sure you have found what you were looking for before deleting any directory. Always use 'System Restore' before following spyware removal instructions.
  2. Files created by ActualNames must be removed either by using Add / Remove Programs Utility or simply deleting them using Windows Explorer. Note that some EXE files that are running i.e. processes, will not be deleted unless you use Task Manager to kill these processes.
  3. Please take a registry backup using 'regedit.exe' or create a system restore point using 'System Restore Utility' before following these steps. Note that removing legitimate registry entries may result in a system crash.

Symantec's Norton Internet Security 2006

Remove these directories: 
  1. BrowseProxy
  2. %programfilesdir% \ AdvSearch
  3. cache

Remove these files: 
  1. %systemdir% \ spredirect.dll
  2. %programfilesdir% \ AdvSearch \ spredirect.dll
  3. cliner.exe
  4. %programfilesdir% \ AdvSearch \ finddll.dll
  5. findservice.exe
  6. mailbook.exe
  7. %programfilesdir% \ AdvSearch \ mailbookproxy.dll
  8. mydll.dll
  9. %programfilesdir% \ AdvSearch \ nn7dll.dll
  10. %programfilesdir% \ AdvSearch \ nndll.dll
  11. regsvr32.exe
  12. %programfilesdir% \ AdvSearch \ update.exe
  13. updater.exe
  14. updaterproxy.dll
  15. %programfilesdir% \ AdvSearch \ unins000.exe
  16. unins000.dat
  17. pluginst.dll
  18. %windir%/DownloadedProgramFiles \ wuinst.dll
  19. pluginst.dll
  20. %windir% \ DownloadedProgramFiles \ redir.inf

Remove these registry keys: 
  1. HKEY_CLASSES_ROOT \ \ spredirect.ieobject.1
  2. spredirect.ieobject
  3. HKEY_CLASSES_ROOT \ \ advsearch.alarit.lion.addrbook.1
  4. advsearch.alarit.lion.addrbook
  5. AdvSearch.AlarIT.LioN.Updater
  6. HKEY_CLASSES_ROOT \ \ AdvSearch.AlarIT.LioN.Updater.1
  7. PlugInst.Installer
  8. HKEY_CLASSES_ROOT \ \ PlugInst.Installer.1
  9. HKEY_LOCAL_MACHINE \ Software \ Classes \ spredirect.ieobject.1
  10. spredirect.ieobject
  11. HKEY_LOCAL_MACHINE \ Software \ Classes \ advsearch.alarit.lion.addrbook.1
  12. HKEY_LOCAL_MACHINE \ Software \ Classes \ advsearch.alarit.lion.addrbook
  13. AdvSearch.AlarIT.LioN.Updater
  14. HKEY_LOCAL_MACHINE \ Software \ Classes \ AdvSearch.AlarIT.LioN.Updater.1
  15. PlugInst.Installer
  16. PlugInst.Installer.1
  17. HKEY_LOCAL_MACHINE \ Software \ OliviaCorp \ AdvSearch
  18. OliviaCorp
  19. HKEY_CLASSES_ROOT \ CLSID \ {33403499-E238-4F35-8F5A-7F53D24FF9E2}
  20. HKEY_CLASSES_ROOT \ CLSID \ {80751B22-3FB8-4ED9-B029-E6F568BB48A8}
  21. {92C7D65C-52F3-4545-8A35-213D730DB1ED}
  22. HKEY_CLASSES_ROOT \ CLSID \ {B9CD23F0-086D-4190-9C04-FBFA1EA09FF8}
  23. {DEE456F3-A075-4F60-BEA0-8748D0917701}
  24. {BF4B360B-1717-4BEA-8C5B-6936DE82E8F6}
  25. HKEY_CLASSES_ROOT \ typelib \ {92C7D65C-52F3-4545-8A35-213D730DB1ED}
  26. {300D6635-E419-47E3-9642-6D73337684CD}
  27. {4CD051DD-AA90-4C5C-BD55-EA52969BE48B}
  28. HKEY_CLASSES_ROOT \ TypeLib \ {7197649B-548D-41C0-B2C1-45E1D402594A}
  29. {B9CD23F0-086D-4190-9C04-FBFA1EA09FF8}
  30. HKEY_CLASSES_ROOT \ Interface \ {33403499-E238-4F35-8F5A-7F53D24FF9E2}
  31. HKEY_CLASSES_ROOT \ Interface \ {9D81BC42-475C-4EEC-9ACE-07886D014C9D}
  32. {7AF14230-D19F-482D-8668-53FC571B2017}
  33. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ CLSID \ {33403499-E238-4F35-8F5A-7F53D24FF9E2}
  34. {80751B22-3FB8-4ED9-B029-E6F568BB48A8}
  35. {92C7D65C-52F3-4545-8A35-213D730DB1ED}
  36. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ CLSID \ {B9CD23F0-086D-4190-9C04-FBFA1EA09FF8}
  37. {DEE456F3-A075-4F60-BEA0-8748D0917701}
  38. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ CLSID \ {BF4B360B-1717-4BEA-8C5B-6936DE82E8F6}
  39. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ TypeLib \ {92C7D65C-52F3-4545-8A35-213D730DB1ED}
  40. {300D6635-E419-47E3-9642-6D73337684CD}
  41. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ TypeLib \ {4CD051DD-AA90-4C5C-BD55-EA52969BE48B}
  42. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ TypeLib \ {7197649B-548D-41C0-B2C1-45E1D402594A}
  43. {CFC87851-657D-439B-9B00-3DAE4238FB1F}
  44. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ Interface \ {B9CD23F0-086D-4190-9C04-FBFA1EA09FF8}
  45. {33403499-E238-4F35-8F5A-7F53D24FF9E2}
  46. {9D81BC42-475C-4EEC-9ACE-07886D014C9D}
  47. HKEY_LOCAL_MACHINE \ SOFTWARE \ Classes \ Interface \ {7AF14230-D19F-482D-8668-53FC571B2017}
  48. AdvSearch_is1
  49. HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Ext \ Stats \ {92c7d65c-52f3-4545-8a35-213d730db1ed}
  50. HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ BrowserHelperObjects \ {92c7d65c-52f3-4545-8a35-213d730db1ed}
  51. %windir%/dhsigned.ocx
  52. HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ CurrentVersion \ ModuleUsage \ %windir%/DownloadedProgramFiles/wuinst.dll
  53. {BF4B360B-1717-4BEA-8C5B-6936DE82E8F6}

Remove these registry key values: 
  1. BrowseProxy


Home  |  Spyware  |  Sitemap  |  Contact Us  |  Need Help  |  Links  |  Web  |  Tela Links  |  Site Links

Copyright © 2004-2006 PCPrivacySolutions.com - All rights reserved.

We do not endorse any of the companies, products, or services mentioned on this website. Each product or
service is the trademark of their respective company and all information is provided as opinions only.