Title: ActualNames

Remove ActualNames
Removal instructions

 
Severity scale:ActualNames severity is 30  (30 / 100)
 
ActualNames is an address bar search hijacker which targets IE, Netscape and AOL browsers. ActualNames seems to contain components to interfere with sending of e-mail from various applications and web sites. Bundled with KazaaMate. Suspected also to be installed by ActiveX drive-by download from some pop-ups. ActualNames has the ability to update itself via the Internet. It includes the uninstaller.

From the publisher: As Web users type your company's keywords in their browser's address box, they will be taken straight to your site.

ActualNames properties:
• Connects itself to the internet
• Stays resident in background

Automatic ActualNames removal:

It might be that we are affiliated with any of our recommended products. Full disclosure can be found in our Agreement of Use.
By downloading any of provided Anti-spyware software to remove ActualNames you agree with our Privacy Policy and Agreement of Use.
SpyHunter is recommended remover to uninstall ActualNames. You should confirm using free trial that it detects current version of parasite.

Note: Manual assistance required means that one or all of removers were unable to remove parasite without some manual intervention, please read manual removal instructions below.

If you failed to remove ActualNames using SpyHunter, submit question to our support team and provide as much details as possible.
dot
STOPzilla
download
manual required
We are testing STOPzilla's efficiency at removing ActualNames (2005-09-01 04:56:56)
dot
Malwarebytes Anti Malware
download
manual required
We are testing Malwarebytes Anti Malware's efficiency at removing ActualNames (2005-09-01 04:56:56)
dot
XoftSpySE Anti Spyware
download
manual required
We are testing XoftSpySE Anti Spyware's efficiency at removing ActualNames (2005-09-01 04:56:56)
dot
Defender Pro Ultimate
download
manual required
We are testing Defender Pro Ultimate's efficiency at removing ActualNames (2005-09-01 04:56:56)

what to do if you failed to remove the infection?
Virus Removal
Phone Support
Help Line to remove ActualNames
ActualNames snapshot:

ActualNames manual removal:

Kill processes:
findservice.exe, mailbook.exe, cliner.exe, update.exe, updater.exe
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\BrowseProxy
HKEY_CLASSES_ROOT\AdvSearch.AlarIT.LioN.Updater
HKEY_CLASSES_ROOT\AdvSearch.AlarIT.LioN.Updater.1
HKEY_CLASSES_ROOT\CLSID\{33403499-E238-4F35-8F5A-7F53D24FF9E2}
HKEY_CLASSES_ROOT\CLSID\{80751B22-3FB8-4ED9-B029-E6F568BB48A8}
HKEY_CLASSES_ROOT\CLSID\{92C7D65C-52F3-4545-8A35-213D730DB1ED}
HKEY_CLASSES_ROOT\CLSID\{B9CD23F0-086D-4190-9C04-FBFA1EA09FF8}
HKEY_CLASSES_ROOT\CLSID\{DEE456F3-A075-4F60-BEA0-8748D0917701}
HKEY_CLASSES_ROOT\Interface\{33403499-E238-4F35-8F5A-7F53D24FF9E2}
HKEY_CLASSES_ROOT\Interface\{92C7D65C-52F3-4545-8A35-213D730DB1ED}
HKEY_CLASSES_ROOT\Interface\{B9CD23F0-086D-4190-9C04-FBFA1EA09FF8}
HKEY_CLASSES_ROOT\TypeLib\{300D6635-E419-47E3-9642-6D73337684CD}
HKEY_CLASSES_ROOT\TypeLib\{7197649B-548D-41C0-B2C1-45ED402594A}
HKEY_CLASSES_ROOT\TypeLib\{4CD051DD-AA90-4C5C-BD55-EA52969BE48B}
Delete files:
findservice.exe, mailbook.exe, cliner.exe, update.exe, updater.exe, finddll.dll, mailbookproxy.dll, mydll.dll, nndll.dll, nn7dll.dll, updaterproxy.dll, spredirect.dll, unins000.exe
Delete directories:
C:\Program Files\AdvSearch

QR code for ActualNames removal instructions:

ActualNames qrcode
QR is short for Quick Response. They can be read quickly by the mobile phones. QR codes can store more data than standard barcodes, including url links, geo coordinates, and text.

The reason we add QR code to the website is that parasites like ActualNames are really hard to remove on infected computer. you can quicly scan the QR code with your mobile device and have manual removal instructions to uninstall ActualNames right in your pocket.

Simply use the QR scanner and read removal instructions from mobile device.
Information added: 2004-03-19 10:00:00
Information updated: 2005-09-01 02:19:41

Additional resources:

Attention: If you know know a reputable website reated to security threats, please add a link here: add url

0
0
Little
ActualNames can silently download and execute arbitrary unsigned code from its controlling server actualnames.com, as a self-updating feature.

ActualNames/BrowseProxy is also a severe security hole as it allows any web site to execute arbitrary programs.

Post Comment:

Attention: Use this form only if you have additional information about ActualNames parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.
Home page Name



«


* All field required
Like us on Facebook
Latest spyware news:
Subscribe to spyware news
Please enter your e-mail address:
If you do not want to receive our spyware
newsletter please unsubscribe here
48645 Subscribers
Ask us
I failed to remove ActualNames using SpyHunter.

Email


Close

Spreading the knowledge:

It is very hard to fight against computer parasites on the Internet alone. If you have a website, we would be more than happy if you would like to cooperate and help us spread the information about latest threats. Remember, knowledge is the most powerful weapon. Help your visitors protect their computers!
add text box
rss feed
help other