
Articles
Testmonials
|
CoolWebSearch
CoolWebSearch falls to the following categories: Hijacker,BHO,Toolbar,Popups
Aliases
How to remove CoolWebSearch
To safely remove the harmful files and clean Windows register list from CoolWebSearch - we recommend to use "Exterminate It!" software.
As a rule, if your computer has been infected with CoolWebSearch it has been surely infected with a number of other viruses. Make a complete scanning of your computer, including the register, to know if it has been infected with Spyware and Adware viruses right now. Scanning is absolutely free.
Removing CoolWebSearch files manually
You can try to remove all the infected files manually.
!!! Attention
We are not in any way responsible for the correct work of your computer and your operating system after removing every CoolWebSearch file from your system. We strongly recommend you to use "Exterminate It!" and entrust your computer's safety and efficiency to the team of professionals
To remove all the CoolWebSearch files from your computer manually you need to clean the specified logs in the register and remove the following files:
[%PROGRAM_FILES_COMMON%]\svchost.exe [%SYSTEM%]\inetsrv.exe [%WINDOWS%]\iedll.exe [%WINDOWS%]\svchost.exe [%WINDOWS%]\TEMP\win1D24.tmp.exe [%WINDOWS%]\TEMP\win28B8.tmp.exe [%WINDOWS%]\TEMP\win35D.tmp.exe [%WINDOWS%]\TEMP\win3842.tmp.exe [%WINDOWS%]\TEMP\win52ED.tmp.exe [%WINDOWS%]\TEMP\win7C0D.tmp.exe [%WINDOWS%]\TEMP\win??.tmp.exe [%WINDOWS%]\TEMP\winBFA5.tmp.exe [%WINDOWS%]\TEMP\winC02.tmp.exe [%WINDOWS%]\TEMP\winD43.tmp.exe [%WINDOWS%]\TEMP\winD58.tmp.exe [%WINDOWS%]\Temp\winF.tmp.exe HKEY_CLASSES_ROOT\Interface\{95B92D92-8B7D-4A19-A3F1-43113B4DBCAF} HKEY_CLASSES_ROOT\TypeLib\{5297E905-1DFB-4A9C-9871-A4F95FD58945} HKEY_CURRENT_USER\Software\SerG HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Latest viruses: [ ICMP.Cmd ] [ Doklin!generic ] [ SillyDl.DCQ ] [ Startpage.po ] [ JS.DropperAppl ] |