Application.Adware.Flashget.H( Adware.Flashget )
SYMPTOMS: A window appears every time you want to download a file from the web and a icon appears in the task bar.TECHNICAL DESCRIPTION: This program is a download manager that has two operating modes: one is add-suported where you are displayed adds in a toolbar in the application andadd-free when the toolbar with adware is removed. The program can be found at http://www.flashget.com When FlashGet is installed, it performs the following actions: Creates the following directories (and subdirectories) %documentsandsettings%\All Users\Start Menu\Programs\FlashGet where %documentsandsettings% is the current "Documents and Settings" folder %programfiles%\FlashGet where %programfiles% is the current Program Files folder It also creates a desktop link Create the following registry keys: HKEY_CLASSES_ROOT\.jcd HKEY_CLASSES_ROOT\Fgiebar.FgInfoBand.1 HKEY_CLASSES_ROOT\Fgiebar.FgInfoBand HKEY_CLASSES_ROOT\FlashGet.Document HKEY_CLASSES_ROOT\Jccatch.IeCatch2.1 HKEY_CLASSES_ROOT\Jccatch.IeCatch2 HKEY_CLASSES_ROOT\Jccatch.IeCatch5.1 HKEY_CLASSES_ROOT\Jccatch.IeCatch5 HKEY_CLASSES_ROOT\JetCar.IeCatch.1 HKEY_CLASSES_ROOT\JetCar.IeCatch HKEY_CLASSES_ROOT\JetCar.Netscape.1 HKEY_CLASSES_ROOT\JetCar.Netscape HKEY_CURRENT_USER\Software\Netscape\Netscape Navigator\Automation Protocols HKEY_CURRENT_USER\Software\JetCar HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FlashGet(JetCar) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F364306-AA45-47B5-9F9D-39A8B94E7EF7} Removal instructions: Please let BitDefender disinfect your files.ANALYZED BY: George Nechifor, virus researcher |