Downloader . 2nd-Thought (Summary)
Software Name: 2nd-Thought
Company Name: Enom, Inc.
Product Name: Second Thought
Classification: Downloader
Website: http://www.2nd-thought.com
Brief:
Downloads additional Adware, Trackware and Bundleware programs to your computer without your permission.
IMPORTANT!
Some of the Downloader.2nd-Thought components
are listed below. The list is compiled as a reference. The list might
not be complete and it doesn't represent instructions for manual removal.
We DO NOT recommend manual removal. Incorrect removal
of certain software might make your computer unstable or even unusable.
Removal of adware component might affect the related ad-supported software.
If you suspect that you have an unwanted instance of 2nd-Thought
installed on your computer we recommend a free
audit of your system with INAC Anti Spyware.
2nd-Thought might create following folders (and inject its files inside
the folders):
- %PROGRAM_FILES_COMMON%\Slmss
- %PROGRAM_FILES%\STC
- %WINDOWS%\bundles
2nd-Thought might create following files (some of the files might be
loaded in memory while the software is running):
- %SYSTEMDRIVE%\myPcsearch.exe
- %DESKTOP%\myPCsearch.lnk
- %DESKTOP%\Second Thought.lnk
- %SYSTEM%ndsrch.dll
- %SYSTEM%\stcloader.exe
- %SYSTEMDRIVE%\temporary\install201.exe
- %SYSTEM%\qhblt.dll
- %SYSTEM%\sonmn.dll
2nd-Thought is often accompanied by the following tracking cookies:
n/a
2nd-Thought might create following registry keys (and inject subkeys
and values):
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{13197ACE-6851-45C3-A7FF-C281324D5489}
- HKEY_USERS\*\Software\Bundles
- HKEY_USERS\*\Software\STC
- HKEY_CLASSES_ROOT\CLSID\{8AF8225B-AB01-432F-BCAA-AC36EF68D844}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DFF53451-6D0F-4387-ADE2-766F34883FFA}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8AF8225B-AB01-432F-BCAA-AC36EF68D844}
- HKEY_CLASSES_ROOT\Swin32.SDWin32.1
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{46D08420-8EDD-4627-B1A4-4123F6F6241C}
- HKEY_CLASSES_ROOT\CLSID\{46D08420-8EDD-4627-B1A4-4123F6F6241C}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71422F73-532B-438D-9C28-D04CFFEC4B30}
- HKEY_CLASSES_ROOT\CLSID\{71422F73-532B-438D-9C28-D04CFFEC4B30}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5FA6752A-C4A0-4222-88C2-928AE5AB4966}
2nd-Thought might create following registry values:
n/a
2nd-Thought might create registry values with following data:
- HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main|*|http://popupsearches.com*
2nd-Thought might insert following entries in the HOSTS file:
n/a
Click
here to scan your computer for 2nd-Thought free of charge
|