ARTEENBARCELONA2.DLL is Adware MSNAgent

May 10, 2012 by NightWatcher
Filed under: Adware 
: Solved!

Fix it immediately:

We received the file ARTEENBARCELONA2.DLL and detected that ARTEENBARCELONA2.DLL is not good.
ARTEENBARCELONA2.DLL is Adware. You should remove the file ARTEENBARCELONA2.DLL.
Kill the process ARTEENBARCELONA2.DLL and remove ARTEENBARCELONA2.DLL from Windows.

Malware Analysis of ARTEENBARCELONA2.DLL
Full path on a computer: %Program Files%\www.arteenbarcelona.com\arteenbarcelona2.dll

Detected by UnHackMe:

Item Name: {4B976F76-B0BC-4db6-BC34-121A7C9D4A28}
Author: IE Toolbar
Related File: C:\PROGRA~1\WWWART~1.COM\ARTEEN~1.DLL
Type: Browser Helper Objects

Item Name: {25F97EB4-1C02-45BA-BA0C-E67AACE64D4A}
Author:
Related File: %PROGRAM FILES%\WWW.ARTEENBARCELONA.COM\ARTEENBARCELONA2.DLL
Type: Toolbars

Removal Results: Success
Number of reboot: 1

ARTEENBARCELONA2.DLL is known as:

Adware.MSNAgent, Adware.Istbar, Adware.Toolbar.Eztracks, Adware.Mostofate, Adware.Softomate

ARTEENBARCELONA2.DLL hash:

  • MD5: eeb02caf9fabd673443c42e8bcc4ca8b
The file tries to connect to the dangerous web site.
How to quickly detect ARTEENBARCELONA2.DLL presence?

Registry:
  • HKLM\Software\Classes\CLSID\{25F97EB4-1C02-45BA-BA0C-E67AACE64D4A}\InprocServer32\: “%Program Files%\www.arteenbarcelona.com\arteenbarcelona2.dll”
  • HKLM\Software\Classes\CLSID\{4B976F76-B0BC-4db6-BC34-121A7C9D4A28}\InprocServer32\: “C:\PROGRA~1\WWWART~1.COM\ARTEEN~1.DLL”
  • HKLM\Software\Classes\TypeLib\{B9DDDDA0-87DF-4003-9D7C-84B0765CEF76}\1.0\0\win32\: “%Program Files%\www.arteenbarcelona.com\arteenbarcelona2.dll”
  • HKLM\Software\Classes\TypeLib\{B9DDDDA0-87DF-4003-9D7C-84B0765CEF76}\1.0\HELPDIR\: “%Program Files%\www.arteenbarcelona.com\”
Folders:
  • %Program Files%\www.arteenbarcelona.com
Files:
  • %Program Files%\www.arteenbarcelona.com\arteenbarcelona.bmp
  • %Program Files%\www.arteenbarcelona.com\arteenbarcelona2.crc
  • %Program Files%\www.arteenbarcelona.com\arteenbarcelona2.dll
  • %Program Files%\www.arteenbarcelona.com\basis.xml
  • %Program Files%\www.arteenbarcelona.com\error.html
  • %Program Files%\www.arteenbarcelona.com\icons.bmp
  • %Program Files%\www.arteenbarcelona.com\msvcp60.dll
  • %Program Files%\www.arteenbarcelona.com\msvcrt.dll
  • %Program Files%\www.arteenbarcelona.com\options.html
  • %Program Files%\www.arteenbarcelona.com\version.txt


Recommended: UnHackMe anti-rootkit and anti-malware

Premium software: RegRun Security Suite (Good choice for removal and protection)

Written by

Malware Hunter.

Comments

Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!

You must be logged in to post a comment.