Qidion Toolbar Spyware Profile

Qidion Toolbar is a frequently used and adapted spyware program.  It is transmitted from a number of different vendors under several different names.  Depending on which vendor is transmitting it, the advertising content may be pornographic in nature.  It was first discovered on December 28 of 2003.

Your computer may have been infected with Qidion Toolbar by an ActiveX drive-by download, or it may have come bundled with other spyware programs such as 1stbar.

It pretends to be a toolbar add-on that delivers specific local classified advertising listings.  Supposedly, if you enter a keyword term in the toolbar, it will deliver an e-mail to your address notifying you if someone posts an item matching that keyword.
The real danger of Qidion is that it can, and has, download other malware programs such as spyware and dialers.

Qidion is an all around hazardous program, and should be removed with ZookaWare PC Cleaner.

Also Known As:
Adware-Qidion-Toolbar-A, TheLocalSearch,
The Local Smartbar, The Local Search,
The Local Search Smartbar, Pugi, Qidion

Spyware Type: Toolbar, Trojan Downloader

Associated Files:
basis.xml
navinst2.ocx
toolbar.crc
toolbar.dll
toolbar_nieuw14.dll
tbshow.dll
uninstal.exe
uninstal.ini in Program Fileswassmartbar
qi32.dll
tlsbar.dll in Windows
toolbar_nieuw13.dll in Windowsdownloaded program files
tlsbar.dll in Windowssystem32
tlsbar.dll in Windowssystem
vxgamet[X2].exe
vxh8jkdq[X2].exe
win32.exe
xpupdate.exe
qi32.dll
logo2.bmp
viagra.bmp
go_search.bmp
777.bmp
usagold.bmp
atltoolbar.dll
HKEY_CURRENT_USERsoftwaremicrosoftinternet
explorertoolbarwebbrowser {3789cbf0-c4ca-4e98-b93b-22acf0587fba}
HKEY_CURRENT_USERsoftwareqidion
HKEY_LOCAL_MACHINEsoftwaremicrosoftinternet
explorertoolbar {3789cbf0-c4ca-4e98-b93b-22acf0587fba}
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionuninstallqidionqidion
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionuninstallqidionqidion {3789cbf0-c4ca-4e98-b93b-22acf0587fba}
HKEY_CLASSES_ROOTclsid {4b8e6575-1013-45e9-bf77-9852ecef07a9}
HKEY_CLASSES_ROOTtypelib {3789cbf0-c4ca-4e98-b93b-22acf0587fba}
HKEY_CLASSES_ROOTtypelib {4b8e6575-1013-45e9-bf77-9852ecef07a9}
HKEY_LOCAL_MACHINEsoftwareclassesappid {11baf79b-530c-4200-a33d-48be83fc75be}
HKEY_LOCAL_MACHINEsoftwareclassesappid {5fb747f9-320c-47b4-9ce8-545fb4f3ba81}
HKEY_LOCAL_MACHINEsoftwareclassesappidatltoolbar.dllappid
HKEY_LOCAL_MACHINEsoftwareclassesatltoolbar.tbar
HKEY_LOCAL_MACHINEsoftwareclassesatltoolbar.tbarclsid
HKEY_LOCAL_MACHINEsoftwareclassesatltoolbar.tbarcurver
HKEY_LOCAL_MACHINEsoftwareclassesbho.bhoobject
HKEY_LOCAL_MACHINEsoftwareclassesbho.bhoobjectclsid
HKEY_LOCAL_MACHINEsoftwareclassesbho.bhoobjectcurver
HKEY_LOCAL_MACHINEsoftwareclassesclsid {4b8e6575-1013-45e9-bf77-9852ecef07a9}
HKEY_LOCAL_MACHINEsoftwareclassesclsid {68706808-7097-4818-9aec-cb1a0e7aca51}
HKEY_LOCAL_MACHINEsoftwareclassesinterface {788bd7b7-fa4f-4fd3-b63e-e3fbc0aa7d0a}
HKEY_LOCAL_MACHINEsoftwareclassesinterface {7ed9e9b8-e1d4-4576-aec2-2a70bb3caa1c}
HKEY_LOCAL_MACHINEsoftwareclassestypelib {b1c5c992-23df-4704-9f7a-155b575ed19a}
HKEY_LOCAL_MACHINEsoftwareclassestypelib {d956a47d-73cd-4ee9-bbf7-b06c14100c41}
HKEY_LOCAL_MACHINEsoftwaremicrosoftinternet explorertoolbar {4b8e6575-1013-45e9-bf77-9852ecef07a9}
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionshell extensionsapproved {22998d24-b789-4ca2-a7fc-cd7ce7deb14c}
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionuninstallwashington metro

Download Free Scan
ZookaWare runs on Windows Vista, 7, 8 and 10. It has no ads, popups or bundled software and fully uninstalls by clicking Start > All Programs > select ZookaWare and click Uninstall.

Leave a Reply

Your email address will not be published. Required fields are marked *

css.php