Emsisoft Malware-Info
Name: Adware.Win32.GameVance
Risklevel: Low Risk
Company: GameVance LLC - http://www.gamevance.com
Description:
GameVance is an ad-supported gamming community, and it also collects anonymous usage information and displays pop-up ads.
Removal instructions for Adware GameVance:
To delete this malware infection, buy Emsisoft Anti-Malware.
Guaranteed removal of Adware GameVance.
Run a full scan on all drives and move all detected items to the quarantine.
More details about this danger:
Characteristics:
- Install itself as BHO.
- Install Ask Toolbar
- Offer user to install another program
Installation: Installed through EXE
Process: gamevance32.exe
Screenshots:
Used folders:
- C:\Documents and Settings\[USER]\Cookies\
- C:\Documents and Settings\[USER]\Local Settings\Application Data\Microsoft\Internet Explorer\
- C:\Documents and Settings\[USER]\Local Settings\History\History.IE5\
- C:\Documents and Settings\[USER]\Local Settings\History\History.IE5\MSHist012009101620091017\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\
- C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\
- C:\Program Files\AskBarDis\
- C:\Program Files\AskBarDis\bar\bin\
- C:\Program Files\AskBarDis\bar\Cache\
- C:\Program Files\AskBarDis\bar\History\
- C:\Program Files\AskBarDis\bar\Settings\
- C:\Program Files\AskSearch\bin\
- C:\Program Files\Gamevance\
- C:\Program Files\Mozilla Firefox\components\
- C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\
- C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\chrome\
- C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults\preferences\
- C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\META-INF\
- C:\Documents and Settings\[USER]\Local Settings\Application Data\
Used files:
- C:\Documents and Settings\[USER]\Cookies\index.dat
[32768 Bytes] DAT File - C:\Documents and Settings\[USER]\Cookies\virus demo@data.resultlinks[1].txt
[86 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@doubleclick[1].txt
[0 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@doubleclick[2].txt
[95 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@tribalfusion[2].txt
[145 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@zedo[2].txt
[354 Bytes] TXT File - C:\Documents and Settings\[USER]\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT
[16384 Bytes] DAT File - C:\Documents and Settings\[USER]\Local Settings\History\History.IE5\index.dat
[32768 Bytes] DAT File - C:\Documents and Settings\[USER]\Local Settings\History\History.IE5\MSHist012009101620091017\index.dat
[32768 Bytes] DAT File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\index.dat
[98304 Bytes] DAT File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\abg-en-100c-000000[1].png
[1006 Bytes] PNG File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\CALSV2JB.ad
[316 Bytes] AD File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\expansion_embed[2].js
[44970 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\Footer_mid[1].gif
[99 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\imgad[1].jpg
[27941 Bytes] JPG File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\loader[1].htm
[499 Bytes] HTM File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\0H2HIRKN\top[1].gif
[2837 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\Footer_rt[1].gif
[350 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\gv_styles[1].css
[27011 Bytes] CSS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\headerblubg[1].gif
[10114 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\pngfix[1].js
[1573 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\render_ads[2].js
[287 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\tags[2].js
[8914 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\6XSRQLQP\x[1].gif
[109 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\1737056[2].gif
[8406 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\CAWXQFKX.ad
[320 Bytes] AD File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\Footer_lt[1].gif
[341 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\lib[1].js
[26982 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\logo[1].png
[20708 Bytes] PNG File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\new_mod_wide_01[1].gif
[1434 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\new_mod_wide_tall[1].gif
[65 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\show_ads[2].js
[35448 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\SRIDQBO7\style[1].css
[9874 Bytes] CSS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\1727296[1].jpg
[20417 Bytes] JPG File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\CAEUP88N.htm
[3708 Bytes] HTM File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\CAWT87QP.htm
[0 Bytes] HTM File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\CAWXMDEB.htm
[8798 Bytes] HTM File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\fm[1].js
[1911 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\fm[2].js
[2702 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\new_mod_wide_02[1].gif
[1502 Bytes] GIF File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\test_domain[2].js
[52 Bytes] JS File - C:\Documents and Settings\[USER]\Local Settings\Temporary Internet Files\Content.IE5\YNQ1M5MT\zpu[1].htm
[1416 Bytes] HTM File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults\preferences\ask.src
[368 Bytes] SRC File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults\preferences\config.dat
[3 Bytes] DAT File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults\preferences\config.dat.bak
[1 Bytes] BAK File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults\preferences\snipit.js
[1594 Bytes] JS File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\META-INF\manifest.mf
[1208 Bytes] MF File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\META-INF\zigbert.rsa
[2970 Bytes] RSA File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\META-INF\zigbert.sf
[1316 Bytes] SF File - C:\Documents and Settings\[USER]\Cookies\virus demo@ask[1].txt
[1466 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@content.yieldmanager[1].txt
[79 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@gamevance[2].txt
[522 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@google.co[1].txt
[347 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@google[2].txt
[324 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@iwon[1].txt
[132 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@meebo[1].txt
[87 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@othersonline[2].txt
[74 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@quantserve[1].txt
[92 Bytes] TXT File - C:\Program Files\AskBarDis\unins000.dat
[25056 Bytes] DAT File - C:\Program Files\AskBarDis\unins000.exe
[692131 Bytes] EXE File - C:\Program Files\AskBarDis\bar\bin\askBar.dll
[279944 Bytes] DLL File - C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
[116104 Bytes] DLL File - C:\Program Files\AskBarDis\bar\bin\psvince.dll
[36864 Bytes] DLL File - C:\Program Files\AskBarDis\bar\Cache\00265E92
[7593 Bytes] File - C:\Program Files\AskBarDis\bar\Cache\002667E8
[127 Bytes] File - C:\Program Files\AskBarDis\bar\Cache\00266BE0.bin
[11054 Bytes] BIN File - C:\Program Files\AskBarDis\bar\Cache\0026867C.bin
[3798 Bytes] BIN File - C:\Program Files\AskBarDis\bar\Cache\00268A36.bin
[3798 Bytes] BIN File - C:\Program Files\AskBarDis\bar\Cache\00269978.bin
[3798 Bytes] BIN File - C:\Program Files\AskBarDis\bar\Cache\00269D21.bin
[2102 Bytes] BIN File - C:\Program Files\AskBarDis\bar\Cache\0026A0EA.bin
[1974 Bytes] BIN File - C:\Program Files\AskBarDis\bar\Cache\files.ini
[585 Bytes] INI File - C:\Program Files\AskBarDis\bar\History\search
[1024 Bytes] File - C:\Program Files\AskBarDis\bar\Settings\config.dat
[3 Bytes] DAT File - C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
[0 Bytes] BAK File - C:\Program Files\AskBarDis\bar\Settings\prevcfg.htm
[7593 Bytes] HTM File - C:\Program Files\AskSearch\bin\DefaultSearch.dll
[45056 Bytes] DLL File - C:\Program Files\Gamevance\ars.cfg
[225 Bytes] CFG File - C:\Program Files\Gamevance\gamevance32.exe
[210544 Bytes] EXE File - C:\Program Files\Gamevance\gamevancelib32.dll
[158320 Bytes] DLL File - C:\Program Files\Gamevance\gvtl.dll
[214640 Bytes] DLL File - C:\Program Files\Gamevance\gvun.exe
[112752 Bytes] EXE File - C:\Program Files\Gamevance\icon.ico
[32038 Bytes] ICO File - C:\Program Files\Mozilla Firefox\components\AskSearch.js
[11147 Bytes] JS File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\chrome.manifest
[449 Bytes] MANIFEST File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\chrome.manifest.dev
[371 Bytes] DEV File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\install.rdf
[1696 Bytes] RDF File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\install.rdf.bak
[1 Bytes] BAK File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\chrome\ajtoolbar.jar
[52383 Bytes] JAR File - C:\Documents and Settings\[USER]\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}\defaults\preferences\ask.gif
[182 Bytes] GIF File - C:\Documents and Settings\[USER]\Cookies\virus demo@scorecardresearch[1].txt
[107 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@tribalfusion[1].txt
[140 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@www.iwon[1].txt
[86 Bytes] TXT File - C:\Documents and Settings\[USER]\Cookies\virus demo@zedo[1].txt
[457 Bytes] TXT File - C:\Documents and Settings\[USER]\Local Settings\Temp\ask_setup.exe
[551712 Bytes] EXE File
Additional information might be found here:
Search
at Google for
Adware GameVance
Search at Bing for
Adware GameVance
Search
at Yahoo for
Adware GameVance
How can I protect myself from Adware GameVance?
Important!
You essentially need an antivirus product, that is not only able to clean infections, but also protect your PC permanently from new dangers.
This is the only way to prevent data loss and unnecessary hassle and costs of new installations of your operating system.
Take your chance and buy the multiple awarded protection software Emsisoft Anti-Malware today!
Only $40 for the security of your computer.
Buy Emsisoft Anti-Malware online:
Trust only on the best protection software!
Spring Offer!
Don't miss this: To your bought 1-year license of Emsisoft Anti-Malware or Emsisoft Internet Security Pack or higher you can now get
a free license of the CyberGhost Anonymizer for free.
Your advantage: Surf anonymously and visit websites that are restricted in your country.
Only a few days left! Order here






















