Emsisoft Malware-Info

Name: Adware.Win32.GetStyles

Risklevel: Low Risk

Company: Trioris - http://www.get-styles.ru

Description:

Get-Styles will install itself as IE toolbar, and it also modify registry, change IE default page, and change IE search page.

Removal instructions for Adware GetStyles:

To delete this malware infection, buy Emsisoft Anti-Malware.
Guaranteed removal of Adware GetStyles.

Run a full scan on all drives and move all detected items to the quarantine.

More details about this danger:

Installation: Installed through EXE

Screenshots:

GetStylesGetStylesGetStylesGetStylesGetStylesGetStyles

Used folders:

  • C:\Program Files\Get-Styles 2.0\
  • C:\Program Files\Get-Styles 2.0\ch\
  • C:\Program Files\Get-Styles 2.0\ff\
  • C:\Program Files\Get-Styles 2.0\ie\
  • C:\Program Files\Get-Styles 2.0\op\
  • C:\Program Files\Get-Styles 2.0\utils\
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\cache\
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\js\
  • C:\Documents and Settings\[USER]\Application Data\Get Styles for Opera\
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera\profile\
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera\profile\skin\
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera\profile\toolbar\
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera 10 Beta\
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera 10 Beta\skin\
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera 10 Beta\toolbar\
  • C:\Documents and Settings\[USER]\Cookies\
  • C:\Documents and Settings\[USER]\Local Settings\Temp\
  • C:\Documents and Settings\[USER]\Local Settings\Temp\GSUPDATE\
  • C:\Documents and Settings\[USER]\Scripts\

Used files:

  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_highlight-hard_100_f5f3e5_1x100.png
    [139 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_highlight-hard_100_fafaf4_1x100.png
    [124 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_highlight-hard_15_fafaf4_1x100.png
    [114 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_highlight-hard_25_f58200_1x100.png
    [114 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_highlight-hard_95_cccccc_1x100.png
    [105 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_highlight-soft_95_ffedad_1x100.png
    [165 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_inset-soft_15_2b2922_1x100.png
    [119 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-icons_696144_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-icons_808080_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-icons_847e71_256x240.png
    [5355 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-icons_8DC262_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-icons_cd0a0a_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-icons_ffffff_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\jquery-ui-1.7.2.custom.css
    [27528 Bytes] CSS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_diagonals-thick_18_b81900_40x40.png
    [260 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_diagonals-thick_20_666666_40x40.png
    [251 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_flat_10_000000_40x100.png
    [178 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_glass_100_f6f6f6_1x400.png
    [104 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_glass_100_fdf5ce_1x400.png
    [125 Bytes] PNG File
  • C:\Program Files\Get-Styles 2.0\HomepageGuard.exe
    [85728 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\install.txt
    [46 Bytes] TXT File
  • C:\Program Files\Get-Styles 2.0\removereg.exe
    [65024 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\shellexe.exe
    [55008 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\uninstall.exe
    [88399 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\updatebho.dll
    [128736 Bytes] DLL File
  • C:\Program Files\Get-Styles 2.0\ch\Get-StylesCH_toolbar.exe
    [367936 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ch\uninstall.exe
    [32996 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ff\Get-StylesFF_toolbar.exe
    [584480 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ff\uninstall.exe
    [32961 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ie\Get-StylesIE_toolbar.exe
    [562344 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ie\jsloader.dll
    [221408 Bytes] DLL File
  • C:\Program Files\Get-Styles 2.0\ie\removereg.exe
    [68832 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ie\tdataprotocol.dll
    [133856 Bytes] DLL File
  • C:\Program Files\Get-Styles 2.0\ie\toolbar.dll
    [126176 Bytes] DLL File
  • C:\Program Files\Get-Styles 2.0\ie\uninstall.exe
    [33326 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ie\widgetserv.exe
    [217312 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\ie\www.yandex.url
    [397 Bytes] URL File
  • C:\Program Files\Get-Styles 2.0\ie\yandex.ru.url
    [397 Bytes] URL File
  • C:\Program Files\Get-Styles 2.0\op\Get-StylesOP_toolbar.exe
    [411296 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\op\uninstall.exe
    [37136 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\utils\Get-StylesUtils.exe
    [38536 Bytes] EXE File
  • C:\Program Files\Get-Styles 2.0\utils\lastversion.txt
    [1 Bytes] TXT File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\a398b725e79ed205d18d39d019cb96dd
    [1972 Bytes] File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\about.gif
    [10951 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\baloon.gif
    [898 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\click.png
    [36874 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\index.html
    [20389 Bytes] HTML File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\krivaya.gif
    [2020 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\load.png
    [37446 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\log.gif
    [1182 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\logo.gif
    [500 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\logo_big.gif
    [3264 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\logo_gs.gif
    [878 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\logo_gs2.gif
    [880 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\logo_small.gif
    [1662 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_myaudio.gif
    [365 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_myfoto.gif
    [612 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_news.gif
    [361 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_video.gif
    [393 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\widget.js
    [5349 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\witapi.js
    [18956 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\witfdpanel.js
    [2604 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\witkontakt.user.js
    [2018 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\witmain.js
    [48939 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\wittoolbar.js
    [6173 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\witwidgetapi.js
    [1649 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\www.gif
    [328 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\ya1.png
    [4337 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\yandex-logo-16.gif
    [526 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\cache\0.png
    [92918 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\cache\1.png
    [27904 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\jquery-ui-1.7.2.custom.css
    [30175 Bytes] CSS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_glass_55_fcf0ba_1x400.png
    [127 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_gloss-wave_100_c3c5d5_500x100.png
    [3635 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_gloss-wave_100_d5d2c3_500x100.png
    [3156 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\serg\images\ui-bg_gloss-wave_70_ffdd57_500x100.png
    [3122 Bytes] PNG File
  • C:\Documents and Settings\[USER]\Cookies\user@get-styles[1].txt
    [435 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@msn[1].txt
    [650 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@msn[2].txt
    [650 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@rambler[1].txt
    [90 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@tns-counter[1].txt
    [95 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@vkontakte[1].txt
    [71 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@www.bing[1].txt
    [111 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@www.yandex[1].txt
    [64 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@yandex[1].txt
    [193 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Local Settings\Temp\GetB.tmp
    [1 Bytes] TMP File
  • C:\Documents and Settings\[USER]\Local Settings\Temp\GSUPDATE\Get-StylesCH_toolbar.exe
    [367936 Bytes] EXE File
  • C:\Documents and Settings\[USER]\Local Settings\Temp\GSUPDATE\Get-StylesFF_toolbar.exe
    [584480 Bytes] EXE File
  • C:\Documents and Settings\[USER]\Local Settings\Temp\GSUPDATE\Get-StylesIE_toolbar.exe
    [562344 Bytes] EXE File
  • C:\Documents and Settings\[USER]\Local Settings\Temp\GSUPDATE\Get-StylesOP_toolbar.exe
    [117378 Bytes] EXE File
  • C:\Documents and Settings\[USER]\Local Settings\Temp\GSUPDATE\Get-StylesUtils.exe
    [38536 Bytes] EXE File
  • C:\Documents and Settings\[USER]\Scripts\witPlugin.user.js
    [1932 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\menu_en.htm
    [17831 Bytes] HTM File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\menu_ru.htm
    [18096 Bytes] HTM File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\Miranda NS.gif
    [1187 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\notification.htm
    [4943 Bytes] HTM File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\separator32.gif
    [279 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\sound-1.png
    [28153 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\sp.gif
    [276 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\stat.js
    [0 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\strelka.gif
    [61 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\strelka1.gif
    [61 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\tab.htm
    [851 Bytes] HTM File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\tab_page.htm
    [851 Bytes] HTM File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\tab_pageff.htm
    [1306 Bytes] HTM File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\test.htm
    [3357 Bytes] HTM File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\toolbar.html
    [23054 Bytes] HTML File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk.gif
    [365 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_blog.gif
    [375 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_friends.gif
    [609 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_groups.gif
    [400 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_meet.gif
    [407 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\vk_message.gif
    [385 Bytes] GIF File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_glass_65_ffffff_1x400.png
    [105 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_gloss-wave_35_f6a828_500x100.png
    [3762 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_highlight-soft_100_eeeeee_1x100.png
    [90 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-bg_highlight-soft_75_ffe45c_1x100.png
    [129 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-icons_222222_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-icons_228ef1_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-icons_ef8c08_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-icons_ffd27a_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\css\ui-lightness\images\ui-icons_ffffff_256x240.png
    [4369 Bytes] PNG File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\js\jquery-1.3.2.min.js
    [57254 Bytes] JS File
  • C:\Documents and Settings\[USER]\AppData\LocalLow\chamtom.res\content\js\jquery-ui-1.7.2.custom.min.js
    [192628 Bytes] JS File
  • C:\Documents and Settings\[USER]\Application Data\Get Styles for Opera\csssaver.exe
    [81632 Bytes] EXE File
  • C:\Documents and Settings\[USER]\Application Data\Get Styles for Opera\current.css
    [1097 Bytes] CSS File
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera\profile\override.ini
    [333 Bytes] INI File
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera\profile\skin\getstyles_skin.zip
    [475964 Bytes] ZIP File
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera\profile\toolbar\getstyles.ini
    [1630 Bytes] INI File
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera 10 Beta\override.ini
    [333 Bytes] INI File
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera 10 Beta\skin\getstyles_skin.zip
    [475964 Bytes] ZIP File
  • C:\Documents and Settings\[USER]\Application Data\Opera\Opera 10 Beta\toolbar\getstyles.ini
    [1630 Bytes] INI File
  • C:\Documents and Settings\[USER]\Cookies\user@auto.search.msn[1].txt
    [118 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@bing[1].txt
    [282 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@blog.get-styles[2].txt
    [375 Bytes] TXT File
  • C:\Documents and Settings\[USER]\Cookies\user@c.bing[1].txt
    [68 Bytes] TXT File

Additional information might be found here:

Search at Google for Adware GetStyles Search at Google for Adware GetStyles
Search at Bing for Adware GetStyles Search at Bing for Adware GetStyles
Search at Yahoo for Adware GetStyles Search at Yahoo for Adware GetStyles

How can I protect myself from Adware GetStyles?

Important!
You essentially need an antivirus product, that is not only able to clean infections, but also protect your PC permanently from new dangers. This is the only way to prevent data loss and unnecessary hassle and costs of new installations of your operating system.

Take your chance and buy the multiple awarded protection software Emsisoft Anti-Malware today!

Only $40 for the security of your computer.

Buy Emsisoft Anti-Malware online:

Buy Emsisoft Anti-Malware now

Trust only on the best protection software!

Spring Offer!

Don't miss this: To your bought 1-year license of Emsisoft Anti-Malware or Emsisoft Internet Security Pack or higher you can now get a free license of the CyberGhost Anonymizer for free.
Your advantage: Surf anonymously and visit websites that are restricted in your country.

Only a few days left! Order here

Best In Test!

Emsisoft Anti-Malware is the best of 19 tested antivirus programs - Test by MRG - Malware Research Group - Q1-Q3 2011
More independent reviews of anti-malware software