CnsMin Description:
Hijacks the search feature in IE, replacing
your typed search strings with Chinese characters
and taking you to a Chinese search site. These
functions are likely of value to many Chinese
users, but are not appreciated by others. On June
7, 2004 Spyware Doctor researched CnsMin and at that
time removal was nearly impossible and the
uninstaller which was included removed most
components, but left the machine with no network
or Internet connection. In 6 out of 6 boots after
installing CnsMin, our machine crashed within 5
minutes. CnsMin was intended to be a search
support tool for users, but its operation in our
test machines suggests that the current version,
when run in an English computer, should be
classified as a Nuker. CPR again researched
CnsMin July 9, 2004 and the results were nearly
the same as above except no uninstalled was
provided. In addition, numerous popup ads were
displayed which were difficult to close.
Also known as: 3721
CnsMin Automatic Removal:
Using Spyware Doctor
to remove CnsMin AUTOMATICALLY!
Sponsored Links:
CnsMin Manual Removal:
As noted above, a recent version (June 7, 2004)
included an uninstaller which removed most
components, but left the machine with no network
or Internet connection.
After running manual removal (which we do not
recommend in non-Chinese machines), you will need
to manually remove the following:
HKEY_CURRENT_USER\software\3721
,HKEY_LOCAL_MACHINE\software\classes\interface\{be08f6bc-c3e6-4149-beb1-cb449e1b372e}
HKEY_LOCAL_MACHINE\software\classes\typelib\{4158db95-de71-41ff-bea1-2c3d1c679df1}
,HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_cnsminkp\0000|classguid
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_cnsminkp\0000|configflags
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_cnsminkp\0000|devicedesc
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_cnsminkp\0000|legacy
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_cnsminkp\0000|service
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_cnsminkp|nextinstance
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|dnsserveraddresscount
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|dnsserveraddresses
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|domainname
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|hostname
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|primarydomainname
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|registeredaddresscount
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|registeredaddresses
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|registeredflags
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|registeredsinceboot
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|registeredttl
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|sentpriupdatetoip
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters
\dnsregisteredadapters\{47d5bfd0-e6a1-47b3-973d-1e8074de2beb}|sentupdatetoip
profilepath+\favorites\3721 chinese keywords.url,
c:\winnt\system32\c_is2022.dll
C:\Program Files\3721
C:\Program Files\3721\3721
More
Removal Instructions for Adware/Spyware Programs -
'C'
|