Cash-Back Spyware Profile
Cash-Back is a spyware program that comes bundled with a Bargain Buddy infection. It was first discovered on April 12 of 2005. It is delivered by the Bullseye Network and eXact Advertising. It is a Browser Hijacker, a Trojan Downloader, and especially malignant.
It causes several system errors and can cause automatic reboots of your computer. It displays search listings on the background of your computer screen pretending to be a search assistant. It will also display pop-up advertisements and attempt to redirect your browsing, pretending to be helpful when you enter search terms that lead to 404 page errors.
In the sense of it being spyware, the Privacy Policy of eXact Advertising says that it does not collect information regarding your browsing behavior. On the same token, it says that it will display affiliated website listings if you misspell a URL name. It also says that it delivers advertising based on URL information and search terms. This implies that it logs your keystrokes, and at least has a partial spyware capability.
If you are infected with this program, you need to remove it immediately. We recommend that you use SpyZooka to clean this infection.
Also Known As:
Adware.Bargain_Buddy, not-a-virus:AdWare.Win32.BargainBuddy.a,
Adware.BargainBuddy, Adware.BargainBuddy!sd5,
not-a-virus:AdWare.Win32.BargainBuddy.n, Adware:Win32/Exact.A,
not-a-virus:AdWare.Win32.BargainBuddy.a, Adware.Bullseye,
not-a-virus:AdWare.Win32.BargainBuddy.h,
not-a-virus:AdWare.Win32.BargainBuddy.v,
Adware.BullsEye_Network, Adware:Win32/Exact.B,
Spyware.eXact_Advertising, Adware.CashBack,
not-a-virus:AdWare.Win32.BargainBuddy.y,
not-a-virus:AdWare.Win32.BargainBuddy.e,
not-a-virus:AdWare.Win32.BargainBuddy.j,
Adware.CashBackBuddy, not-a-virus:AdWare.Win32.BargainBuddy.ad,
not-a-virus:AdWare.Win32.BargainBuddy.n,
not-a-virus:AdWare.Win32.BargainBuddy.q,
not-a-virus:AdWare.Win32.BargainBuddy.ae,
TSPY_BB.A, Adware.BargainBuddy.AQ,
Adware:Win32/Exact.C, not-a-virus:AdWare.Win32.BargainBuddy.l,
not-a-virus:AdWare.Win32.CashBack.b,
not-a-virus:AdWare.Win32.CashBack.d,
Adware.BargainBuddy!sd6, Adware-ExactSearch,
not-a-virus:AdWare.Win32.BargainBuddy.aa,
not-a-virus:AdWare.Win32.BargainBuddy.ai,
not-a-virus:AdWare.Win32.BargainBuddy.ai,
not-a-virus:AdWare.Win32.BargainBuddy.aj,
not-a-virus:AdWare.Win32.BargainBuddy.i,
not-a-virus:AdWare.Win32.BargainBuddy.m,
not-a-virus:AdWare.Win32.BargainBuddy.w,
TROJ_Generic, Trojan-Clicker.Win32.VB.ex,
Adware-BB, msxct.exe, Adware/eXact Advertising Cashback,
eXact.CashBack, Adware-BB
Associated Files:
%ProgramFiles%bargain buddybinapuc.dll,
%ProgramFiles%bargain buddybinbargains.exe,
%ProgramFiles%bargain buddybincb.exe,
%ProgramFiles%bargain buddybin2apuc.dll,
%ProgramFiles%bargain buddybin2bargains.exe,
%ProgramFiles%bargain buddyuninst.exe,
%ProgramFiles%bullseye networkbinadv.exe,
%ProgramFiles%bullseye networkbinadx.exe,
%ProgramFiles%bullseye networkbinbargains.exe,
%ProgramFiles%bullseye networkuninstall.exe,
%ProgramFiles%cashbackbincashback.exe,
%ProgramFiles%cashbackbincb.exe,
%ProgramFiles%cashbackbinflash.exe,
%ProgramFiles%cashbackuninstall.exe,
%System%angelex.exe, %System%exclean.exe,
%System%exul.exe, %System%msexreg.exe,
%Windir%zeta.exe, 4bee7b46ac5dfca6abab75968cb1f37d.EXE,
HKEY_LOCAL_MACHINESOFTWAREMicrosoftCode Store DatabaseDistribution Units {0878B424-1F95-4E26-B5AB-F0D349D89650},
HKEY_LOCAL_MACHINEsoftwaremicrosoftcode store databasedistribution units {0878b424-1f95-4e26-b5ab-f0d349d89650}
I removed a bunch of adware using Ad-Aware SE, but it didn’t remove Cashback. I had no idea what should I do. I had to ask many friends about the best program to remove it, because I didn’t wanted to loose any data stored on my computer. I tried with some of them, but only SpyZooka worked.
You are doing a great job! Thanks!