Click on screenshot to zoom
Danger level 6
Type: Adware
Common infection symptoms:
  • Slow Computer

Mirar

Mirar is an annoying adware program which runs on every Windows Startup and some users find it very hard to get rid of it. The program appears in the form of Browser Helper Object (BHO) and it is a commercial Internet Explorer toolbar which collects data about the sites visited, and then tries to redirect the user to a site which is supposedly related to pages which have been viewed before. Even though Mirar is not very dangerous, it is extremely irritating.

When it gets into the computer it modifies certain registry entries so that Mirar could register itself as a browser add-on. It also provides users with a whole list of free software applications in exchange of displaying commercial content on the affected computers. The applications distributed by Mirar include WeatherWatch, BadPopup Blocker, RelatedPage, TimeAccurate and the like.

The biggest problem posed by this annoying piece of software is its removal. Since Mirar meddles with internet browsing and displays commercial messages of various contents, it is recommended to get rid of it. However, due to the fact that it is able to hide itself well, the manual removal is very hard for a user who is not computer-savvy. In such case automatic malware removal is recommended, and the user can destroy Mirar by using an up-to-date malware detector tool.

Download Spyware Removal Tool to Remove* Mirar
  • Quick & tested solution for Mirar removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Mirar

Files associated with Mirar infection:

mit3.tmp.cab
mit3.tmp
875455-NOSB.exe
installer.cab
winnb41.dll
winnb40.dll
winnb[X].dll
nn_bar31.dll
nn_bar22.dll
nn_bar21.dll
nn_bar.dll
windmy.dll
mirarsetup.exe

Mirar DLL's to remove:

winnb41.dll
winnb40.dll
winnb[X].dll
nn_bar31.dll
nn_bar22.dll
nn_bar21.dll
nn_bar.dll
windmy.dll

Mirar processes to kill:

mirarsetup.exe

Remove Mirar registry entries:

1037B06C-84B7-4240-8D80-485810A0497D
179E4B4A-76C3-4F65-BCED-C9FA1A28D2EF
224302B0-94E9-45C2-9E5B-BA989EE556E1
4035DE1B-D54A-411E-9EE7-923295D2E86E
54B287F9-FD90-4457-B65E-CB91560C021D
566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49
6E4C7AFC-9915-4036-B7F9-8B3F1710788F
753B9349-7E46-4E5C-A27F-A60A6BF1EAB5
8A0DCBDA-6E20-489C-9041-C1E8A0352E75
9A9C9B68-F908-4AAB-8D0C-10EA8997F37E
9A9C9B69-F908-4AAB-8D0C-10EA8997F37E
et-nucleus.com
F8310E7D-4C4D-46A4-A068-B5BB99411CC7
HKEY_CURRENT_USER SoftwareMicrosoftInternet ExplorerToolbarWebBrowser{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKEY_LOCAL_MACHINE SOFTWAREClassesCLSID{179E4B4A-76C3-4F65-BCED-C9FA1A28D2EF}
HKEY_LOCAL_MACHINE SOFTWAREClassesCLSID{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}
HKEY_LOCAL_MACHINE SOFTWAREClassesCLSID{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKEY_LOCAL_MACHINE SOFTWAREClassesInterface{1037B06C-84B7-4240-8D80-485810A0497D}
HKEY_LOCAL_MACHINE SOFTWAREClassesInterface{224302B0-94E9-45C2-9E5B-BA989EE556E1}
HKEY_LOCAL_MACHINE SOFTWAREClassesInterface{54B287F9-FD90-4457-B65E-CB91560C021D}
HKEY_LOCAL_MACHINE SOFTWAREClassesInterface{6E4C7AFC-9915-4036-B7F9-8B3F1710788F}
HKEY_LOCAL_MACHINE SOFTWAREClassesNN_Bar.NN_Bar_Helper
HKEY_LOCAL_MACHINE SOFTWAREClassesNN_Bar.NN_Bar_Helper.1
HKEY_LOCAL_MACHINE SOFTWAREClassesNN_Bar.NN_WebBand
HKEY_LOCAL_MACHINE SOFTWAREClassesNN_Bar.NN_WebBand.1
HKEY_LOCAL_MACHINE SOFTWAREClassesNN_Bar_Dummy.NN_BarDummy
HKEY_LOCAL_MACHINE SOFTWAREClassesNN_Bar_Dummy.NN_BarDummy.1
HKEY_LOCAL_MACHINE SOFTWAREClassesTypeLib{566DEDE9-9ED8-45DA-9BE6-9B2EEAB17F49}
HKEY_LOCAL_MACHINE SOFTWAREClassesTypeLib{F8310E7D-4C4D-46A4-A068-B5BB99411CC7}
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftCode Store DatabaseDistribution Units{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftInternet ExplorerToolbar{9A9C9B68-F908-4AAB-8D0C-10EA8997F37E}
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionExplorerBrowser Helper Objects{4035DE1B-D54A-411E-9EE7-923295D2E86E}
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionExplorerBrowser Helper Objects{753B9349-7E46-4E5C-A27F-A60A6BF1EAB5}
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionExplorerBrowser Helper Objects{9A9C9B69-F908-4AAB-8D0C-10EA8997F37E}
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionInternet SettingsoneMapDomains
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionModuleUsage C:/Windows/Downloaded Program Files/mirarsetup.exe
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionModuleUsage C:/Windows/System32/windmy.dll
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionRunToolbarInstall=mirarsetup.exe
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionSharedDLLs C:WindowsDownloaded Program Filesmirarsetup.exe
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionSharedDLLs C:WindowsSystem32windmy.dll
HKEY_LOCAL_MACHINE SOFTWAREMicrosoftWindows CurrentVersionUninstall{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}
HKEY_LOCAL_MACHINESOFTWAREClassesNN_Bar.NN_Bar_Helper
HKEY_LOCAL_MACHINESOFTWAREClassesNN_Bar.NN_Bar_Helper.1
HKEY_LOCAL_MACHINESOFTWAREClassesNN_Bar.NN_WebBand
HKEY_LOCAL_MACHINESOFTWAREClassesNN_Bar.NN_WebBand.1
HKEY_LOCAL_MACHINESOFTWAREClassesNN_Bar_Dummy.NN_BarDummy
HKEY_LOCAL_MACHINESOFTWAREClassesNN_Bar_Dummy.NN_BarDummy.1
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionInternetSettingsoneMapDomains
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunToolbarInstall=mirarsetup.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/winnt/downloaded program files/mirarsetup.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/winnt/system32/windmy.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls c:\winnt\downloaded program files\mirarsetup.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls c:\winnt\system32\windmy.dll
Disclaimer

Comments

  1. SOLLY May 28, 2010

    THANK YOU

  2. Dennis Oct 4, 2010

    I don't like it!!

  3. Hulda Jun 21, 2018

    casino
    online casino
    casino
    casino games
    casino games

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.