Cyberwar Trojan

Cyberwar malware description and removal detail
Categories:Trojan,Backdoor,Downloader,DoS
Also known as:

[Kaspersky]SPE.CyberWarrior.5300.a;
[Panda]Type_ComExe.5300

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Cyberwar:

An up-to-date copy of ExterminateIt should detect and prevent infection from Cyberwar.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Cyberwar manually.

To completely manually remove Cyberwar malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Cyberwar.

  1. Use Task Manager to terminate the Cyberwar process.
  2. Delete the original Cyberwar file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Cyberwar from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Cyberwar!


Also Be Aware of the Following Threats:
Removing Bancos.HCH Trojan
SillyFDC.Y Worm Removal instruction
Remote.Control.server RAT Removal
Socha Trojan Removal
Remove Bancos.HLJ Trojan

0 comments

uproar.com Tracking Cookie

uproar.com malware description and removal detail
Categories:Tracking Cookie

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing uproar.com:

An up-to-date copy of ExterminateIt should detect and prevent infection from uproar.com.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove uproar.com manually.

To completely manually remove uproar.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with uproar.com.

  1. Use Task Manager to terminate the uproar.com process.
  2. Delete the original uproar.com file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes uproar.com from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of uproar.com!


Also Be Aware of the Following Threats:
PageAsst Adware Symptoms
Killav.at Trojan Symptoms
Pigeon.AVHR Trojan Symptoms
Win32.VB.kb Trojan Symptoms
Remove Hauntpc Trojan

0 comments

Zlob Trojan

Zlob malware description and removal detail
Categories:Trojan,Hijacker,Downloader,Popups
Also known as:

[Kaspersky]Trojan-Dropper.Win32.Agent.mu,Trojan-Downloader.Win32.Zlob.bnw,Trojan.Downloader.Win32.Zlob.azc,Trojan-Downloader.Win32.Agent.bbr,Trojan.Win32.Crypt.g,Trojan-Downloader.Win32.Zlob.bcl,Trojan-Downloader.Win32.Zlob.dah,Trojan.Win32.DNSChanger.pi,Adware.Win32.Agent.pz,Trojan-Downloader.Win32.Zlob.bxr,Trojan-Downloader.Win32.Zlob.ehi,Trojan-Downloader.Win32.Zlob.ehw,Trojan-Downloader.Win32.Zlob.enq,Trojan-Downloader.Win32.Obfuscated.bn;
[McAfee]Puper.gen,Generic Downloader,DNSChanger.pi;
[F-Prot]W32/Downloader.BECM;
[Panda]Adware/VideoAddon;
[Other]W32/Zlob.gen4,W32/Renos.gen3,TROJ_ZLOB.BQZ,Zlob.IOD,Trojan-Downloader.Zlob.Media-Codec,Trojan.Zlob.AVP,W32/DLoader.BCQL,Trojan.DownLoader.10588,W32/Zlob.gen70,Trojan.Zlob,Zlob.AGUA,Troj/Zlob-Gen,trojan-downloader-zlob,TROJ_ZLOB.DSI,Trojan-Downloader.Zlob.MediaCodec,W32/Zlob.AIRZ,W32/Zlob.ACPA,Troj/Agent-EOH,Downloader,Troj/Zlob-VH,Trojan-Downloader.Zlob.Media-COdec,Trojan.Emcodec,W32/Zlob.XJU,TrojanDownloader:Win32/Zlob.gen!N,TROJ_ZLOB.DYP,Mal/ZlobInst-A,TrojanDownloader:Win32/Zlob.gen!AA,Zlob.gen94,TrojanDownloader:Win32/Zlob.gen!R,Trojan:Win32/Zlob.ZWC,Troj/Zlobar-Fam

Visible Symptoms:
Files in system folders:
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ot.ico
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ts.ico
[%DESKTOP%]\Viruz\temp.fr????\ot.ico
[%DESKTOP%]\Viruz\temp.fr????\ts.ico
[%PROFILE_TEMP%]\temp.fr????\ot.ico
[%PROFILE_TEMP%]\temp.fr????\ts.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ot.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ts.ico
[%PROGRAM_FILES%]\Brain Codec\ot.ico
[%PROGRAM_FILES%]\Brain Codec\ts.ico
[%PROGRAM_FILES%]\EliteCodec\ot.ico
[%PROGRAM_FILES%]\EliteCodec\ts.ico
[%PROGRAM_FILES%]\Gold Codec\ot.ico
[%PROGRAM_FILES%]\Gold Codec\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ts.ico
[%PROGRAM_FILES%]\IntCodec\ot.ico
[%PROGRAM_FILES%]\IntCodec\ts.ico
[%PROGRAM_FILES%]\Internet Security\ot.ico
[%PROGRAM_FILES%]\Internet Security\ts.ico
[%PROGRAM_FILES%]\iVideoCodec\ot.ico
[%PROGRAM_FILES%]\iVideoCodec\ts.ico
[%PROGRAM_FILES%]\Key Generator\ot.ico
[%PROGRAM_FILES%]\Key Generator\ts.ico
[%PROGRAM_FILES%]\My Pass Generator\ot.ico
[%PROGRAM_FILES%]\My Pass Generator\ts.ico
[%PROGRAM_FILES%]\Online Add-on\ot.ico
[%PROGRAM_FILES%]\Online Add-on\ts.ico
[%PROGRAM_FILES%]\Online Image Add-on\ot.ico
[%PROGRAM_FILES%]\Online Image Add-on\ts.ico
[%PROGRAM_FILES%]\Online Video Add-on\ot.ico
[%PROGRAM_FILES%]\Online Video Add-on\ts.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ot.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ts.ico
[%PROGRAM_FILES%]\PCODEC\ot.ico
[%PROGRAM_FILES%]\PCODEC\ts.ico
[%PROGRAM_FILES%]\Perfect Codec\ot.ico
[%PROGRAM_FILES%]\Perfect Codec\ts.ico
[%PROGRAM_FILES%]\PornPass Manager\ot.ico
[%PROGRAM_FILES%]\PornPass Manager\ts.ico
[%PROGRAM_FILES%]\QualityCodec\ot.ico
[%PROGRAM_FILES%]\QualityCodec\ts.ico
[%PROGRAM_FILES%]\Security Tools\ot.ico
[%PROGRAM_FILES%]\Security Tools\ts.ico
[%PROGRAM_FILES%]\Silver Codec\ot.ico
[%PROGRAM_FILES%]\Silver Codec\ts.ico
[%PROGRAM_FILES%]\strCodec\ot.ico
[%PROGRAM_FILES%]\strCodec\ts.ico
[%PROGRAM_FILES%]\Super Codec\ot.ico
[%PROGRAM_FILES%]\Super Codec\ts.ico
[%PROGRAM_FILES%]\TrueCodec\ot.ico
[%PROGRAM_FILES%]\TrueCodec\ts.ico
[%PROGRAM_FILES%]\VidCodecs\ot.ico
[%PROGRAM_FILES%]\VidCodecs\ts.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Object\isamini.exe
[%PROGRAM_FILES%]\Video ActiveX Object\isamntr.exe
[%PROGRAM_FILES%]\Video ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ot.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ts.ico
[%PROGRAM_FILES%]\Video Add-on\ot.ico
[%PROGRAM_FILES%]\Video Add-on\ts.ico
[%PROGRAM_FILES%]\Video AX Object\ot.ico
[%PROGRAM_FILES%]\Video AX Object\ts.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ot.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ts.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ot.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ts.ico
[%PROGRAM_FILES%]\VideosCodec\ot.ico
[%PROGRAM_FILES%]\VideosCodec\ts.ico
[%SYSTEM%]\ismini.exe
[%SYSTEM%]\ot.ico
[%SYSTEM%]\ot.ico_wally
[%SYSTEM%]\ts.ico
[%SYSTEM%]\uvnx.exe
[%WINDOWS%]\msvb.dll
[%WINDOWS%]\netadv.dll
[%WINDOWS%]\sysdx.dll
[%WINDOWS%]\uwcwxwy.exe
[%DESKTOP%]\Online Security Guide.lnk
[%DESKTOP%]\SECURITY
[%DESKTOP%]\Security Troubleshooting.lnk
[%PROFILE%]\cmd.exe
[%PROFILE%]\start
[%STARTMENU%]\Online Security Guide.url
[%STARTMENU%]\Security Troubleshooting.url
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ot.ico
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ts.ico
[%PROFILE_TEMP%]\sysmfd.exe
[%PROGRAM_FILES%]\Helper\yourprosearch.dll
[%SYSTEM%]\tvtpwp.dll
[%SYSTEM%]\ymmzwd.dll
[%WINDOWS%]\bndsrwlq.dll
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ot.ico
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ts.ico
[%DESKTOP%]\Viruz\temp.fr????\ot.ico
[%DESKTOP%]\Viruz\temp.fr????\ts.ico
[%PROFILE_TEMP%]\temp.fr????\ot.ico
[%PROFILE_TEMP%]\temp.fr????\ts.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ot.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ts.ico
[%PROGRAM_FILES%]\Brain Codec\ot.ico
[%PROGRAM_FILES%]\Brain Codec\ts.ico
[%PROGRAM_FILES%]\EliteCodec\ot.ico
[%PROGRAM_FILES%]\EliteCodec\ts.ico
[%PROGRAM_FILES%]\Gold Codec\ot.ico
[%PROGRAM_FILES%]\Gold Codec\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ts.ico
[%PROGRAM_FILES%]\IntCodec\ot.ico
[%PROGRAM_FILES%]\IntCodec\ts.ico
[%PROGRAM_FILES%]\Internet Security\ot.ico
[%PROGRAM_FILES%]\Internet Security\ts.ico
[%PROGRAM_FILES%]\iVideoCodec\ot.ico
[%PROGRAM_FILES%]\iVideoCodec\ts.ico
[%PROGRAM_FILES%]\Key Generator\ot.ico
[%PROGRAM_FILES%]\Key Generator\ts.ico
[%PROGRAM_FILES%]\My Pass Generator\ot.ico
[%PROGRAM_FILES%]\My Pass Generator\ts.ico
[%PROGRAM_FILES%]\Online Add-on\ot.ico
[%PROGRAM_FILES%]\Online Add-on\ts.ico
[%PROGRAM_FILES%]\Online Image Add-on\ot.ico
[%PROGRAM_FILES%]\Online Image Add-on\ts.ico
[%PROGRAM_FILES%]\Online Video Add-on\ot.ico
[%PROGRAM_FILES%]\Online Video Add-on\ts.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ot.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ts.ico
[%PROGRAM_FILES%]\PCODEC\ot.ico
[%PROGRAM_FILES%]\PCODEC\ts.ico
[%PROGRAM_FILES%]\Perfect Codec\ot.ico
[%PROGRAM_FILES%]\Perfect Codec\ts.ico
[%PROGRAM_FILES%]\PornPass Manager\ot.ico
[%PROGRAM_FILES%]\PornPass Manager\ts.ico
[%PROGRAM_FILES%]\QualityCodec\ot.ico
[%PROGRAM_FILES%]\QualityCodec\ts.ico
[%PROGRAM_FILES%]\Security Tools\ot.ico
[%PROGRAM_FILES%]\Security Tools\ts.ico
[%PROGRAM_FILES%]\Silver Codec\ot.ico
[%PROGRAM_FILES%]\Silver Codec\ts.ico
[%PROGRAM_FILES%]\strCodec\ot.ico
[%PROGRAM_FILES%]\strCodec\ts.ico
[%PROGRAM_FILES%]\Super Codec\ot.ico
[%PROGRAM_FILES%]\Super Codec\ts.ico
[%PROGRAM_FILES%]\TrueCodec\ot.ico
[%PROGRAM_FILES%]\TrueCodec\ts.ico
[%PROGRAM_FILES%]\VidCodecs\ot.ico
[%PROGRAM_FILES%]\VidCodecs\ts.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Object\isamini.exe
[%PROGRAM_FILES%]\Video ActiveX Object\isamntr.exe
[%PROGRAM_FILES%]\Video ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ot.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ts.ico
[%PROGRAM_FILES%]\Video Add-on\ot.ico
[%PROGRAM_FILES%]\Video Add-on\ts.ico
[%PROGRAM_FILES%]\Video AX Object\ot.ico
[%PROGRAM_FILES%]\Video AX Object\ts.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ot.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ts.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ot.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ts.ico
[%PROGRAM_FILES%]\VideosCodec\ot.ico
[%PROGRAM_FILES%]\VideosCodec\ts.ico
[%SYSTEM%]\ismini.exe
[%SYSTEM%]\ot.ico
[%SYSTEM%]\ot.ico_wally
[%SYSTEM%]\ts.ico
[%SYSTEM%]\uvnx.exe
[%WINDOWS%]\msvb.dll
[%WINDOWS%]\netadv.dll
[%WINDOWS%]\sysdx.dll
[%WINDOWS%]\uwcwxwy.exe
[%DESKTOP%]\Online Security Guide.lnk
[%DESKTOP%]\SECURITY
[%DESKTOP%]\Security Troubleshooting.lnk
[%PROFILE%]\cmd.exe
[%PROFILE%]\start
[%STARTMENU%]\Online Security Guide.url
[%STARTMENU%]\Security Troubleshooting.url
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ot.ico
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ts.ico
[%PROFILE_TEMP%]\sysmfd.exe
[%PROGRAM_FILES%]\Helper\yourprosearch.dll
[%SYSTEM%]\tvtpwp.dll
[%SYSTEM%]\ymmzwd.dll
[%WINDOWS%]\bndsrwlq.dll

In order to ensure that the Zlob is launched automatically each time the system is booted, the Zlob adds a link to its executable file in the system registry:
HKLM\Microsoft\Windows\CurrentVersion\Run
[%PROGRAM_FILES%]\Video ActiveX Object\isamini.exe
[%PROGRAM_FILES%]\Video ActiveX Object\isamntr.exe
[%SYSTEM%]\ismini.exe
[%SYSTEM%]\uvnx.exe
[%WINDOWS%]\uwcwxwy.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\sysmfd.exe

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting Zlob:

Files:
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ot.ico
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ts.ico
[%DESKTOP%]\Viruz\temp.fr????\ot.ico
[%DESKTOP%]\Viruz\temp.fr????\ts.ico
[%PROFILE_TEMP%]\temp.fr????\ot.ico
[%PROFILE_TEMP%]\temp.fr????\ts.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ot.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ts.ico
[%PROGRAM_FILES%]\Brain Codec\ot.ico
[%PROGRAM_FILES%]\Brain Codec\ts.ico
[%PROGRAM_FILES%]\EliteCodec\ot.ico
[%PROGRAM_FILES%]\EliteCodec\ts.ico
[%PROGRAM_FILES%]\Gold Codec\ot.ico
[%PROGRAM_FILES%]\Gold Codec\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ts.ico
[%PROGRAM_FILES%]\IntCodec\ot.ico
[%PROGRAM_FILES%]\IntCodec\ts.ico
[%PROGRAM_FILES%]\Internet Security\ot.ico
[%PROGRAM_FILES%]\Internet Security\ts.ico
[%PROGRAM_FILES%]\iVideoCodec\ot.ico
[%PROGRAM_FILES%]\iVideoCodec\ts.ico
[%PROGRAM_FILES%]\Key Generator\ot.ico
[%PROGRAM_FILES%]\Key Generator\ts.ico
[%PROGRAM_FILES%]\My Pass Generator\ot.ico
[%PROGRAM_FILES%]\My Pass Generator\ts.ico
[%PROGRAM_FILES%]\Online Add-on\ot.ico
[%PROGRAM_FILES%]\Online Add-on\ts.ico
[%PROGRAM_FILES%]\Online Image Add-on\ot.ico
[%PROGRAM_FILES%]\Online Image Add-on\ts.ico
[%PROGRAM_FILES%]\Online Video Add-on\ot.ico
[%PROGRAM_FILES%]\Online Video Add-on\ts.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ot.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ts.ico
[%PROGRAM_FILES%]\PCODEC\ot.ico
[%PROGRAM_FILES%]\PCODEC\ts.ico
[%PROGRAM_FILES%]\Perfect Codec\ot.ico
[%PROGRAM_FILES%]\Perfect Codec\ts.ico
[%PROGRAM_FILES%]\PornPass Manager\ot.ico
[%PROGRAM_FILES%]\PornPass Manager\ts.ico
[%PROGRAM_FILES%]\QualityCodec\ot.ico
[%PROGRAM_FILES%]\QualityCodec\ts.ico
[%PROGRAM_FILES%]\Security Tools\ot.ico
[%PROGRAM_FILES%]\Security Tools\ts.ico
[%PROGRAM_FILES%]\Silver Codec\ot.ico
[%PROGRAM_FILES%]\Silver Codec\ts.ico
[%PROGRAM_FILES%]\strCodec\ot.ico
[%PROGRAM_FILES%]\strCodec\ts.ico
[%PROGRAM_FILES%]\Super Codec\ot.ico
[%PROGRAM_FILES%]\Super Codec\ts.ico
[%PROGRAM_FILES%]\TrueCodec\ot.ico
[%PROGRAM_FILES%]\TrueCodec\ts.ico
[%PROGRAM_FILES%]\VidCodecs\ot.ico
[%PROGRAM_FILES%]\VidCodecs\ts.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Object\isamini.exe
[%PROGRAM_FILES%]\Video ActiveX Object\isamntr.exe
[%PROGRAM_FILES%]\Video ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ot.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ts.ico
[%PROGRAM_FILES%]\Video Add-on\ot.ico
[%PROGRAM_FILES%]\Video Add-on\ts.ico
[%PROGRAM_FILES%]\Video AX Object\ot.ico
[%PROGRAM_FILES%]\Video AX Object\ts.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ot.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ts.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ot.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ts.ico
[%PROGRAM_FILES%]\VideosCodec\ot.ico
[%PROGRAM_FILES%]\VideosCodec\ts.ico
[%SYSTEM%]\ismini.exe
[%SYSTEM%]\ot.ico
[%SYSTEM%]\ot.ico_wally
[%SYSTEM%]\ts.ico
[%SYSTEM%]\uvnx.exe
[%WINDOWS%]\msvb.dll
[%WINDOWS%]\netadv.dll
[%WINDOWS%]\sysdx.dll
[%WINDOWS%]\uwcwxwy.exe
[%DESKTOP%]\Online Security Guide.lnk
[%DESKTOP%]\SECURITY
[%DESKTOP%]\Security Troubleshooting.lnk
[%PROFILE%]\cmd.exe
[%PROFILE%]\start
[%STARTMENU%]\Online Security Guide.url
[%STARTMENU%]\Security Troubleshooting.url
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ot.ico
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ts.ico
[%PROFILE_TEMP%]\sysmfd.exe
[%PROGRAM_FILES%]\Helper\yourprosearch.dll
[%SYSTEM%]\tvtpwp.dll
[%SYSTEM%]\ymmzwd.dll
[%WINDOWS%]\bndsrwlq.dll
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ot.ico
[%COMMON_DOCUMENTS%]\Video ActiveX Object\ts.ico
[%DESKTOP%]\Viruz\temp.fr????\ot.ico
[%DESKTOP%]\Viruz\temp.fr????\ts.ico
[%PROFILE_TEMP%]\temp.fr????\ot.ico
[%PROFILE_TEMP%]\temp.fr????\ts.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ot.ico
[%PROFILE_TEMP%]\NoadwareBkupTemp\ts.ico
[%PROGRAM_FILES%]\Brain Codec\ot.ico
[%PROGRAM_FILES%]\Brain Codec\ts.ico
[%PROGRAM_FILES%]\EliteCodec\ot.ico
[%PROGRAM_FILES%]\EliteCodec\ts.ico
[%PROGRAM_FILES%]\Gold Codec\ot.ico
[%PROGRAM_FILES%]\Gold Codec\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Image ActiveX Object\ts.ico
[%PROGRAM_FILES%]\IntCodec\ot.ico
[%PROGRAM_FILES%]\IntCodec\ts.ico
[%PROGRAM_FILES%]\Internet Security\ot.ico
[%PROGRAM_FILES%]\Internet Security\ts.ico
[%PROGRAM_FILES%]\iVideoCodec\ot.ico
[%PROGRAM_FILES%]\iVideoCodec\ts.ico
[%PROGRAM_FILES%]\Key Generator\ot.ico
[%PROGRAM_FILES%]\Key Generator\ts.ico
[%PROGRAM_FILES%]\My Pass Generator\ot.ico
[%PROGRAM_FILES%]\My Pass Generator\ts.ico
[%PROGRAM_FILES%]\Online Add-on\ot.ico
[%PROGRAM_FILES%]\Online Add-on\ts.ico
[%PROGRAM_FILES%]\Online Image Add-on\ot.ico
[%PROGRAM_FILES%]\Online Image Add-on\ts.ico
[%PROGRAM_FILES%]\Online Video Add-on\ot.ico
[%PROGRAM_FILES%]\Online Video Add-on\ts.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ot.ico
[%PROGRAM_FILES%]\PCFree\Recovery\[2006-11-23]05_20_36_921\WINDOWS\system32\ts.ico
[%PROGRAM_FILES%]\PCODEC\ot.ico
[%PROGRAM_FILES%]\PCODEC\ts.ico
[%PROGRAM_FILES%]\Perfect Codec\ot.ico
[%PROGRAM_FILES%]\Perfect Codec\ts.ico
[%PROGRAM_FILES%]\PornPass Manager\ot.ico
[%PROGRAM_FILES%]\PornPass Manager\ts.ico
[%PROGRAM_FILES%]\QualityCodec\ot.ico
[%PROGRAM_FILES%]\QualityCodec\ts.ico
[%PROGRAM_FILES%]\Security Tools\ot.ico
[%PROGRAM_FILES%]\Security Tools\ts.ico
[%PROGRAM_FILES%]\Silver Codec\ot.ico
[%PROGRAM_FILES%]\Silver Codec\ts.ico
[%PROGRAM_FILES%]\strCodec\ot.ico
[%PROGRAM_FILES%]\strCodec\ts.ico
[%PROGRAM_FILES%]\Super Codec\ot.ico
[%PROGRAM_FILES%]\Super Codec\ts.ico
[%PROGRAM_FILES%]\TrueCodec\ot.ico
[%PROGRAM_FILES%]\TrueCodec\ts.ico
[%PROGRAM_FILES%]\VidCodecs\ot.ico
[%PROGRAM_FILES%]\VidCodecs\ts.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video Access ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Access\ts.ico
[%PROGRAM_FILES%]\Video ActiveX Object\isamini.exe
[%PROGRAM_FILES%]\Video ActiveX Object\isamntr.exe
[%PROGRAM_FILES%]\Video ActiveX Object\ot.ico
[%PROGRAM_FILES%]\Video ActiveX Object\ts.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ot.ico
[%PROGRAM_FILES%]\Video Add-on Setup\ts.ico
[%PROGRAM_FILES%]\Video Add-on\ot.ico
[%PROGRAM_FILES%]\Video Add-on\ts.ico
[%PROGRAM_FILES%]\Video AX Object\ot.ico
[%PROGRAM_FILES%]\Video AX Object\ts.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ot.ico
[%PROGRAM_FILES%]\VideoCompressionCodec\ts.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ot.ico
[%PROGRAM_FILES%]\VideoKeyCodec\ts.ico
[%PROGRAM_FILES%]\VideosCodec\ot.ico
[%PROGRAM_FILES%]\VideosCodec\ts.ico
[%SYSTEM%]\ismini.exe
[%SYSTEM%]\ot.ico
[%SYSTEM%]\ot.ico_wally
[%SYSTEM%]\ts.ico
[%SYSTEM%]\uvnx.exe
[%WINDOWS%]\msvb.dll
[%WINDOWS%]\netadv.dll
[%WINDOWS%]\sysdx.dll
[%WINDOWS%]\uwcwxwy.exe
[%DESKTOP%]\Online Security Guide.lnk
[%DESKTOP%]\SECURITY
[%DESKTOP%]\Security Troubleshooting.lnk
[%PROFILE%]\cmd.exe
[%PROFILE%]\start
[%STARTMENU%]\Online Security Guide.url
[%STARTMENU%]\Security Troubleshooting.url
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ot.ico
[%PROFILE%]\Configuraci%F3n local\Temp\temp.fr????\ts.ico
[%PROFILE_TEMP%]\sysmfd.exe
[%PROGRAM_FILES%]\Helper\yourprosearch.dll
[%SYSTEM%]\tvtpwp.dll
[%SYSTEM%]\ymmzwd.dll
[%WINDOWS%]\bndsrwlq.dll

Folders:
[%PROGRAM_FILES%]\VideoAccessCodec
[%PROGRAM_FILES%]\Image Add-on
[%PROGRAM_FILES%]\Video Add-on

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{a43385f0-7113-496d-96d7-b9b550e3fcca}
HKEY_CLASSES_ROOT\vac.video
HKEY_LOCAL_MACHINE\software\microsoft\videoplugin
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a43385f0-7113-496d-96d7-b9b550e3fcca}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{edbf1bc8-39ab-48eb-a0a9-c75078eb7c8e}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoAccessCodec
HKEY_CLASSES_ROOT\clsid\{0b4fe923-0e04-4d8a-bc4f-db8c672a1584}
HKEY_CLASSES_ROOT\clsid\{0dfcfb5e-3974-3338-8f09-0b2552e546a8}
HKEY_CLASSES_ROOT\clsid\{a43385f0-7113-496d-96d7-b9b550e3fcca}
HKEY_CLASSES_ROOT\clsid\{b02534d7-8d91-49be-a864-97dfb8e0bab4}
HKEY_CLASSES_ROOT\clsid\{d8b937a4-cdad-497b-a872-8da7c4c3ef6f}
HKEY_CLASSES_ROOT\optnet.stockbar
HKEY_CLASSES_ROOT\optnet.toolbar.1
HKEY_CLASSES_ROOT\secmediaonline
HKEY_CLASSES_ROOT\vclsdcompression.class
HKEY_CLASSES_ROOT\videopl.chl
HKEY_CURRENT_USER\software\reknu
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{0dfcfb5e-3974-3338-8f09-0b2552e546a8}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{a43385f0-7113-496d-96d7-b9b550e3fcca}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{edbf1bc8-39ab-48eb-a0a9-c75078eb7c8e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\image add-on
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\multimedia software
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\videoaccesscodec

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_CLASSES_ROOT\clsid\{edbf1bc8-39ab-48eb-a0a9-c75078eb7c8e}\inprocserver32
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Zlob:

An up-to-date copy of ExterminateIt should detect and prevent infection from Zlob.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Zlob manually.

To completely manually remove Zlob malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Zlob.

  1. Use Task Manager to terminate the Zlob process.
  2. Delete the original Zlob file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Zlob from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Zlob!


Also Be Aware of the Following Threats:
Fitmispani Hijacker Symptoms
Hupegion Trojan Removal instruction
Pigeon.AND Trojan Cleaner
Gonads Trojan Cleaner
Remove Win32.VB.apq Trojan

0 comments

Pigeon.AOJ Trojan

Pigeon.AOJ malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.AOJ:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.AOJ.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.AOJ manually.

To completely manually remove Pigeon.AOJ malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AOJ.

  1. Use Task Manager to terminate the Pigeon.AOJ process.
  2. Delete the original Pigeon.AOJ file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.AOJ from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.AOJ!


Also Be Aware of the Following Threats:
Bancos.FXP Trojan Removal
TrojanDownloader.Win32.IstBar.dw Downloader Removal instruction
Small.atx Downloader Cleaner
Fried Trojan Information
SpyMon Spyware Symptoms

0 comments

Shodi Trojan

Shodi malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Shodi:

An up-to-date copy of ExterminateIt should detect and prevent infection from Shodi.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Shodi manually.

To completely manually remove Shodi malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Shodi.

  1. Use Task Manager to terminate the Shodi process.
  2. Delete the original Shodi file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Shodi from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Shodi!


Also Be Aware of the Following Threats:
Removing Changing.Bytes RAT
Pigeon.ATM Trojan Removal instruction
Remove SWLabs Trojan
Frethog.AES Trojan Cleaner
Vriest Trojan Removal instruction

0 comments

Bling Trojan

Bling malware description and removal detail
Categories:Trojan,Backdoor,Hacker Tool,DoS
Also known as:

[Kaspersky]Backdoor.VB.by;
[Eset]Win32/VB.BY trojan;
[McAfee]Blingping;
[F-Prot]security risk or a "backdoor" program;
[Computer Associates]Backdoor/VB.B.Y

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Bling:

An up-to-date copy of ExterminateIt should detect and prevent infection from Bling.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Bling manually.

To completely manually remove Bling malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bling.

  1. Use Task Manager to terminate the Bling process.
  2. Delete the original Bling file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Bling from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Bling!


Also Be Aware of the Following Threats:
Pigeon.AFR Trojan Information
Witch.Control Backdoor Removal instruction
Removing Backdoor.Lvker Trojan
Winshow.AH!unpacked Trojan Removal instruction
BAT.Batman Trojan Symptoms

0 comments

Levil Trojan

Levil malware description and removal detail
Categories:Trojan
Also known as:

[Panda]Trj/Runner.Levil.a,Trj/Runner.Levil.B;
[Computer Associates]Win32.Levil.A,Win32.Levil.B

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Levil:

An up-to-date copy of ExterminateIt should detect and prevent infection from Levil.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Levil manually.

To completely manually remove Levil malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Levil.

  1. Use Task Manager to terminate the Levil process.
  2. Delete the original Levil file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Levil from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Levil!


Also Be Aware of the Following Threats:
Remove Remote.Denial.of.Service.against.Be DoS
small.aln Trojan Symptoms
MailSpam.Dmb Hacker Tool Symptoms
Remove Bancos.GJT Trojan
Livestat.com Tracking Cookie Removal instruction

0 comments

IRC.Flood!Trojan DoS

IRC.Flood!Trojan malware description and removal detail
Categories:DoS

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing IRC.Flood!Trojan:

An up-to-date copy of ExterminateIt should detect and prevent infection from IRC.Flood!Trojan.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove IRC.Flood!Trojan manually.

To completely manually remove IRC.Flood!Trojan malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with IRC.Flood!Trojan.

  1. Use Task Manager to terminate the IRC.Flood!Trojan process.
  2. Delete the original IRC.Flood!Trojan file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes IRC.Flood!Trojan from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of IRC.Flood!Trojan!


Also Be Aware of the Following Threats:
ESP Trojan Removal
tracer.jp Tracking Cookie Removal
Nuke.ICQNuker Trojan Symptoms
Barrotes Trojan Removal
Elik Trojan Cleaner

0 comments

Pigeon.AXT Trojan

Pigeon.AXT malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.AXT:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.AXT.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.AXT manually.

To completely manually remove Pigeon.AXT malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AXT.

  1. Use Task Manager to terminate the Pigeon.AXT process.
  2. Delete the original Pigeon.AXT file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.AXT from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.AXT!


Also Be Aware of the Following Threats:
Cuthem Trojan Removal
Pigeon.APA Trojan Information
Removing Y!Death DoS
HuntBar.WebSearch Hijacker Removal
Pigeon.ARW Trojan Information

0 comments

TrojanClicker.Win32.Small Trojan

TrojanClicker.Win32.Small malware description and removal detail
Categories:Trojan,Adware,Downloader
Also known as:

[Panda]Trj/Orofe.A,Trj/Downloader.AY

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing TrojanClicker.Win32.Small:

An up-to-date copy of ExterminateIt should detect and prevent infection from TrojanClicker.Win32.Small.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove TrojanClicker.Win32.Small manually.

To completely manually remove TrojanClicker.Win32.Small malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanClicker.Win32.Small.

  1. Use Task Manager to terminate the TrojanClicker.Win32.Small process.
  2. Delete the original TrojanClicker.Win32.Small file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes TrojanClicker.Win32.Small from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of TrojanClicker.Win32.Small!


Also Be Aware of the Following Threats:
SillyDl.COU Trojan Symptoms
Removing HBR.10!Server Backdoor
Pigeon.ARM Trojan Cleaner
WeirdOnTheWeb Adware Removal instruction
Pigeon.AMR Trojan Cleaner

0 comments

Vxidl.AWF Trojan

Vxidl.AWF malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Vxidl.AWF:

An up-to-date copy of ExterminateIt should detect and prevent infection from Vxidl.AWF.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Vxidl.AWF manually.

To completely manually remove Vxidl.AWF malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AWF.

  1. Use Task Manager to terminate the Vxidl.AWF process.
  2. Delete the original Vxidl.AWF file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Vxidl.AWF from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Vxidl.AWF!


Also Be Aware of the Following Threats:
Michael Trojan Removal
CryptDrive Ransomware Removal instruction
SeekSeek Adware Information
Floppy.Madness Trojan Information

0 comments

Ponky Trojan

Ponky malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Ponky:

An up-to-date copy of ExterminateIt should detect and prevent infection from Ponky.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Ponky manually.

To completely manually remove Ponky malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ponky.

  1. Use Task Manager to terminate the Ponky process.
  2. Delete the original Ponky file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Ponky from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Ponky!


Also Be Aware of the Following Threats:
Pigeon.EGN Trojan Cleaner
Pigeon.AVTO Trojan Cleaner
Stadich Trojan Removal
Removing Hax.Mail DoS
Pigeon.AVHQ Trojan Removal instruction

0 comments

LoveYou Trojan

LoveYou malware description and removal detail
Categories:Trojan
Also known as:

[Panda]Trj/W32.LoveYou;
[Computer Associates]Win32.LoveYou,Win32/LoveYou!Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing LoveYou:

An up-to-date copy of ExterminateIt should detect and prevent infection from LoveYou.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove LoveYou manually.

To completely manually remove LoveYou malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with LoveYou.

  1. Use Task Manager to terminate the LoveYou process.
  2. Delete the original LoveYou file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes LoveYou from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of LoveYou!


Also Be Aware of the Following Threats:
JScript.ModalDZoneBypass Trojan Information
Sathi Trojan Cleaner
Pickank Trojan Removal instruction
Dewkin Trojan Removal
Remove Nov17 Trojan

0 comments

Wing Trojan

Wing malware description and removal detail
Categories:Trojan
Also known as:

[Computer Associates]Win32/Wing!Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Wing:

An up-to-date copy of ExterminateIt should detect and prevent infection from Wing.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Wing manually.

To completely manually remove Wing malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Wing.

  1. Use Task Manager to terminate the Wing process.
  2. Delete the original Wing file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Wing from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Wing!


Also Be Aware of the Following Threats:
Scramble2 Trojan Symptoms
Telecommando Trojan Removal instruction
ConHook Trojan Symptoms
Cracky Trojan Removal
Verital Trojan Symptoms

0 comments

thisis.co.uk Tracking Cookie

thisis.co.uk malware description and removal detail
Categories:Tracking Cookie

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing thisis.co.uk:

An up-to-date copy of ExterminateIt should detect and prevent infection from thisis.co.uk.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove thisis.co.uk manually.

To completely manually remove thisis.co.uk malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with thisis.co.uk.

  1. Use Task Manager to terminate the thisis.co.uk process.
  2. Delete the original thisis.co.uk file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes thisis.co.uk from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of thisis.co.uk!


Also Be Aware of the Following Threats:
Pigeon.AVRH Trojan Removal instruction
Remove Pigeon.AVVJ Trojan
Remove AprilFool.615a Trojan
Removing Dialer.gen Adware
Removing Pigeon.AWKC Trojan

0 comments

Pigeon.EZD Trojan

Pigeon.EZD malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.EZD:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.EZD.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.EZD manually.

To completely manually remove Pigeon.EZD malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EZD.

  1. Use Task Manager to terminate the Pigeon.EZD process.
  2. Delete the original Pigeon.EZD file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.EZD from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.EZD!


Also Be Aware of the Following Threats:
Remove Pigeon.AWFY Trojan
Memwatch Trojan Symptoms
Coreflood Trojan Information
SillyDl.CXV Trojan Removal
Removing SrvCmd Trojan

0 comments

Webserver.Matrix Backdoor

Webserver.Matrix malware description and removal detail
Categories:Backdoor,RAT
Also known as:

[Kaspersky]Backdoor.WebServLite.001;
[McAfee]Generic BackDoor.b;
[F-Prot]security risk or a "backdoor" program;
[Panda]Backdoor Program;
[Computer Associates]Backdoor/WebServLite.10

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Webserver.Matrix:

An up-to-date copy of ExterminateIt should detect and prevent infection from Webserver.Matrix.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Webserver.Matrix manually.

To completely manually remove Webserver.Matrix malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Webserver.Matrix.

  1. Use Task Manager to terminate the Webserver.Matrix process.
  2. Delete the original Webserver.Matrix file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Webserver.Matrix from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Webserver.Matrix!


Also Be Aware of the Following Threats:
Macro.Word97.Thus.based Trojan Information
Backdoor.BackConstructor Trojan Removal
Cmapp Adware Removal instruction
SillyDl.DLG Trojan Removal instruction
Banker.anu Trojan Information

0 comments

Jater Trojan

Jater malware description and removal detail
Categories:Trojan,Backdoor,Downloader,DoS
Also known as:

[Kaspersky]WinNT.Jater;
[McAfee]W32/Jater;
[F-Prot]W32/Joss.919;
[Panda]Univ.B;
[Computer Associates]WinNT.Jater

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Jater:

An up-to-date copy of ExterminateIt should detect and prevent infection from Jater.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Jater manually.

To completely manually remove Jater malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Jater.

  1. Use Task Manager to terminate the Jater process.
  2. Delete the original Jater file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Jater from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Jater!


Also Be Aware of the Following Threats:
Pigeon.AVBH Trojan Cleaner
Removing WordMacro.Kompu Trojan
Remove SillyDl.DBT Trojan
Message.Manager.Lite Trojan Removal
Vxidl.AII Trojan Cleaner

0 comments

ClickToSearch Adware

ClickToSearch malware description and removal detail
Categories:Adware,BHO,Hijacker
Visible Symptoms:
Files in system folders:
[%SYSTEM%]\bpv2t.dll
[%WINDOWS%]\system\bpv2t.dll
[%SYSTEM%]\bpv2t.dll
[%WINDOWS%]\system\bpv2t.dll

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting ClickToSearch:

Files:
[%SYSTEM%]\bpv2t.dll
[%WINDOWS%]\system\bpv2t.dll
[%SYSTEM%]\bpv2t.dll
[%WINDOWS%]\system\bpv2t.dll

Removing ClickToSearch:

An up-to-date copy of ExterminateIt should detect and prevent infection from ClickToSearch.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove ClickToSearch manually.

To completely manually remove ClickToSearch malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ClickToSearch.

  1. Use Task Manager to terminate the ClickToSearch process.
  2. Delete the original ClickToSearch file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes ClickToSearch from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of ClickToSearch!


Also Be Aware of the Following Threats:
SillyDl.DAT Trojan Removal instruction
Remove ProLin@MM Worm
TrojanDownloader.Win32.Troll Trojan Removal instruction
Vxidl.BFH Trojan Removal instruction
Pigeon.BBI Trojan Information

0 comments

Nethief.XP.SP1 RAT

Nethief.XP.SP1 malware description and removal detail
Categories:RAT

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Nethief.XP.SP1:

An up-to-date copy of ExterminateIt should detect and prevent infection from Nethief.XP.SP1.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Nethief.XP.SP1 manually.

To completely manually remove Nethief.XP.SP1 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Nethief.XP.SP1.

  1. Use Task Manager to terminate the Nethief.XP.SP1 process.
  2. Delete the original Nethief.XP.SP1 file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Nethief.XP.SP1 from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Nethief.XP.SP1!


Also Be Aware of the Following Threats:
Barbare RAT Removal
Phantom.of.the.Keyboard Spyware Information
Default.BIOS.passwords Trojan Information
TrojanClicker.Win32.VB.ad Trojan Cleaner
Remove IRC.Spilt Trojan

0 comments

AntiSpyZone Adware

AntiSpyZone malware description and removal detail
Categories:Adware,Ransomware
Visible Symptoms:
Files in system folders:
[%PROFILE_TEMP%]\ASZLanguage.ini
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 4.7.lnk
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 5.4.lnk
[%DESKTOP%]\AntiSpyZone 5.4.lnk
[%PROFILE%]\LOCAL.EXE
[%PROGRAM_FILES%]\AntiSpyZone 5.4\AntiSpyZone 5.4.exe
[%STARTMENU%]\AntiSpyZone 4.7.lnk
[%STARTMENU%]\AntiSpyZone 5.4.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.6.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.7.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.9.lnk
[%DESKTOP%]\antispyzone 4.6.lnk
[%DESKTOP%]\antispyzone 4.7.lnk
[%DESKTOP%]\antispyzone 4.9.lnk
[%PROFILE_TEMP%]\aszlanguage.ini
[%PROFILE_TEMP%]\aszone.dat
[%PROGRAMS%]\antispyzone 4.6
[%PROGRAMS%]\antispyzone 4.7
[%PROGRAMS%]\antispyzone 4.9
[%PROFILE_TEMP%]\ASZLanguage.ini
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 4.7.lnk
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 5.4.lnk
[%DESKTOP%]\AntiSpyZone 5.4.lnk
[%PROFILE%]\LOCAL.EXE
[%PROGRAM_FILES%]\AntiSpyZone 5.4\AntiSpyZone 5.4.exe
[%STARTMENU%]\AntiSpyZone 4.7.lnk
[%STARTMENU%]\AntiSpyZone 5.4.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.6.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.7.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.9.lnk
[%DESKTOP%]\antispyzone 4.6.lnk
[%DESKTOP%]\antispyzone 4.7.lnk
[%DESKTOP%]\antispyzone 4.9.lnk
[%PROFILE_TEMP%]\aszlanguage.ini
[%PROFILE_TEMP%]\aszone.dat
[%PROGRAMS%]\antispyzone 4.6
[%PROGRAMS%]\antispyzone 4.7
[%PROGRAMS%]\antispyzone 4.9

In order to ensure that the AntiSpyZone is launched automatically each time the system is booted, the AntiSpyZone adds a link to its executable file in the system registry:
HKLM\Microsoft\Windows\CurrentVersion\Run
[%PROGRAM_FILES%]\AntiSpyZone 5.4\AntiSpyZone 5.4.exe

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting AntiSpyZone:

Files:
[%PROFILE_TEMP%]\ASZLanguage.ini
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 4.7.lnk
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 5.4.lnk
[%DESKTOP%]\AntiSpyZone 5.4.lnk
[%PROFILE%]\LOCAL.EXE
[%PROGRAM_FILES%]\AntiSpyZone 5.4\AntiSpyZone 5.4.exe
[%STARTMENU%]\AntiSpyZone 4.7.lnk
[%STARTMENU%]\AntiSpyZone 5.4.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.6.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.7.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.9.lnk
[%DESKTOP%]\antispyzone 4.6.lnk
[%DESKTOP%]\antispyzone 4.7.lnk
[%DESKTOP%]\antispyzone 4.9.lnk
[%PROFILE_TEMP%]\aszlanguage.ini
[%PROFILE_TEMP%]\aszone.dat
[%PROGRAMS%]\antispyzone 4.6
[%PROGRAMS%]\antispyzone 4.7
[%PROGRAMS%]\antispyzone 4.9
[%PROFILE_TEMP%]\ASZLanguage.ini
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 4.7.lnk
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\AntiSpyZone 5.4.lnk
[%DESKTOP%]\AntiSpyZone 5.4.lnk
[%PROFILE%]\LOCAL.EXE
[%PROGRAM_FILES%]\AntiSpyZone 5.4\AntiSpyZone 5.4.exe
[%STARTMENU%]\AntiSpyZone 4.7.lnk
[%STARTMENU%]\AntiSpyZone 5.4.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.6.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.7.lnk
[%APPDATA%]\microsoft\internet explorer\quick launch\antispyzone 4.9.lnk
[%DESKTOP%]\antispyzone 4.6.lnk
[%DESKTOP%]\antispyzone 4.7.lnk
[%DESKTOP%]\antispyzone 4.9.lnk
[%PROFILE_TEMP%]\aszlanguage.ini
[%PROFILE_TEMP%]\aszone.dat
[%PROGRAMS%]\antispyzone 4.6
[%PROGRAMS%]\antispyzone 4.7
[%PROGRAMS%]\antispyzone 4.9

Folders:
[%PROGRAMS%]\AntiSpyZone 4.7
[%PROGRAMS%]\AntiSpyZone 5.0
[%PROGRAMS%]\AntiSpyZone 5.4
[%PROGRAM_FILES%]\AntiSpyZone
[%PROGRAM_FILES%]\AntiSpyZone 4.6
[%PROGRAM_FILES%]\AntiSpyZone 4.7
[%PROGRAM_FILES%]\AntiSpyZone 5.4
[%PROGRAM_FILES%]\AntiSpyZone 4.9

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{A4591AB7-7BDD-791C-C9A2-A44D727FD102}
HKEY_CLASSES_ROOT\interface\{18c6eff0-9a46-47de-ac4d-8d41d550b35b}
HKEY_CLASSES_ROOT\interface\{2a895b3a-432f-478d-99e4-7c5888b9f60b}
HKEY_CLASSES_ROOT\interface\{3110b2b8-3cef-479a-a170-36cf1bd5c2d0}
HKEY_CLASSES_ROOT\interface\{35dfd15c-20a3-4b9a-8074-9a5cb42cfaca}
HKEY_CLASSES_ROOT\interface\{4374734d-e189-4a01-894c-a8e410f06d75}
HKEY_CLASSES_ROOT\interface\{44b81fd0-d641-486f-adb6-a5c94fd78a4b}
HKEY_CLASSES_ROOT\interface\{48ab5840-bd96-40be-ad08-c7bdd8a99fb8}
HKEY_CLASSES_ROOT\interface\{577ff186-8a1a-4b60-ab67-33d5786a0d30}
HKEY_CLASSES_ROOT\interface\{5b629edf-20cf-4a29-ae73-f7dfb1cb0802}
HKEY_CLASSES_ROOT\interface\{9402ca68-4ce1-4ce6-91eb-95853a32f355}
HKEY_CLASSES_ROOT\interface\{d30a5825-8cb1-4ba0-8d50-669f391dd93a}
HKEY_CLASSES_ROOT\interface\{d41b41d3-2aef-4413-bd7d-d09535b4b642}
HKEY_CLASSES_ROOT\interface\{da50098c-37d3-47a3-977c-b093cdc99630}
HKEY_CLASSES_ROOT\interface\{e5122f58-8d45-4281-b92e-f5d17bcdddce}
HKEY_CLASSES_ROOT\interface\{f2c583b5-65bc-45e9-b49b-17ca06f358c2}
HKEY_CLASSES_ROOT\interface\{f9a74184-345e-4d66-8178-6695f866e461}
HKEY_CLASSES_ROOT\typelib\{ac91c7bb-4f2a-4e02-a8c6-950eb6c31423}
HKEY_CLASSES_ROOT\Interface\{0F6385B2-6CE3-4BBD-BB0D-C69AC771931A}
HKEY_CLASSES_ROOT\Interface\{169E3DE5-B2F9-4164-A3C1-35D8F14C855E}
HKEY_CLASSES_ROOT\Interface\{2A21BA9B-B974-439E-92A6-9A1312D41E3E}
HKEY_CLASSES_ROOT\Interface\{4D036BF4-D6D4-4D2E-9DD4-1191BF1BC3C8}
HKEY_CLASSES_ROOT\Interface\{5554969E-0F2E-44E2-B32C-EF46C6889AAB}
HKEY_CLASSES_ROOT\Interface\{59F18BE7-C991-4A3A-AC20-E023B3454281}
HKEY_CLASSES_ROOT\Interface\{5BF88860-3EFD-4DE1-8D5E-D775FE715D00}
HKEY_CLASSES_ROOT\Interface\{5E0E8E5D-E365-49A5-BC45-436FCA0EFCC5}
HKEY_CLASSES_ROOT\Interface\{605106D2-8EF3-4903-8811-E9F345F9FD2D}
HKEY_CLASSES_ROOT\Interface\{A369DF09-814F-461E-A52B-08423B2B1C2B}
HKEY_CLASSES_ROOT\Interface\{AB0B71D3-E9D4-40C5-ADDC-45D7E2F397D8}
HKEY_CLASSES_ROOT\Interface\{AC1B2E43-DEDB-4B7D-9BC5-4751C2DEAB7D}
HKEY_CLASSES_ROOT\Interface\{BA3A6B06-0E13-427B-857F-C7E775FE000E}
HKEY_CLASSES_ROOT\Interface\{C4892324-B47F-4B6F-B29A-84F663C7A735}
HKEY_CLASSES_ROOT\Interface\{D5878CCF-D246-4F37-855F-8C2829F424D3}
HKEY_CLASSES_ROOT\Interface\{E830D202-66A8-4661-BB63-F2FA92B25335}
HKEY_CLASSES_ROOT\TypeLib\{DEE6B1D4-9D0E-4231-82D4-BFA701502C50}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A4591AB7-7BDD-791C-C9A2-A44D727FD102}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0F6385B2-6CE3-4BBD-BB0D-C69AC771931A}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{169E3DE5-B2F9-4164-A3C1-35D8F14C855E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2A21BA9B-B974-439E-92A6-9A1312D41E3E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4D036BF4-D6D4-4D2E-9DD4-1191BF1BC3C8}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5554969E-0F2E-44E2-B32C-EF46C6889AAB}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{59F18BE7-C991-4A3A-AC20-E023B3454281}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5BF88860-3EFD-4DE1-8D5E-D775FE715D00}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5E0E8E5D-E365-49A5-BC45-436FCA0EFCC5}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{605106D2-8EF3-4903-8811-E9F345F9FD2D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A369DF09-814F-461E-A52B-08423B2B1C2B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB0B71D3-E9D4-40C5-ADDC-45D7E2F397D8}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AC1B2E43-DEDB-4B7D-9BC5-4751C2DEAB7D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BA3A6B06-0E13-427B-857F-C7E775FE000E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C4892324-B47F-4B6F-B29A-84F663C7A735}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D5878CCF-D246-4F37-855F-8C2829F424D3}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E830D202-66A8-4661-BB63-F2FA92B25335}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DEE6B1D4-9D0E-4231-82D4-BFA701502C50}
HKEY_CLASSES_ROOT\clsid\{a4591ab7-7bdd-791c-c9a2-a44d727fd102}
HKEY_CLASSES_ROOT\interface\{081a69ac-4076-4445-b929-717a345197de}
HKEY_CLASSES_ROOT\interface\{0db204c3-846b-4585-8f0d-12a9dbf4652f}
HKEY_CLASSES_ROOT\interface\{2af5f685-a020-4c32-acb4-0775acaa726d}
HKEY_CLASSES_ROOT\interface\{31e578da-db12-4b21-8c84-ee0bb155bccf}
HKEY_CLASSES_ROOT\interface\{341fde82-84bb-4ff2-9ff7-42436f9b000b}
HKEY_CLASSES_ROOT\interface\{39a12f82-970b-473c-a873-e30010c30c13}
HKEY_CLASSES_ROOT\interface\{4440c928-46f1-49c5-b3fc-86e9577215b0}
HKEY_CLASSES_ROOT\interface\{47f75d3d-18c4-4c1e-a5e1-07c82cd6d314}
HKEY_CLASSES_ROOT\interface\{51b6c6b8-f9de-4874-8890-8c051857946b}
HKEY_CLASSES_ROOT\interface\{56538e2e-4786-48f4-a217-3564614302a0}
HKEY_CLASSES_ROOT\interface\{684cd8bc-f21a-4bc3-b3e2-82cbd3947eac}
HKEY_CLASSES_ROOT\interface\{6893f6e0-6242-449f-9e1e-bd4a6316cef6}
HKEY_CLASSES_ROOT\interface\{69b2dfed-db60-4ec8-adea-2510920054c5}
HKEY_CLASSES_ROOT\interface\{6afeae7f-c7a2-4f05-b26e-f950c4879a81}
HKEY_CLASSES_ROOT\interface\{6b0edc3a-c29f-4389-84cd-f228e7e9639b}
HKEY_CLASSES_ROOT\interface\{6f3490cf-9f42-4197-b3b7-1ebc0e891829}
HKEY_CLASSES_ROOT\interface\{75d606d3-e322-4e29-8c1c-485f0dfc56ee}
HKEY_CLASSES_ROOT\interface\{79c0464e-485e-42c5-b9dc-b2f7dd117e11}
HKEY_CLASSES_ROOT\interface\{7a738d1f-8b06-41eb-b327-16660e0b6e64}
HKEY_CLASSES_ROOT\interface\{8009c188-067b-4167-87d7-c6f9f74a91f7}
HKEY_CLASSES_ROOT\interface\{958095d6-b6c0-4fdc-9800-8c3d8657844f}
HKEY_CLASSES_ROOT\interface\{9982a17f-7ded-43b6-821e-817bedf1381e}
HKEY_CLASSES_ROOT\interface\{9ad5d1b8-71c0-41d0-8315-e827926b3628}
HKEY_CLASSES_ROOT\interface\{bbf4c3ec-4901-4194-a2fd-cd859d9b2698}
HKEY_CLASSES_ROOT\interface\{bef96896-ede0-40c8-9036-64284b7b8738}
HKEY_CLASSES_ROOT\interface\{c1f4c8dd-7d29-4b5c-a9bb-857ff92e085e}
HKEY_CLASSES_ROOT\interface\{c3c1c7a3-ad38-4f9f-8bcd-c73e3c85e79b}
HKEY_CLASSES_ROOT\interface\{ca679db4-4c3f-460f-ae24-a49d78d72c6a}
HKEY_CLASSES_ROOT\interface\{dd67b31d-6d7f-45f7-883e-e713e11c99b8}
HKEY_CLASSES_ROOT\interface\{dfd0f9e2-d2e9-4c18-9ac8-3bd5475932a9}
HKEY_CLASSES_ROOT\interface\{e281dd06-0e2c-4366-96cc-9ac69c2d7708}
HKEY_CLASSES_ROOT\interface\{fd55f9f1-ab5f-4f18-a274-d0aae138e123}
HKEY_CLASSES_ROOT\typelib\{2784d535-7c78-44b7-9f88-89c25ce19cee}
HKEY_CLASSES_ROOT\typelib\{6c04136a-2061-4164-8137-c64e695c828b}
HKEY_LOCAL_MACHINE\software\antispyzone 4.6
HKEY_LOCAL_MACHINE\software\antispyzone 4.7
HKEY_LOCAL_MACHINE\software\antispyzone 4.9
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\antispyzone 4.6.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\antispyzone 4.7.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\antispyzone 4.9.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\antispyzone 4.6
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\antispyzone 4.7
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\antispyzone 4.9

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Removing AntiSpyZone:

An up-to-date copy of ExterminateIt should detect and prevent infection from AntiSpyZone.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove AntiSpyZone manually.

To completely manually remove AntiSpyZone malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with AntiSpyZone.

  1. Use Task Manager to terminate the AntiSpyZone process.
  2. Delete the original AntiSpyZone file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes AntiSpyZone from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of AntiSpyZone!


Also Be Aware of the Following Threats:
Remove Backdoor.BackConstructor Trojan
Dablus Trojan Information
Flgobar BHO Symptoms
Quiet Trojan Cleaner
Pigeon.AVM Trojan Information

0 comments

TrojanDropper.Win32.Small.ano Trojan

TrojanDropper.Win32.Small.ano malware description and removal detail
Categories:Trojan
Also known as:

[Other]W32/Smalltroj.BBN

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing TrojanDropper.Win32.Small.ano:

An up-to-date copy of ExterminateIt should detect and prevent infection from TrojanDropper.Win32.Small.ano.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove TrojanDropper.Win32.Small.ano manually.

To completely manually remove TrojanDropper.Win32.Small.ano malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDropper.Win32.Small.ano.

  1. Use Task Manager to terminate the TrojanDropper.Win32.Small.ano process.
  2. Delete the original TrojanDropper.Win32.Small.ano file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes TrojanDropper.Win32.Small.ano from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of TrojanDropper.Win32.Small.ano!


Also Be Aware of the Following Threats:
Lidoor Trojan Symptoms
SMSPager Trojan Information
Remove CWS.MSUpdate Hijacker
Remove Cigilog Trojan
Pigeon.ABC Trojan Removal instruction

0 comments

Fried Trojan

Fried malware description and removal detail
Categories:Trojan
Also known as:

[Panda]Trj/Fried;
[Computer Associates]Fried

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Fried:

An up-to-date copy of ExterminateIt should detect and prevent infection from Fried.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Fried manually.

To completely manually remove Fried malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Fried.

  1. Use Task Manager to terminate the Fried process.
  2. Delete the original Fried file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Fried from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Fried!


Also Be Aware of the Following Threats:
Remove Barrotes Trojan
Pigeon.AHV Trojan Cleaner
SpyHeal Trojan Information
Y!Death DoS Cleaner
Killav.at Trojan Information

0 comments

Blog Archive