Wednesday, December 31, 2008

Ads3.ZDNet.com Tracking Cookie

Click here to remove Ads3.ZDNet.com malware
Ads3.ZDNet.com description:
Ads3.ZDNet.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing Ads3.ZDNet.com:

you can run trial version of ExterminateIt, or remove Ads3.ZDNet.com manually.


To completely manually remove Ads3.ZDNet.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ads3.ZDNet.com.


Read also:
Backdoor.TrojanCow Trojan Symptoms

AlwaysUpdateNews Adware

Click here to remove AlwaysUpdateNews malware
AlwaysUpdateNews description:
AlwaysUpdateNews Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Detection AlwaysUpdateNews :

AlwaysUpdateNews Folders:
[%SYSTEM%]\newmsrdk

Removing AlwaysUpdateNews:

you can run trial version of ExterminateIt, or remove AlwaysUpdateNews manually.


To completely manually remove AlwaysUpdateNews malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with AlwaysUpdateNews.


Read also:
Pigeon.AVR Trojan Information
Anna Trojan Removal
Click2Net.com Tracking Cookie Removal instruction
Tizzub Trojan Symptoms

Buffer.overflow.in.qwsv.exe.and.qwcl.exe DoS

Click here to remove Buffer.overflow.in.qwsv.exe.and.qwcl.exe malware
Buffer.overflow.in.qwsv.exe.and.qwcl.exe description:
Buffer.overflow.in.qwsv.exe.and.qwcl.exe Category:DoS
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Buffer.overflow.in.qwsv.exe.and.qwcl.exe:

you can run trial version of ExterminateIt, or remove Buffer.overflow.in.qwsv.exe.and.qwcl.exe manually.


To completely manually remove Buffer.overflow.in.qwsv.exe.and.qwcl.exe malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Buffer.overflow.in.qwsv.exe.and.qwcl.exe.


Read also:
Pigeon.EFP Trojan Information
Sshare Trojan Information
Thanksgiving.mp Trojan Cleaner
Remove ECBA Trojan

Surfcomp Adware

Click here to remove Surfcomp malware
Surfcomp description:
Surfcomp Category:Adware,BHO
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

The BHO (Browser Helper Object) waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.

Detection Surfcomp :

Surfcomp Files:
[%SYSTEM%]\surfcomp.dll
[%SYSTEM%]\surfcomp.dll

Surfcomp Registry Keys:
HKEY_CLASSES_ROOT\clsid\{4145b998-6511-46de-a873-fd1dbd053164}
HKEY_CLASSES_ROOT\interface\{adaba402-85cd-4037-bc74-f4aaa8c7429c}
HKEY_CLASSES_ROOT\plugin.splugin
HKEY_CLASSES_ROOT\plugin.splugin.1
HKEY_CLASSES_ROOT\typelib\{c776869f-7c58-4778-9f55-8a78b6ec7d28}
HKEY_CURRENT_USER\software\surfplugin
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4145b998-6511-46de-a873-fd1dbd053164}

Removing Surfcomp:

you can run trial version of ExterminateIt, or remove Surfcomp manually.


To completely manually remove Surfcomp malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Surfcomp.


Read also:
HLLP.6248!Dropper Trojan Removal instruction
FDoS.Flooder Trojan Cleaner
Removing Glocker Adware
Minsk.Ghost Trojan Removal instruction
Remove Pigeon.ACP Trojan

EZSearch Adware

Click here to remove EZSearch malware
EZSearch description:
EZSearch Category:Adware,BHO
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.

Detection EZSearch :

EZSearch Files:
[%SYSTEM%]\ctap7.dll
[%SYSTEM%]\psic2.dll
[%SYSTEM%]\ctap7.dll
[%SYSTEM%]\psic2.dll

EZSearch Folders:
[%SYSTEM%]\pics

EZSearch Registry Keys:
HKEY_CLASSES_ROOT\clsid\{09860ded-a434-49ea-ad61-427ef7b7f214}
HKEY_CLASSES_ROOT\clsid\{b14423ee-8024-4407-8ae8-ca5aeda39b81}
HKEY_CLASSES_ROOT\clsid\{b8ab2281-447f-482b-86e9-1f0ed5973637}
HKEY_CLASSES_ROOT\clsid\{f0d4ddd6-be12-4718-a543-0f7db6ca600d}
HKEY_CLASSES_ROOT\eeeezzzz.csrcbnd
HKEY_CLASSES_ROOT\eeeezzzz.csrcbnd.1
HKEY_CLASSES_ROOT\eeeezzzz.hbo
HKEY_CLASSES_ROOT\eeeezzzz.hbo.1
HKEY_CLASSES_ROOT\eeeezzzz.inst
HKEY_CLASSES_ROOT\eeeezzzz.inst.1
HKEY_CLASSES_ROOT\interface\{079e2ac3-3120-4fea-bc59-4b0fc882d283}
HKEY_CLASSES_ROOT\interface\{944f4137-c25c-41bd-aba7-554faaa59f56}
HKEY_CLASSES_ROOT\interface\{fb949d1c-821e-4a65-9964-eec8b347aa44}
HKEY_CLASSES_ROOT\typelib\{f784f91d-87d4-4897-940d-fb7c6475ebbb}
HKEY_CURRENT_USER\software\eeee
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{f0d4ddd6-be12-4718-a543-0f7db6ca600d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{b14423ee-8024-4407-8ae8-ca5aeda39b81}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%SYSTEM%]\ezs.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ez

EZSearch Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls

Removing EZSearch:

you can run trial version of ExterminateIt, or remove EZSearch manually.


To completely manually remove EZSearch malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with EZSearch.


Read also:
RIP.2003a Trojan Cleaner
Remove Hobbit Backdoor
Link.Sonar Trojan Removal instruction
Removing SillyDl.CPU Trojan

VBS.Toren Trojan

Click here to remove VBS.Toren malware
VBS.Toren description:
VBS.Toren Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Detection VBS.Toren :

VBS.Toren Files:
[%DESKTOP%]\easy mp3 alarm clock.lnk
[%SYSTEM%]\stub.exe
[%DESKTOP%]\easy mp3 alarm clock.lnk
[%SYSTEM%]\stub.exe

VBS.Toren Folders:
[%PROGRAMS%]\easy mp3 alarm clock
[%PROGRAM_FILES%]\easy mp3 alarm clock

VBS.Toren Registry Keys:
HKEY_CLASSES_ROOT\appid\ezulabootexe.exe
HKEY_CLASSES_ROOT\appid\{c0335198-6755-11d4-8a73-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{07f0a543-47ba-11d4-8a6d-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{07f0a545-47ba-11d4-8a6d-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{19dfb2cb-9b27-11d4-b192-0050dab79376}
HKEY_CLASSES_ROOT\clsid\{2079884b-6ef3-11d4-8a74-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{2babd334-5c3f-11d4-b184-0050dab79376}
HKEY_CLASSES_ROOT\clsid\{3d7247e8-5db8-11d4-8a72-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{55910916-8b4e-4c1e-9253-cce296ea71eb}
HKEY_CLASSES_ROOT\clsid\{58359010-bf36-11d3-99a2-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{c03351a4-6755-11d4-8a73-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{c4fee4a7-4b8b-11d4-8a6d-0050da2ee1be}
HKEY_CLASSES_ROOT\clsid\{d290d6e7-bf9d-42f0-9c1b-3bc8ae769b57}
HKEY_CLASSES_ROOT\ezulaagent.ezulactrlhost
HKEY_CLASSES_ROOT\ezulaagent.ezulactrlhost.1
HKEY_CLASSES_ROOT\ezulaagent.plugprot
HKEY_CLASSES_ROOT\ezulaagent.plugprot.1
HKEY_CLASSES_ROOT\ezulaagent.toolbarband
HKEY_CLASSES_ROOT\ezulaagent.toolbarband.1
HKEY_CLASSES_ROOT\ezulabootexe.installctrl
HKEY_CLASSES_ROOT\ezulabootexe.installctrl.1
HKEY_CLASSES_ROOT\ezulamain.ezulasearchpipe
HKEY_CLASSES_ROOT\ezulamain.ezulasearchpipe.1
HKEY_CLASSES_ROOT\interface\{07f0a542-47ba-11d4-8a6d-0050da2ee1be}
HKEY_CLASSES_ROOT\interface\{07f0a544-47ba-11d4-8a6d-0050da2ee1be}
HKEY_CLASSES_ROOT\interface\{1823bc4b-a253-4767-9cfc-9aca62a6b136}
HKEY_CLASSES_ROOT\interface\{19dfb2ca-9b27-11d4-b192-0050dab79376}
HKEY_CLASSES_ROOT\interface\{27bc6871-4d5a-11d4-8a6d-0050da2ee1be}
HKEY_CLASSES_ROOT\interface\{3d7247f1-5db8-11d4-8a72-0050da2ee1be}
HKEY_CLASSES_ROOT\interface\{4fd8645f-9b3e-46c1-9727-9837842a84ab}
HKEY_CLASSES_ROOT\interface\{58359012-bf36-11d3-99a2-0050da2ee1be}
HKEY_CLASSES_ROOT\typelib\{07f0a536-47ba-11d4-8a6d-0050da2ee1be}
HKEY_CLASSES_ROOT\typelib\{58359011-bf36-11d3-99a2-0050da2ee1be}
HKEY_CLASSES_ROOT\typelib\{8a044396-5da2-11d4-b185-0050dab79376}
HKEY_CLASSES_ROOT\typelib\{c0335197-6755-11d4-8a73-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\appid\ezulabootexe.exe
HKEY_LOCAL_MACHINE\software\classes\appid\{c0335198-6755-11d4-8a73-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{07f0a543-47ba-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{07f0a545-47ba-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{19dfb2cb-9b27-11d4-b192-0050dab79376}
HKEY_LOCAL_MACHINE\software\classes\clsid\{2079884b-6ef3-11d4-8a74-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{2babd334-5c3f-11d4-b184-0050dab79376}
HKEY_LOCAL_MACHINE\software\classes\clsid\{3c368c4a-827f-4f25-9c52-371bdf049912}
HKEY_LOCAL_MACHINE\software\classes\clsid\{3d7247e8-5db8-11d4-8a72-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{55910916-8b4e-4c1e-9253-cce296ea71eb}
HKEY_LOCAL_MACHINE\software\classes\clsid\{58359010-bf36-11d3-99a2-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{c03351a4-6755-11d4-8a73-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{c4fee4a7-4b8b-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d290d6e7-bf9d-42f0-9c1b-3bc8ae769b57}
HKEY_LOCAL_MACHINE\software\classes\ezulaagent.ezulactrlhost
HKEY_LOCAL_MACHINE\software\classes\ezulaagent.ezulactrlhost.1
HKEY_LOCAL_MACHINE\software\classes\ezulaagent.plugprot
HKEY_LOCAL_MACHINE\software\classes\ezulaagent.plugprot.1
HKEY_LOCAL_MACHINE\software\classes\ezulaagent.toolbarband
HKEY_LOCAL_MACHINE\software\classes\ezulaagent.toolbarband.1
HKEY_LOCAL_MACHINE\software\classes\ezulabootexe.installctrl
HKEY_LOCAL_MACHINE\software\classes\ezulabootexe.installctrl.1
HKEY_LOCAL_MACHINE\software\classes\ezulamain.ezulasearchpipe
HKEY_LOCAL_MACHINE\software\classes\ezulamain.ezulasearchpipe.1
HKEY_LOCAL_MACHINE\software\classes\interface\{07f0a542-47ba-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{07f0a544-47ba-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{1823bc4b-a253-4767-9cfc-9aca62a6b136}
HKEY_LOCAL_MACHINE\software\classes\interface\{19dfb2ca-9b27-11d4-b192-0050dab79376}
HKEY_LOCAL_MACHINE\software\classes\interface\{27bc6871-4d5a-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{3d7247f1-5db8-11d4-8a72-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{4fd8645f-9b3e-46c1-9727-9837842a84ab}
HKEY_LOCAL_MACHINE\software\classes\interface\{58359012-bf36-11d3-99a2-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{7edc96e1-5dd3-11d4-b185-0050dab79376}
HKEY_LOCAL_MACHINE\software\classes\interface\{8ebb1743-9a2f-11d4-8a7e-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{c03351a3-6755-11d4-8a73-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{c4fee4a6-4b8b-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\interface\{ef0372dc-f552-11d3-8528-0050dab79376}
HKEY_LOCAL_MACHINE\software\classes\interface\{ef0372de-f552-11d3-8528-0050dab79376}
HKEY_LOCAL_MACHINE\software\classes\typelib\{07f0a536-47ba-11d4-8a6d-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\typelib\{58359011-bf36-11d3-99a2-0050da2ee1be}
HKEY_LOCAL_MACHINE\software\classes\typelib\{c0335197-6755-11d4-8a73-0050da2ee1be}

Removing VBS.Toren:

you can run trial version of ExterminateIt, or remove VBS.Toren manually.


To completely manually remove VBS.Toren malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with VBS.Toren.


Read also:
Beastdoor.8qb Trojan Information
Removing Vxidl.AIB Trojan
Lineage.AAQ Trojan Cleaner
Adult content dialler Dialer Cleaner
Pigeon.AQF Trojan Symptoms

Trojan.Dropper.Win32.Small.of Trojan

Click here to remove Trojan.Dropper.Win32.Small.of malware
Trojan.Dropper.Win32.Small.of description:
Trojan.Dropper.Win32.Small.of Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Trojan.Dropper.Win32.Small.of :

Trojan.Dropper.Win32.Small.of Files:
[%WINDOWS%]\iconw.exe
[%WINDOWS%]\iconw.exe

Removing Trojan.Dropper.Win32.Small.of:

you can run trial version of ExterminateIt, or remove Trojan.Dropper.Win32.Small.of manually.


To completely manually remove Trojan.Dropper.Win32.Small.of malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Trojan.Dropper.Win32.Small.of.


Read also:
Grad Hacker Tool Removal

Scanner.Blast RAT

Click here to remove Scanner.Blast malware
Scanner.Blast description:
Scanner.Blast Category:RAT
Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Removing Scanner.Blast:

you can run trial version of ExterminateIt, or remove Scanner.Blast manually.


To completely manually remove Scanner.Blast malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Scanner.Blast.


Read also:
Poison.tipped.Arrow Backdoor Symptoms

Tirant Backdoor

Click here to remove Tirant malware
Tirant description:
Tirant Category:Backdoor
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Removing Tirant:

you can run trial version of ExterminateIt, or remove Tirant manually.


To completely manually remove Tirant malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Tirant.


Read also:
Remove ROISpy.com Tracking Cookie
SillyDl.CSD Trojan Information
Remove Haxdown Downloader
Removing Adding.Yourself.to.your.Own.Contact.List Trojan
IRC.Fagot Worm Removal instruction

Pigeon.AVMU Trojan

Click here to remove Pigeon.AVMU malware
Pigeon.AVMU description:
Pigeon.AVMU Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AVMU:

you can run trial version of ExterminateIt, or remove Pigeon.AVMU manually.


To completely manually remove Pigeon.AVMU malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVMU.


Read also:
Win32.Flooder.SMS.VB DoS Removal instruction
Remove easy.hit.counters.com Tracking Cookie
Durvil BHO Cleaner
Ned.Hard Trojan Symptoms
Sk.Silencer Trojan Information

AOHell Trojan

Click here to remove AOHell malware
AOHell description:
AOHell Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing AOHell:

you can run trial version of ExterminateIt, or remove AOHell manually.


To completely manually remove AOHell malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with AOHell.


Read also:
Removing WB Backdoor
Skype Worm Removal
startpage.vo Hijacker Information
Removing Cossiga Trojan
Admgates Trojan Removal instruction

Tydpec Trojan

Click here to remove Tydpec malware
Tydpec description:
Tydpec Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Detection Tydpec :

Tydpec Files:
[%PROFILE%]\Recent\beautiful girl.wma .gif.lnk
[%PROFILE%]\Recent\beautiful girl.wma .gif.lnk

Removing Tydpec:

you can run trial version of ExterminateIt, or remove Tydpec manually.


To completely manually remove Tydpec malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Tydpec.


Read also:
AOL.Ikobur DoS Removal instruction
Bancos.GHD Trojan Removal instruction

Quadratic Trojan

Click here to remove Quadratic malware
Quadratic description:
Quadratic Category:Trojan,Backdoor,Downloader,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Trojans-downloaders downloads and installs new malware or adware on the computer.

DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Quadratic:

you can run trial version of ExterminateIt, or remove Quadratic manually.


To completely manually remove Quadratic malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Quadratic.


Read also:
FDoS.Buwah DoS Symptoms
Ploits DoS Removal

Tuesday, December 30, 2008

StartPage.zy Hijacker

Click here to remove StartPage.zy malware
StartPage.zy description:
StartPage.zy Category:Hijacker
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.

Detection StartPage.zy :

StartPage.zy Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing StartPage.zy:

you can run trial version of ExterminateIt, or remove StartPage.zy manually.


To completely manually remove StartPage.zy malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with StartPage.zy.


Read also:
Removing War.modified RAT
Win32.Small.bau Downloader Removal
Removing Templar Trojan
Webber.J!downloader Trojan Symptoms
Removing Pigeon.AWKD Trojan

Bancos.GZR Trojan

Click here to remove Bancos.GZR malware
Bancos.GZR description:
Bancos.GZR Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.GZR:

you can run trial version of ExterminateIt, or remove Bancos.GZR manually.


To completely manually remove Bancos.GZR malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GZR.


Read also:
SillyDl.CKD Trojan Information
Crash4 Trojan Removal instruction
Remove Bancos.HKP Trojan

MuckCom Trojan

Click here to remove MuckCom malware
MuckCom description:
MuckCom Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing MuckCom:

you can run trial version of ExterminateIt, or remove MuckCom manually.


To completely manually remove MuckCom malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with MuckCom.


Read also:
Removing Switch Trojan
Removing Vxidl.AEF Trojan
Removing Pigeon.EMP Trojan
VBS.Overload Trojan Information
AXVenore Adware Removal

Pigeon.BBS Trojan

Click here to remove Pigeon.BBS malware
Pigeon.BBS description:
Pigeon.BBS Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.BBS:

you can run trial version of ExterminateIt, or remove Pigeon.BBS manually.


To completely manually remove Pigeon.BBS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.BBS.


Read also:
Bancos.GDL Trojan Removal instruction
Pigeon.AOD Trojan Symptoms
Bancos.FYX Trojan Symptoms
Removing BackDoor.AEZ RAT
BackDoor.CGX.svr Backdoor Symptoms

QSD5 Trojan

Click here to remove QSD5 malware
QSD5 description:
QSD5 Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing QSD5:

you can run trial version of ExterminateIt, or remove QSD5 manually.


To completely manually remove QSD5 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with QSD5.


Read also:
Bakanix Trojan Cleaner
Remove Sylvia.Hong.Kong Trojan
Generic.Downloader.ab Trojan Information

Monday, December 29, 2008

Pigeon.EHU Trojan

Click here to remove Pigeon.EHU malware
Pigeon.EHU description:
Pigeon.EHU Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.EHU:

you can run trial version of ExterminateIt, or remove Pigeon.EHU manually.


To completely manually remove Pigeon.EHU malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EHU.


Read also:
afy11.net Tracking Cookie Cleaner

hitsprocessor.com Tracking Cookie

Click here to remove hitsprocessor.com malware
hitsprocessor.com description:
hitsprocessor.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing hitsprocessor.com:

you can run trial version of ExterminateIt, or remove hitsprocessor.com manually.


To completely manually remove hitsprocessor.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with hitsprocessor.com.


Read also:
Dumador.df Backdoor Information

Vxidl.AKG Trojan

Click here to remove Vxidl.AKG malware
Vxidl.AKG description:
Vxidl.AKG Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.AKG:

you can run trial version of ExterminateIt, or remove Vxidl.AKG manually.


To completely manually remove Vxidl.AKG malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AKG.


Read also:
Remove Pigeon.EOC Trojan
Floppymad Trojan Removal instruction
Removing Pigeon.ESD Trojan

Goldilk Trojan

Click here to remove Goldilk malware
Goldilk description:
Goldilk Category:Trojan,Worm,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Worms can be classified according to the propagation method they use,
i.e. how they deliver copies of themselves to new victim machines.
Worms can also be classified by installation method, launch method and finally according
to characteristics standard to all malware: polymorphism, stealth etc.

Many of the worms which managed to cause significant outbreaks use more then
one propagation method as well as more than one infection technique.
The methods are listed separately below.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Goldilk:

you can run trial version of ExterminateIt, or remove Goldilk manually.


To completely manually remove Goldilk malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Goldilk.


Read also:
Removing BackDoor.AQS Trojan
Extension.Creator Trojan Cleaner
SMS.Bomb DoS Removal instruction
MicroJoiner Trojan Removal
Pigeon.AJF Trojan Removal

Durvil BHO

Click here to remove Durvil malware
Durvil description:
Durvil Category:BHO
The BHO (Browser Helper Object) waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.

Detection Durvil :

Durvil Files:
[%SYSTEM%]\durvil1.dll
[%SYSTEM%]\durvil1.exe
[%SYSTEM%]\durvilx.dll
[%SYSTEM%]\durvilx.exe
[%SYSTEM%]\durvil1.dll
[%SYSTEM%]\durvil1.exe
[%SYSTEM%]\durvilx.dll
[%SYSTEM%]\durvilx.exe

Durvil Registry Keys:
HKEY_CLASSES_ROOT\clsid\{40a2988e-c954-4dde-bd08-453191805bb9}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{40a2988e-c954-4dde-bd08-453191805bb9}

Removing Durvil:

you can run trial version of ExterminateIt, or remove Durvil manually.


To completely manually remove Durvil malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Durvil.


Read also:
Bryansk Trojan Removal instruction
Pigeon.EEL Trojan Cleaner
adreactor.com Tracking Cookie Removal
Breakit Trojan Removal

Pec Trojan

Click here to remove Pec malware
Pec description:
Pec Category:Trojan,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing Pec:

you can run trial version of ExterminateIt, or remove Pec manually.


To completely manually remove Pec malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pec.


Read also:
NT.Shareme Trojan Cleaner

Bancos.AEB Trojan

Click here to remove Bancos.AEB malware
Bancos.AEB description:
Bancos.AEB Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.AEB:

you can run trial version of ExterminateIt, or remove Bancos.AEB manually.


To completely manually remove Bancos.AEB malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.AEB.


Read also:
Remove Ultora Trojan
Bat.Sys Trojan Information
VirusDetected Trojan Information
WB Backdoor Removal instruction
Remove Pigeon.EPH Trojan

KaBoom! Hacker Tool

Click here to remove KaBoom! malware
KaBoom! description:
KaBoom! Category:Hacker Tool,DoS
Exploits use vulnerabilities in operating systems and applications to achieve the same result.
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing KaBoom!:

you can run trial version of ExterminateIt, or remove KaBoom! manually.


To completely manually remove KaBoom! malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with KaBoom!.


Read also:
One.12b Trojan Removal
Removing BO2K.plugin.rcgi RAT
Removing Bancos.GSY Trojan

Ankara Trojan

Click here to remove Ankara malware
Ankara description:
Ankara Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Ankara:

you can run trial version of ExterminateIt, or remove Ankara manually.


To completely manually remove Ankara malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ankara.


Read also:
SdBot.bk Backdoor Symptoms
Bancos.FYX Trojan Cleaner

FliMod Trojan

Click here to remove FliMod malware
FliMod description:
FliMod Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing FliMod:

you can run trial version of ExterminateIt, or remove FliMod manually.


To completely manually remove FliMod malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with FliMod.


Read also:
Bat.SpecialSign Trojan Removal instruction
Bancos.IAJ Trojan Removal instruction
Hijack.Findthewebsiteyouneed Hijacker Removal

Vxidl.AFO Trojan

Click here to remove Vxidl.AFO malware
Vxidl.AFO description:
Vxidl.AFO Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.AFO:

you can run trial version of ExterminateIt, or remove Vxidl.AFO manually.


To completely manually remove Vxidl.AFO malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AFO.


Read also:
TrojanDownloader.Win32.GoldenPalace Trojan Removal instruction

W95.CIH.src Trojan

Click here to remove W95.CIH.src malware
W95.CIH.src description:
W95.CIH.src Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing W95.CIH.src:

you can run trial version of ExterminateIt, or remove W95.CIH.src manually.


To completely manually remove W95.CIH.src malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with W95.CIH.src.


Read also:
Remove Win32.Spybot Trojan
Removing SillyDL.DDF Trojan
Bancos.APK Trojan Removal instruction
Remove Adlight Hijacker

Sunday, December 28, 2008

Ultorb Trojan

Click here to remove Ultorb malware
Ultorb description:
Ultorb Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Ultorb:

you can run trial version of ExterminateIt, or remove Ultorb manually.


To completely manually remove Ultorb malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ultorb.


Read also:
SecretExplorer DoS Information
top.am Tracking Cookie Symptoms
Remove Vxidl.ASX Trojan
Press Trojan Symptoms

Bancos.FXE Trojan

Click here to remove Bancos.FXE malware
Bancos.FXE description:
Bancos.FXE Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.FXE:

you can run trial version of ExterminateIt, or remove Bancos.FXE manually.


To completely manually remove Bancos.FXE malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.FXE.


Read also:
Agent.kp Downloader Information
Reckmess Trojan Cleaner
bannerexchange.com Tracking Cookie Cleaner

PswStor Trojan

Click here to remove PswStor malware
PswStor description:
PswStor Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing PswStor:

you can run trial version of ExterminateIt, or remove PswStor manually.


To completely manually remove PswStor malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PswStor.


Read also:
Win95.Werther Trojan Information
Backdoor.TheInf.Server.family Backdoor Removal instruction
Mard.mIRC32 Backdoor Removal
Pigeon.EPX Trojan Removal

Lop.com.WinActiveJ Trojan

Click here to remove Lop.com.WinActiveJ malware
Lop.com.WinActiveJ description:
Lop.com.WinActiveJ Category:Trojan,Adware,Spyware
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.

Removing Lop.com.WinActiveJ:

you can run trial version of ExterminateIt, or remove Lop.com.WinActiveJ manually.


To completely manually remove Lop.com.WinActiveJ malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Lop.com.WinActiveJ.


Read also:
VB.Client.Server.System RAT Removal instruction
MoSucker.Generator Trojan Symptoms

Filth Trojan

Click here to remove Filth malware
Filth description:
Filth Category:Trojan,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Filth:

you can run trial version of ExterminateIt, or remove Filth manually.


To completely manually remove Filth malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Filth.


Read also:
Removing UTClean Trojan

Dadobra.ez Downloader

Click here to remove Dadobra.ez malware
Dadobra.ez description:
Dadobra.ez Category:Downloader
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Detection Dadobra.ez :

Dadobra.ez Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Dadobra.ez:

you can run trial version of ExterminateIt, or remove Dadobra.ez manually.


To completely manually remove Dadobra.ez malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Dadobra.ez.


Jerusalem.Mummy Trojan

Click here to remove Jerusalem.Mummy malware
Jerusalem.Mummy description:
Jerusalem.Mummy Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Jerusalem.Mummy:

you can run trial version of ExterminateIt, or remove Jerusalem.Mummy manually.


To completely manually remove Jerusalem.Mummy malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Jerusalem.Mummy.


Read also:
Remove Maniadoor Backdoor
Ercva.com Tracking Cookie Information

Bancos.GCU Trojan

Click here to remove Bancos.GCU malware
Bancos.GCU description:
Bancos.GCU Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.GCU:

you can run trial version of ExterminateIt, or remove Bancos.GCU manually.


To completely manually remove Bancos.GCU malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GCU.


Read also:
Removing Downloader.BCF Trojan
Removing Bat.Batalia Trojan

Bancos.GYK Trojan

Click here to remove Bancos.GYK malware
Bancos.GYK description:
Bancos.GYK Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.GYK:

you can run trial version of ExterminateIt, or remove Bancos.GYK manually.


To completely manually remove Bancos.GYK malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GYK.


Read also:
Remove SA.Lite Downloader
TB Trojan Cleaner
SillyDl.CDI Trojan Symptoms
Removing Crackdown Trojan

Win32.MS03 Trojan

Click here to remove Win32.MS03 malware
Win32.MS03 description:
Win32.MS03 Category:Trojan,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing Win32.MS03:

you can run trial version of ExterminateIt, or remove Win32.MS03 manually.


To completely manually remove Win32.MS03 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.MS03.


Read also:
Bancos.DJD Trojan Information
Roastcurd Trojan Symptoms

HLLP.Birthday Trojan

Click here to remove HLLP.Birthday malware
HLLP.Birthday description:
HLLP.Birthday Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing HLLP.Birthday:

you can run trial version of ExterminateIt, or remove HLLP.Birthday manually.


To completely manually remove HLLP.Birthday malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with HLLP.Birthday.


Read also:
DuvxUpd Trojan Cleaner
Removing ICanNews Adware
Vxidl.AUH Trojan Removal
Removing Strange.packet Trojan

Saturday, December 27, 2008

SillyDl.DLN Trojan

Click here to remove SillyDl.DLN malware
SillyDl.DLN description:
SillyDl.DLN Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing SillyDl.DLN:

you can run trial version of ExterminateIt, or remove SillyDl.DLN manually.


To completely manually remove SillyDl.DLN malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.DLN.


Read also:
Infra.Alpha Backdoor Symptoms
RemExp RAT Removal

adreactor.com Tracking Cookie

Click here to remove adreactor.com malware
adreactor.com description:
adreactor.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing adreactor.com:

you can run trial version of ExterminateIt, or remove adreactor.com manually.


To completely manually remove adreactor.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with adreactor.com.


Read also:
Proxy.Daemonize Trojan Removal

Win16.APStrojan Trojan

Click here to remove Win16.APStrojan malware
Win16.APStrojan description:
Win16.APStrojan Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Win16.APStrojan:

you can run trial version of ExterminateIt, or remove Win16.APStrojan manually.


To completely manually remove Win16.APStrojan malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win16.APStrojan.


Read also:
Remove Nineth Trojan
Bancos.GOP Trojan Removal instruction
Removing Sisia Trojan
Dewnuttin Trojan Symptoms
Vxidl.ASJ Trojan Cleaner

Pigeon.AVMO Trojan

Click here to remove Pigeon.AVMO malware
Pigeon.AVMO description:
Pigeon.AVMO Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.AVMO:

you can run trial version of ExterminateIt, or remove Pigeon.AVMO manually.


To completely manually remove Pigeon.AVMO malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVMO.


Read also:
Vxidl.ALI Trojan Symptoms
Removing Phishbank.AEQ Trojan
Huplu Trojan Removal instruction
AntiLamer.Light Trojan Information
Removing Pigeon.AVGA Trojan

Delf.og Trojan

Click here to remove Delf.og malware
Delf.og description:
Delf.og Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Delf.og:

you can run trial version of ExterminateIt, or remove Delf.og manually.


To completely manually remove Delf.og malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Delf.og.


Read also:
indiatimes.com Tracking Cookie Removal instruction
Mhtserv Backdoor Removal

GBoZ.Talks.about.AOLers Trojan

Click here to remove GBoZ.Talks.about.AOLers malware
GBoZ.Talks.about.AOLers description:
GBoZ.Talks.about.AOLers Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing GBoZ.Talks.about.AOLers:

you can run trial version of ExterminateIt, or remove GBoZ.Talks.about.AOLers manually.


To completely manually remove GBoZ.Talks.about.AOLers malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with GBoZ.Talks.about.AOLers.


Read also:
SubSeven.Bonus.deutsch Backdoor Symptoms
Removing Pigeon.DZZ Trojan
SearchCentrix.Webalize BHO Symptoms
Conferox Trojan Information

Delf.ap Downloader

Click here to remove Delf.ap malware
Delf.ap description:
Delf.ap Category:Downloader
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Detection Delf.ap :

Delf.ap Files:
[%SYSTEM%]\services\1.exe
[%WINDOWS%]\system\services\sexy.exe
[%SYSTEM%]\services\1.exe
[%WINDOWS%]\system\services\sexy.exe

Removing Delf.ap:

you can run trial version of ExterminateIt, or remove Delf.ap manually.


To completely manually remove Delf.ap malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Delf.ap.


Read also:
MadChatter Trojan Information
Bancos.HXN Trojan Removal instruction
Phobi Trojan Cleaner

ETC Trojan

Click here to remove ETC malware
ETC description:
ETC Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
Trojans-downloaders downloads and installs new malware or adware on the computer.

DoS trojans conduct attacks from a single computer with the consent of the user.

Removing ETC:

you can run trial version of ExterminateIt, or remove ETC manually.


To completely manually remove ETC malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ETC.


Read also:
Bancos.ZZJ Trojan Cleaner
Server.Sockets Trojan Information
Ini.Killer.Pro Backdoor Information

Bat.Ahoj Trojan

Click here to remove Bat.Ahoj malware
Bat.Ahoj description:
Bat.Ahoj Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bat.Ahoj:

you can run trial version of ExterminateIt, or remove Bat.Ahoj manually.


To completely manually remove Bat.Ahoj malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bat.Ahoj.


Read also:
SillyDl.CLR Trojan Removal
Pigeon.EST Trojan Removal

Tribe.Flood.Network DoS

Click here to remove Tribe.Flood.Network malware
Tribe.Flood.Network description:
Tribe.Flood.Network Category:DoS
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Tribe.Flood.Network:

you can run trial version of ExterminateIt, or remove Tribe.Flood.Network manually.


To completely manually remove Tribe.Flood.Network malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Tribe.Flood.Network.


Read also:
Painter Adware Cleaner
Belnow Trojan Cleaner

Pigeon.ETM Trojan

Click here to remove Pigeon.ETM malware
Pigeon.ETM description:
Pigeon.ETM Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.ETM:

you can run trial version of ExterminateIt, or remove Pigeon.ETM manually.


To completely manually remove Pigeon.ETM malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.ETM.


Read also:
Remove IGMP.Inferno DoS
probably Trojan Removal
Pigeon.AFZ Trojan Removal instruction
Remove Half.Life.Jacker Trojan
Companion Trojan Removal instruction

Affina.com Tracking Cookie

Click here to remove Affina.com malware
Affina.com description:
Affina.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing Affina.com:

you can run trial version of ExterminateIt, or remove Affina.com manually.


To completely manually remove Affina.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Affina.com.


Read also:
Backdoor.Fantador Trojan Removal
MeOS.Xymo Trojan Removal instruction

Phishbank.AQE Trojan

Click here to remove Phishbank.AQE malware
Phishbank.AQE description:
Phishbank.AQE Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Phishbank.AQE:

you can run trial version of ExterminateIt, or remove Phishbank.AQE manually.


To completely manually remove Phishbank.AQE malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Phishbank.AQE.


Read also:
Vxidl.AYX Trojan Information
Slow.Format Trojan Cleaner
Removing Bancos.GBB Trojan
Mario Trojan Removal

SillyP2P Backdoor

Click here to remove SillyP2P malware
SillyP2P description:
SillyP2P Category:Backdoor,Hacker Tool
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.

Removing SillyP2P:

you can run trial version of ExterminateIt, or remove SillyP2P manually.


To completely manually remove SillyP2P malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyP2P.


Read also:
ShipUp Trojan Removal instruction
Removing TrojanDropper.Win32.VB.bj Trojan

Hotfe Trojan

Click here to remove Hotfe malware
Hotfe description:
Hotfe Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Hotfe:

you can run trial version of ExterminateIt, or remove Hotfe manually.


To completely manually remove Hotfe malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Hotfe.


Read also:
Remove Gleider Trojan
PSW.Virton Trojan Symptoms

SillyDl.CCJ Trojan

Click here to remove SillyDl.CCJ malware
SillyDl.CCJ description:
SillyDl.CCJ Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing SillyDl.CCJ:

you can run trial version of ExterminateIt, or remove SillyDl.CCJ manually.


To completely manually remove SillyDl.CCJ malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.CCJ.


Read also:
Erase.15!Trojan Trojan Removal

Friday, December 26, 2008

Backdoor.Knight Trojan

Click here to remove Backdoor.Knight malware
Backdoor.Knight description:
Backdoor.Knight Category:Trojan,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing Backdoor.Knight:

you can run trial version of ExterminateIt, or remove Backdoor.Knight manually.


To completely manually remove Backdoor.Knight malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Backdoor.Knight.


Read also:
Deamweb Trojan Removal

Bayda Trojan

Click here to remove Bayda malware
Bayda description:
Bayda Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bayda:

you can run trial version of ExterminateIt, or remove Bayda manually.


To completely manually remove Bayda malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bayda.


Read also:
RegFish Trojan Information

VividKeyLogger Spyware

Click here to remove VividKeyLogger malware
VividKeyLogger description:
VividKeyLogger Category:Spyware
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.

Detection VividKeyLogger :

VividKeyLogger Folders:
[%PROGRAMS%]\Vivid Designs
[%PROGRAM_FILES%]\Vivid Designs

VividKeyLogger Registry Keys:
HKEY_CURRENT_USER\software\microsoft\installer\assemblies\c:|program files|vivid designs|vividkeylogger|magiclibrary.dll
HKEY_CURRENT_USER\software\microsoft\installer\assemblies\c:|program files|vivid designs|vividkeylogger|vividdesigns.buttons.dll
HKEY_CURRENT_USER\software\microsoft\installer\assemblies\c:|program files|vivid designs|vividkeylogger|vividdesigns.controls.dll
HKEY_CURRENT_USER\software\microsoft\installer\assemblies\c:|program files|vivid designs|vividkeylogger|vividkeylogger.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{3c74af31-a673-4320-a5d0-7a4c7dfba174}

Removing VividKeyLogger:

you can run trial version of ExterminateIt, or remove VividKeyLogger manually.


To completely manually remove VividKeyLogger malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with VividKeyLogger.


Read also:
Vxidl.AIB Trojan Cleaner
XOA.AC95 Trojan Removal instruction

Pigeon.EGY Trojan

Click here to remove Pigeon.EGY malware
Pigeon.EGY description:
Pigeon.EGY Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.EGY:

you can run trial version of ExterminateIt, or remove Pigeon.EGY manually.


To completely manually remove Pigeon.EGY malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EGY.


Read also:
ICanNews Adware Cleaner
AdClicker Trojan Removal
Insect Backdoor Symptoms
Win32.KillMF Trojan Removal
Remove SillyDl.AYP Downloader

Badchop Trojan

Click here to remove Badchop malware
Badchop description:
Badchop Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Badchop:

you can run trial version of ExterminateIt, or remove Badchop manually.


To completely manually remove Badchop malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Badchop.


Read also:
QFat32 Trojan Cleaner

Backdoor.Netbus.Server.family Trojan

Click here to remove Backdoor.Netbus.Server.family malware
Backdoor.Netbus.Server.family description:
Backdoor.Netbus.Server.family Category:Trojan,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing Backdoor.Netbus.Server.family:

you can run trial version of ExterminateIt, or remove Backdoor.Netbus.Server.family manually.


To completely manually remove Backdoor.Netbus.Server.family malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Backdoor.Netbus.Server.family.


Read also:
Remove Bancos.DNN Trojan
Dablus Trojan Removal
Zlob.LAF Trojan Removal instruction
Remove AdStatus.Service Adware
NetBus.Pro Trojan Removal instruction

NordDL Trojan

Click here to remove NordDL malware
NordDL description:
NordDL Category:Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Removing NordDL:

you can run trial version of ExterminateIt, or remove NordDL manually.


To completely manually remove NordDL malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with NordDL.


Read also:
QZap119 Trojan Removal
Remove AXVenore Adware

QQSNL Trojan

Click here to remove QQSNL malware
QQSNL description:
QQSNL Category:Trojan,Backdoor,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing QQSNL:

you can run trial version of ExterminateIt, or remove QQSNL manually.


To completely manually remove QQSNL malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with QQSNL.


Read also:
Pigeon.AQU Trojan Cleaner

IMIRC DoS

Click here to remove IMIRC malware
IMIRC description:
IMIRC Category:DoS
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing IMIRC:

you can run trial version of ExterminateIt, or remove IMIRC manually.


To completely manually remove IMIRC malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with IMIRC.


Read also:
Easy.exe Trojan Removal
Dikshev Trojan Information
Removing Vxidl.BCF Trojan
MCIPS DoS Symptoms

Win.Surfer Trojan

Click here to remove Win.Surfer malware
Win.Surfer description:
Win.Surfer Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Win.Surfer:

you can run trial version of ExterminateIt, or remove Win.Surfer manually.


To completely manually remove Win.Surfer malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win.Surfer.


Read also:
Ultraphuck Trojan Symptoms
Voya3049 Trojan Cleaner
TrustedAntivirus Ransomware Removal

Abetear Trojan

Click here to remove Abetear malware
Abetear description:
Abetear Category:Trojan,Adware
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Detection Abetear :

Abetear Files:
[%APPDATA%]\tmp2.tmp.exe
[%APPDATA%]\tmp4.tmp.exe
[%SYSTEM%]\qwerty12.exe
[%APPDATA%]\tmp2.tmp.exe
[%APPDATA%]\tmp4.tmp.exe
[%SYSTEM%]\qwerty12.exe

Abetear Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\domainservice
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_domainservice
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\domainservice

Removing Abetear:

you can run trial version of ExterminateIt, or remove Abetear manually.


To completely manually remove Abetear malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Abetear.


Read also:
Arodan Backdoor Symptoms
Bits.dll Trojan Information
Agent.bj Downloader Removal
keywordmax.com Tracking Cookie Symptoms
Removing Bancos.DJR Trojan

TrojanDropper.Win32.Small Trojan

Click here to remove TrojanDropper.Win32.Small malware
TrojanDropper.Win32.Small description:
TrojanDropper.Win32.Small Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing TrojanDropper.Win32.Small:

you can run trial version of ExterminateIt, or remove TrojanDropper.Win32.Small manually.


To completely manually remove TrojanDropper.Win32.Small malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDropper.Win32.Small.


Read also:
Remove Inkwaste Trojan
Alex.Server Trojan Removal
Uploader.0b4 Trojan Symptoms

Remote.Revise Backdoor

Click here to remove Remote.Revise malware
Remote.Revise description:
Remote.Revise Category:Backdoor,RAT
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Removing Remote.Revise:

you can run trial version of ExterminateIt, or remove Remote.Revise manually.


To completely manually remove Remote.Revise malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Remote.Revise.


Read also:
AdBreak.FHFMM BHO Information
Vxidl.AIL Trojan Symptoms
Elkong Trojan Information

Thursday, December 25, 2008

LookSmart Tracking Cookie

Click here to remove LookSmart malware
LookSmart description:
LookSmart Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing LookSmart:

you can run trial version of ExterminateIt, or remove LookSmart manually.


To completely manually remove LookSmart malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with LookSmart.


Read also:
SillyDl.CJS Trojan Symptoms
Removing SillyDl.BYQ Trojan
Removing SMS.Simple DoS
LittleHelper Adware Removal instruction
Remove Pigeon.AXW Trojan

Deldos Trojan

Click here to remove Deldos malware
Deldos description:
Deldos Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Deldos:

you can run trial version of ExterminateIt, or remove Deldos manually.


To completely manually remove Deldos malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Deldos.


Read also:
ClausulaDialer Adware Symptoms
Reigndar Trojan Symptoms

Ieok Trojan

Click here to remove Ieok malware
Ieok description:
Ieok Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Detection Ieok :

Ieok Files:
[%WINDOWS%]\system\ctldlg32.dll
[%WINDOWS%]\system\ctldlg32.dll

Ieok Registry Keys:
HKEY_CLASSES_ROOT\clsid\{06849e9f-c8d7-4d59-b87d-784b7d6be083}
HKEY_CLASSES_ROOT\clsid\{30569401-8721-8345-2ca1-873581cf4101}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{06849e9f-c8d7-4d59-b87d-784b7d6be083}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{30569401-8721-8345-2ca1-873581cf4101}

Removing Ieok:

you can run trial version of ExterminateIt, or remove Ieok manually.


To completely manually remove Ieok malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ieok.


Read also:
Removing Dorneg Trojan
DNLExe Adware Cleaner
Pigeon.AVKF Trojan Information
Removing MiniCommand Trojan

Moiling Trojan

Click here to remove Moiling malware
Moiling description:
Moiling Category:Trojan,Adware
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Detection Moiling :

Moiling Files:
[%PROFILE_TEMP%]\temp.fr????
[%PROFILE_TEMP%]\temp.fr????\pmmnt.exe
[%PROFILE_TEMP%]\temp.fr????\pmmon.exe
[%PROFILE_TEMP%]\temp.fr????\pmsnrr.exe
[%PROGRAM_FILES%]\iVideoCodec\pmmon.exe
[%PROGRAM_FILES%]\iVideoCodec\pmsngr.exe
[%PROGRAM_FILES%]\MMediaCodec\pmmon.exe
[%PROGRAM_FILES%]\Video Access ActiveX Object\pmmnt.exe
[%PROGRAM_FILES%]\Video Access ActiveX Object\pmsnrr.exe
[%PROGRAM_FILES%]\Video ActiveX Object\pmmnt.exe
[%PROGRAM_FILES%]\Video ActiveX Object\pmsnrr.exe
[%PROGRAM_FILES%]\Video AX Object\smmain.exe
[%PROGRAM_FILES%]\Video AX Object\smmon.exe
[%PROGRAM_FILES%]\VideoKeyCodec\pmmon.exe
[%SYSTEM%]\ATMCLK.0XE
[%DESKTOP%]\921185\pmmnt.exe
[%DESKTOP%]\921185\pmsnrr.exe
[%PROFILE_TEMP%]\temp.fr????
[%PROFILE_TEMP%]\temp.fr????\pmmnt.exe
[%PROFILE_TEMP%]\temp.fr????\pmmon.exe
[%PROFILE_TEMP%]\temp.fr????\pmsnrr.exe
[%PROGRAM_FILES%]\iVideoCodec\pmmon.exe
[%PROGRAM_FILES%]\iVideoCodec\pmsngr.exe
[%PROGRAM_FILES%]\MMediaCodec\pmmon.exe
[%PROGRAM_FILES%]\Video Access ActiveX Object\pmmnt.exe
[%PROGRAM_FILES%]\Video Access ActiveX Object\pmsnrr.exe
[%PROGRAM_FILES%]\Video ActiveX Object\pmmnt.exe
[%PROGRAM_FILES%]\Video ActiveX Object\pmsnrr.exe
[%PROGRAM_FILES%]\Video AX Object\smmain.exe
[%PROGRAM_FILES%]\Video AX Object\smmon.exe
[%PROGRAM_FILES%]\VideoKeyCodec\pmmon.exe
[%SYSTEM%]\ATMCLK.0XE
[%DESKTOP%]\921185\pmmnt.exe
[%DESKTOP%]\921185\pmsnrr.exe

Moiling Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run

Removing Moiling:

you can run trial version of ExterminateIt, or remove Moiling manually.


To completely manually remove Moiling malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Moiling.


Read also:
KeySpy.dr Trojan Cleaner
Bancos.GUJ Trojan Removal instruction
Removing Tooncom Downloader
BO Trojan Information

Win32.StatPage Hijacker

Click here to remove Win32.StatPage malware
Win32.StatPage description:
Win32.StatPage Category:Hijacker
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.

When the default home page is hijacked, the browser opens to the web page set by the hijacker
instead of the user's designated home page. In some cases, the hijacker may block users from
restoring their desired home page.

A search hijacker redirects search results to other pages and may
transmit search and browsing data to unknown servers. An error page hijacker directs
the browser to another page, usually an advertising page, instead of the usual error
page when the requested URL is not found.

A desktop hijacker replaces the desktop wallpaper with advertising
for products and services on the desktop.

Hijackers take control of various parts of your web browser, including your home page,
search pages, and search bar. They may also redirect you to certain sites should you
mistype an address or prevent you from going to a website they would rather you not,
such as sites that combat malware. Some will even redirect you to their own search engine
when you attempt a search. NB: hijackers almost exclusively target Internet Explorer.

Removing Win32.StatPage:

you can run trial version of ExterminateIt, or remove Win32.StatPage manually.


To completely manually remove Win32.StatPage malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.StatPage.


Read also:
Active.Strip.Setup Adware Information

Bushtrommel Trojan

Click here to remove Bushtrommel malware
Bushtrommel description:
Bushtrommel Category:Trojan,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Detection Bushtrommel :

Bushtrommel Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\registry\settings

Bushtrommel Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run

Removing Bushtrommel:

you can run trial version of ExterminateIt, or remove Bushtrommel manually.


To completely manually remove Bushtrommel malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bushtrommel.


Read also:
Pigeon.DZT Trojan Cleaner
Turning.your.Mail.Bomber.into.ICQ.Pager.Bomber Trojan Information
Brontok.DN Worm Symptoms

Wednesday, December 24, 2008

Trojanspy.win32.Wexd Trojan

Click here to remove Trojanspy.win32.Wexd malware
Trojanspy.win32.Wexd description:
Trojanspy.win32.Wexd Category:Trojan,Spyware
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.

Removing Trojanspy.win32.Wexd:

you can run trial version of ExterminateIt, or remove Trojanspy.win32.Wexd manually.


To completely manually remove Trojanspy.win32.Wexd malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Trojanspy.win32.Wexd.


Read also:
Removing SillyDl.DAP Trojan
SillyDl.BZF Trojan Information

Stang RAT

Click here to remove Stang malware
Stang description:
Stang Category:RAT
Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Removing Stang:

you can run trial version of ExterminateIt, or remove Stang manually.


To completely manually remove Stang malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Stang.


Read also:
Remove Vxidl.ATO Trojan

VBS.Noob Trojan

Click here to remove VBS.Noob malware
VBS.Noob description:
VBS.Noob Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing VBS.Noob:

you can run trial version of ExterminateIt, or remove VBS.Noob manually.


To completely manually remove VBS.Noob malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with VBS.Noob.


Read also:
AngryChair Trojan Symptoms
Remove SillyDl.BZJ Trojan
Remove MMPutt Trojan
Tuloti Trojan Removal
Vxidl.AEF Trojan Removal instruction

Pigeon.EQF Trojan

Click here to remove Pigeon.EQF malware
Pigeon.EQF description:
Pigeon.EQF Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.EQF:

you can run trial version of ExterminateIt, or remove Pigeon.EQF manually.


To completely manually remove Pigeon.EQF malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EQF.


Read also:
Ehg.chrysler.hitbox Tracking Cookie Removal

Khizhnjak Trojan

Click here to remove Khizhnjak malware
Khizhnjak description:
Khizhnjak Category:Trojan,Backdoor,Downloader,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Trojans-downloaders downloads and installs new malware or adware on the computer.

DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Khizhnjak:

you can run trial version of ExterminateIt, or remove Khizhnjak manually.


To completely manually remove Khizhnjak malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Khizhnjak.


Read also:
Remove Bancos.HLE Trojan
Removing Pigeon.BAJ Trojan

Startpage.uz Hijacker

Click here to remove Startpage.uz malware
Startpage.uz description:
Startpage.uz Category:Hijacker
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.

Removing Startpage.uz:

you can run trial version of ExterminateIt, or remove Startpage.uz manually.


To completely manually remove Startpage.uz malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Startpage.uz.


Read also:
Bancos.HFM Trojan Information

PWS.Susanin Trojan

Click here to remove PWS.Susanin malware
PWS.Susanin description:
PWS.Susanin Category:Trojan,Backdoor,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing PWS.Susanin:

you can run trial version of ExterminateIt, or remove PWS.Susanin manually.


To completely manually remove PWS.Susanin malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PWS.Susanin.


Read also:
Dekni Trojan Cleaner
Remove Black.Angel Trojan
Remove Pointex.Server Backdoor
Shark Trojan Symptoms
SillyDl.CYR Trojan Removal instruction

Danish.Brenda Trojan

Click here to remove Danish.Brenda malware
Danish.Brenda description:
Danish.Brenda Category:Trojan,Backdoor,Downloader,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Danish.Brenda:

you can run trial version of ExterminateIt, or remove Danish.Brenda manually.


To completely manually remove Danish.Brenda malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Danish.Brenda.


Read also:
Irapture Backdoor Removal instruction

Pigeon.EXK Trojan

Click here to remove Pigeon.EXK malware
Pigeon.EXK description:
Pigeon.EXK Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.EXK:

you can run trial version of ExterminateIt, or remove Pigeon.EXK manually.


To completely manually remove Pigeon.EXK malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EXK.


Read also:
Remove Vxidl.AXW Trojan

Tuesday, December 23, 2008

JS.TrojanDownloader.Small Trojan

Click here to remove JS.TrojanDownloader.Small malware
JS.TrojanDownloader.Small description:
JS.TrojanDownloader.Small Category:Trojan,Downloader,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing JS.TrojanDownloader.Small:

you can run trial version of ExterminateIt, or remove JS.TrojanDownloader.Small manually.


To completely manually remove JS.TrojanDownloader.Small malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with JS.TrojanDownloader.Small.


Read also:
Removing Benuti.H!downloader Trojan
Remove Huplu Trojan
MinyO Trojan Removal instruction

Pigeon.EOG Trojan

Click here to remove Pigeon.EOG malware
Pigeon.EOG description:
Pigeon.EOG Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.EOG:

you can run trial version of ExterminateIt, or remove Pigeon.EOG manually.


To completely manually remove Pigeon.EOG malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EOG.


Read also:
Pigeon.AVSN Trojan Information
KLF Trojan Removal instruction
Remove Pigeon.AVOS Trojan
247RealMedia.com Tracking Cookie Symptoms

Win32.Force Backdoor

Click here to remove Win32.Force malware
Win32.Force description:
Win32.Force Category:Backdoor
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing Win32.Force:

you can run trial version of ExterminateIt, or remove Win32.Force manually.


To completely manually remove Win32.Force malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Force.


Read also:
Removing WordMacro.Hot Trojan
Removing Vxidl.AMV Trojan

Bancos.GBV Trojan

Click here to remove Bancos.GBV malware
Bancos.GBV description:
Bancos.GBV Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.GBV:

you can run trial version of ExterminateIt, or remove Bancos.GBV manually.


To completely manually remove Bancos.GBV malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GBV.


Read also:
Removing Backdoor.Excalibur Trojan
Remove SpyClock Spyware

MegaSearch Hijacker

Click here to remove MegaSearch malware
MegaSearch description:
MegaSearch Category:Hijacker
A desktop hijacker replaces the desktop wallpaper with advertising
for products and services on the desktop.

Detection MegaSearch :

MegaSearch Registry Keys:
HKEY_CURRENT_USER\software\megasear toolbar cfgid 1
HKEY_CURRENT_USER\software\megasear toolbar clientid 228
HKEY_CURRENT_USER\software\megasear toolbar lastleft 12
HKEY_CURRENT_USER\software\megasear toolbar setupinit 1

Removing MegaSearch:

you can run trial version of ExterminateIt, or remove MegaSearch manually.


To completely manually remove MegaSearch malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with MegaSearch.


Read also:
Removing Bancos.INS Trojan
Removing Pigeon.AGT Trojan

Pigeon.AWKN Trojan

Click here to remove Pigeon.AWKN malware
Pigeon.AWKN description:
Pigeon.AWKN Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.AWKN:

you can run trial version of ExterminateIt, or remove Pigeon.AWKN manually.


To completely manually remove Pigeon.AWKN malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AWKN.


Read also:
Win16.Nukem Trojan Cleaner
Removing Oneraw Trojan

Remote.Hack.Beta RAT

Click here to remove Remote.Hack.Beta malware
Remote.Hack.Beta description:
Remote.Hack.Beta Category:RAT
Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Removing Remote.Hack.Beta:

you can run trial version of ExterminateIt, or remove Remote.Hack.Beta manually.


To completely manually remove Remote.Hack.Beta malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Remote.Hack.Beta.


Read also:
Removing Spy.Striker Trojan
Vxidl.AFM Trojan Cleaner

Generic.Downloader.ab Trojan

Click here to remove Generic.Downloader.ab malware
Generic.Downloader.ab description:
Generic.Downloader.ab Category:Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Detection Generic.Downloader.ab :

Generic.Downloader.ab Files:
[%SYSTEM%]\cryptimg.dll
[%SYSTEM%]\drivers\hidproc.sys
[%SYSTEM%]\pob2res.exe
[%SYSTEM%]\cryptimg.dll
[%SYSTEM%]\drivers\hidproc.sys
[%SYSTEM%]\pob2res.exe

Generic.Downloader.ab Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptimg
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\hidproc
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\network\hidproc
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_hidproc
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\hidproc

Generic.Downloader.ab Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Generic.Downloader.ab:

you can run trial version of ExterminateIt, or remove Generic.Downloader.ab manually.


To completely manually remove Generic.Downloader.ab malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Generic.Downloader.ab.


Read also:
Remove BigBrother RAT
TrojanDownloader.Win32.Swizzor.bn Trojan Information
Bagle.gen Trojan Information
Remove TrafficMarketplace Tracking Cookie
wunderloop.net Tracking Cookie Cleaner

RemoteXS Backdoor

Click here to remove RemoteXS malware
RemoteXS description:
RemoteXS Category:Backdoor,RAT
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Removing RemoteXS:

you can run trial version of ExterminateIt, or remove RemoteXS manually.


To completely manually remove RemoteXS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RemoteXS.


Read also:
Remove IRC.BBot Backdoor
IRC.The.Definitive.Guide DoS Removal instruction
Solitaire.FTP Trojan Information
Removing EventLogClear RAT
Ungrateful.Java Hostile Code Information

Shak Trojan

Click here to remove Shak malware
Shak description:
Shak Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Shak:

you can run trial version of ExterminateIt, or remove Shak manually.


To completely manually remove Shak malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Shak.


Read also:
Freak.Freak88 Trojan Information
Remove Wuzhil Trojan
Removing Bancos.IJF Trojan
Bat.Tiny Trojan Removal
Yaptaf Trojan Symptoms

Win32.Reload Trojan

Click here to remove Win32.Reload malware
Win32.Reload description:
Win32.Reload Category:Trojan,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Removing Win32.Reload:

you can run trial version of ExterminateIt, or remove Win32.Reload manually.


To completely manually remove Win32.Reload malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Reload.


Read also:
Bancos.GLQ Trojan Removal
Bancos.HSK Trojan Cleaner
Bancos.FZU Trojan Removal instruction
Remove Spy.mIRC DoS
Remove Hatred.Fiend Trojan

Unknown.Toolbar6 BHO

Click here to remove Unknown.Toolbar6 malware
Unknown.Toolbar6 description:
Unknown.Toolbar6 Category:BHO,Toolbar
As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.
It replaces your start page, continuosly open a number of pop up windows and so on.

Detection Unknown.Toolbar6 :

Unknown.Toolbar6 Files:
[%PROGRAM_FILES%]\intern~2\4third.exe
[%PROGRAM_FILES%]\intern~2\hope curb.exe
[%PROGRAM_FILES%]\intern~2\long.exe
[%PROGRAM_FILES%]\intern~2\up meta.exe
[%PROGRAM_FILES%]\second~1\3655.exe
[%PROGRAM_FILES%]\second~1\axispoll.dll
[%PROGRAM_FILES%]\second~1\baittick.dll
[%PROGRAM_FILES%]\intern~2\4third.exe
[%PROGRAM_FILES%]\intern~2\hope curb.exe
[%PROGRAM_FILES%]\intern~2\long.exe
[%PROGRAM_FILES%]\intern~2\up meta.exe
[%PROGRAM_FILES%]\second~1\3655.exe
[%PROGRAM_FILES%]\second~1\axispoll.dll
[%PROGRAM_FILES%]\second~1\baittick.dll

Unknown.Toolbar6 Folders:
[%PROGRAM_FILES%]\playbind
[%PROGRAM_FILES%]\sendpe~1

Unknown.Toolbar6 Registry Keys:
HKEY_CLASSES_ROOT\clsid\{0820a243-cb96-9380-3a55-c273e5ade7b7}
HKEY_CLASSES_ROOT\clsid\{2ce58e7c-c2a4-ca87-787b-00b6f09f2cab}
HKEY_CLASSES_ROOT\clsid\{823b4790-b3f5-ee67-1d37-2807033272bc}
HKEY_CLASSES_ROOT\clsid\{9f056c01-9ad4-c0c5-8c63-da73d8888f29}
HKEY_LOCAL_MACHINE\software\classes\clsid\{0820a243-cb96-9380-3a55-c273e5ade7b7}
HKEY_LOCAL_MACHINE\software\classes\clsid\{2ce58e7c-c2a4-ca87-787b-00b6f09f2cab}
HKEY_LOCAL_MACHINE\software\classes\clsid\{823b4790-b3f5-ee67-1d37-2807033272bc}
HKEY_LOCAL_MACHINE\software\classes\clsid\{9f056c01-9ad4-c0c5-8c63-da73d8888f29}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9f056c01-9ad4-c0c5-8c63-da73d8888f29}

Unknown.Toolbar6 Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Unknown.Toolbar6:

you can run trial version of ExterminateIt, or remove Unknown.Toolbar6 manually.


To completely manually remove Unknown.Toolbar6 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Unknown.Toolbar6.


Read also:
Remove Bancos.FOU Trojan
Glocker Adware Symptoms
Scorpio Trojan Cleaner
Chico Trojan Removal instruction
BackDoor.AVQ Trojan Removal

web.stat.com Tracking Cookie

Click here to remove web.stat.com malware
web.stat.com description:
web.stat.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing web.stat.com:

you can run trial version of ExterminateIt, or remove web.stat.com manually.


To completely manually remove web.stat.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with web.stat.com.


Read also:
Remove Agobot.be Backdoor

Bancos.GUR Trojan

Click here to remove Bancos.GUR malware
Bancos.GUR description:
Bancos.GUR Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.GUR:

you can run trial version of ExterminateIt, or remove Bancos.GUR manually.


To completely manually remove Bancos.GUR malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GUR.


Read also:
Remove Pounder DoS
Bat.zz9.blue Trojan Symptoms
Joiner.aj Trojan Information
Remove Absent.Directory.Browser.Argument DoS

Setrix Trojan

Click here to remove Setrix malware
Setrix description:
Setrix Category:Trojan,Adware,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing Setrix:

you can run trial version of ExterminateIt, or remove Setrix manually.


To completely manually remove Setrix malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Setrix.


Read also:
NWO Trojan Information
AOLPS.CC1 Trojan Information
Remove trafficmp.com Tracking Cookie

Monday, December 22, 2008

Antilame Trojan

Click here to remove Antilame malware
Antilame description:
Antilame Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Antilame:

you can run trial version of ExterminateIt, or remove Antilame manually.


To completely manually remove Antilame malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Antilame.


Read also:
Removing Squeaker Trojan
ICQ.Protocol.Correction Trojan Symptoms
JScript.GodMessage Worm Information

NetOp.Remote.Control RAT

Click here to remove NetOp.Remote.Control malware
NetOp.Remote.Control description:
NetOp.Remote.Control Category:RAT
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Removing NetOp.Remote.Control:

you can run trial version of ExterminateIt, or remove NetOp.Remote.Control manually.


To completely manually remove NetOp.Remote.Control malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with NetOp.Remote.Control.


Read also:
rpc3 Trojan Cleaner
CyberSensor Trojan Removal instruction
SillyDl.CJS Trojan Cleaner
Juntador Trojan Removal

Hey.You Trojan

Click here to remove Hey.You malware
Hey.You description:
Hey.You Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Hey.You:

you can run trial version of ExterminateIt, or remove Hey.You manually.


To completely manually remove Hey.You malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Hey.You.


Read also:
Ads.cdfreaks Tracking Cookie Removal instruction

Command.Center Trojan

Click here to remove Command.Center malware
Command.Center description:
Command.Center Category:Trojan,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Command.Center:

you can run trial version of ExterminateIt, or remove Command.Center manually.


To completely manually remove Command.Center malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Command.Center.


Read also:
Small.bhf Downloader Cleaner
SillyDl.CMS Trojan Symptoms

Ive Trojan

Click here to remove Ive malware
Ive description:
Ive Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Ive:

you can run trial version of ExterminateIt, or remove Ive manually.


To completely manually remove Ive malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ive.


Read also:
Ads.RampidAds Tracking Cookie Removal instruction
Pigeon.ASZ Trojan Removal instruction

mcgaming.com Tracking Cookie

Click here to remove mcgaming.com malware
mcgaming.com description:
mcgaming.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing mcgaming.com:

you can run trial version of ExterminateIt, or remove mcgaming.com manually.


To completely manually remove mcgaming.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with mcgaming.com.


Read also:
Pigeon.ESD Trojan Information

Dister Trojan

Click here to remove Dister malware
Dister description:
Dister Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Dister:

you can run trial version of ExterminateIt, or remove Dister manually.


To completely manually remove Dister malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Dister.


Read also:
Sincom.ao Spyware Cleaner
StreamZap.com Tracking Cookie Symptoms
Agent.ac Adware Information

HLP.generic Trojan

Click here to remove HLP.generic malware
HLP.generic description:
HLP.generic Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing HLP.generic:

you can run trial version of ExterminateIt, or remove HLP.generic manually.


To completely manually remove HLP.generic malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with HLP.generic.


Read also:
Augudor.Server Trojan Cleaner

TrojanDownloader.Win32.Swizzor.bn Trojan

Click here to remove TrojanDownloader.Win32.Swizzor.bn malware
TrojanDownloader.Win32.Swizzor.bn description:
TrojanDownloader.Win32.Swizzor.bn Category:Trojan,Downloader
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Removing TrojanDownloader.Win32.Swizzor.bn:

you can run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Swizzor.bn manually.


To completely manually remove TrojanDownloader.Win32.Swizzor.bn malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Swizzor.bn.


Read also:
Remove Appkiller.src Trojan
Satan.Cam.View RAT Information
Spy.Agent.ak Trojan Removal instruction
Remove Win32.VB.ayt Trojan

Obliterate Trojan

Click here to remove Obliterate malware
Obliterate description:
Obliterate Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Obliterate:

you can run trial version of ExterminateIt, or remove Obliterate manually.


To completely manually remove Obliterate malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Obliterate.


Read also:
Remove Pigeon.BAY Trojan
Remove SillyDl.DDN Trojan
SillyDl.CCP Downloader Symptoms

Nuke.DoS Trojan

Click here to remove Nuke.DoS malware
Nuke.DoS description:
Nuke.DoS Category:Trojan,Hacker Tool,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Nuke.DoS:

you can run trial version of ExterminateIt, or remove Nuke.DoS manually.


To completely manually remove Nuke.DoS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Nuke.DoS.


Read also:
Frethog.AFH Trojan Symptoms
Pigeon.EQW Trojan Removal
Pigeon.BAY Trojan Removal instruction

LocalSmartBar Tracking Cookie

Click here to remove LocalSmartBar malware
LocalSmartBar description:
LocalSmartBar Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing LocalSmartBar:

you can run trial version of ExterminateIt, or remove LocalSmartBar manually.


To completely manually remove LocalSmartBar malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with LocalSmartBar.


Read also:
Win32.Delf.aeo Trojan Information
Dyfuca.cr Downloader Removal instruction
SpiceGirls Trojan Removal
Remove NProtect Adware
TrojanDropper.Win32.Small.be Trojan Removal

RegistryBrowser RAT

Click here to remove RegistryBrowser malware
RegistryBrowser description:
RegistryBrowser Category:RAT
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Removing RegistryBrowser:

you can run trial version of ExterminateIt, or remove RegistryBrowser manually.


To completely manually remove RegistryBrowser malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RegistryBrowser.


Read also:
Deckhog Trojan Removal instruction
KeySpy.dr Trojan Cleaner
DelArmgo Trojan Cleaner
Win32.Sincom.ax Trojan Cleaner

Sunday, December 21, 2008

Code.Blue DoS

Click here to remove Code.Blue malware
Code.Blue description:
Code.Blue Category:DoS
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Code.Blue:

you can run trial version of ExterminateIt, or remove Code.Blue manually.


To completely manually remove Code.Blue malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Code.Blue.


Read also:
HDBreaker Trojan Symptoms
Plaupwa Trojan Removal instruction
Danton.Server Trojan Cleaner
SillyDl.CFG Trojan Removal instruction
Phishbank.AQM Trojan Cleaner

Radlight.PRO Trojan

Click here to remove Radlight.PRO malware
Radlight.PRO description:
Radlight.PRO Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Radlight.PRO :

Radlight.PRO Files:
[%PROGRAM_FILES%]\RadLight\Subtitle Studio\Modules\Subtitle1.dll
[%PROGRAM_FILES%]\RadLight\Subtitle Studio\Modules\Subtitle2.dll
[%WINDOWS%]\rluninstall.exe
[%DESKTOP%]\radlight 3 pro.lnk
[%DESKTOP%]\radlight.lnk
[%DESKTOP%]\radlight3se.exe
[%PROFILE%]\my documents\my deliveries\cnet\radlight35se.exe
[%PROFILE_TEMP%]\saveform.exe
[%WINDOWS%]\temp\radlight_336.exe
[%PROGRAM_FILES%]\RadLight\Subtitle Studio\Modules\Subtitle1.dll
[%PROGRAM_FILES%]\RadLight\Subtitle Studio\Modules\Subtitle2.dll
[%WINDOWS%]\rluninstall.exe
[%DESKTOP%]\radlight 3 pro.lnk
[%DESKTOP%]\radlight.lnk
[%DESKTOP%]\radlight3se.exe
[%PROFILE%]\my documents\my deliveries\cnet\radlight35se.exe
[%PROFILE_TEMP%]\saveform.exe
[%WINDOWS%]\temp\radlight_336.exe

Radlight.PRO Folders:
[%PROGRAMS%]\radlight llc
[%PROGRAM_FILES%]\radlight
[%PROGRAM_FILES%]\radlight llc

Radlight.PRO Registry Keys:
HKEY_CLASSES_ROOT\radlightfile
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\menuorder\start menu2\programs\radlight
HKEY_LOCAL_MACHINE\software\classes\radlightfile\defaulticon
HKEY_LOCAL_MACHINE\software\classes\radlightfile\shell\play
HKEY_LOCAL_MACHINE\software\classes\rpkfile\defaulticon
HKEY_LOCAL_MACHINE\software\classes\rpkfile\shell\install
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\radlight_is1
HKEY_LOCAL_MACHINE\software\radlight team
HKEY_CURRENT_USER\software\radlight 3 pro
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\radlight
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\radlight 3 pro
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\radlight_is1

Radlight.PRO Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\radlight 3.03 pro
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\radlight 3.03 pro

Removing Radlight.PRO:

you can run trial version of ExterminateIt, or remove Radlight.PRO manually.


To completely manually remove Radlight.PRO malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Radlight.PRO.


Read also:
PSW.Atrar Trojan Symptoms
KeyLog.JanNet Trojan Information

Pigeon.AVAS Trojan

Click here to remove Pigeon.AVAS malware
Pigeon.AVAS description:
Pigeon.AVAS Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AVAS:

you can run trial version of ExterminateIt, or remove Pigeon.AVAS manually.


To completely manually remove Pigeon.AVAS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVAS.


Read also:
Removing Bancos.IGY Trojan
Vxidl.BDF Trojan Cleaner

Nbshell Trojan

Click here to remove Nbshell malware
Nbshell description:
Nbshell Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Nbshell:

you can run trial version of ExterminateIt, or remove Nbshell manually.


To completely manually remove Nbshell malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Nbshell.


Read also:
Removing livejasmin.com Tracking Cookie
Orgasmatron Trojan Symptoms
Agobot.be Backdoor Information