Saturday, January 31, 2009

Win32.Messenger Malware

Click here to remove Win32.Messenger malware
Win32.Messenger description:
Win32.Messenger Category:Malware
Malware includes a range of programs that do not threaten computers directly,
but are used to create viruses or Trojans, or used to carry out illegal activities
such as DoS attacks and breaking into other computers.

Detection Win32.Messenger :

Win32.Messenger Folders:
[%PROGRAM_FILES%]\Win32coMessenger

Removing Win32.Messenger:

you can run trial version of ExterminateIt, or remove Win32.Messenger manually.


To completely manually remove Win32.Messenger malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Messenger.


Read also:
ZipFormat Trojan Removal
Vxidl.BBK Trojan Symptoms
Xsh0k DoS Removal

Win32.Naldem Trojan

Click here to remove Win32.Naldem malware
Win32.Naldem description:
Win32.Naldem Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Win32.Naldem:

you can run trial version of ExterminateIt, or remove Win32.Naldem manually.


To completely manually remove Win32.Naldem malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Naldem.


Read also:
Remove Pigeon.AVAD Trojan
SubSeven.deutsch Backdoor Symptoms
Remove Bootkill Trojan
Removing WinxDefender Ransomware
NGVCK.dr.gen Trojan Information

Arsd Trojan

Click here to remove Arsd malware
Arsd description:
Arsd Category:Trojan,Backdoor,RAT
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Detection Arsd :

Arsd Files:
[%WINDOWS%]\arsd.exe
[%WINDOWS%]\arsd.exe

Removing Arsd:

you can run trial version of ExterminateIt, or remove Arsd manually.


To completely manually remove Arsd malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Arsd.


Read also:
SillyDl.DHL Trojan Removal
Myss Trojan Removal instruction
Remove TwistedHumor Adware
Bancos.GYG Trojan Symptoms

Pigeon.EFC Trojan

Click here to remove Pigeon.EFC malware
Pigeon.EFC description:
Pigeon.EFC Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.EFC:

you can run trial version of ExterminateIt, or remove Pigeon.EFC manually.


To completely manually remove Pigeon.EFC malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EFC.


Read also:
Agent.ECM Trojan Symptoms

Bancos.GTL Trojan

Click here to remove Bancos.GTL malware
Bancos.GTL description:
Bancos.GTL Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.GTL:

you can run trial version of ExterminateIt, or remove Bancos.GTL manually.


To completely manually remove Bancos.GTL malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GTL.


Read also:
Belnow Trojan Removal instruction
Pigeon.AUJ Trojan Removal
Bancos.AEO Trojan Symptoms
Bancos.GYP Trojan Cleaner

rute Downloader

Click here to remove rute malware
rute description:
rute Category:Downloader
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Removing rute:

you can run trial version of ExterminateIt, or remove rute manually.


To completely manually remove rute malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with rute.


Read also:
Telefoon Trojan Symptoms
Remove TrojanClicker.Win32.VB.an Adware
SubSeven.icqfix RAT Removal instruction
Pigeon.AVDR Trojan Symptoms
Mencot Trojan Cleaner

Ultimate.Defender Trojan

Click here to remove Ultimate.Defender malware
Ultimate.Defender description:
Ultimate.Defender Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Ultimate.Defender :

Ultimate.Defender Files:
[%DESKTOP%]\ultimate defender.lnk
[%DESKTOP%]\ultimate defender.pkg
[%DESKTOP%]\ultimate defender.lnk
[%DESKTOP%]\ultimate defender.pkg

Ultimate.Defender Folders:
[%APPDATA%]\ultimate defender
[%COMMON_STARTMENU%]\Ultimate Defender
[%PROGRAM_FILES%]\ultimate defender
[%COMMON_PROGRAMS%]\Ultimate Defender
[%PROFILE%]\start menu\ultimate defender

Ultimate.Defender Registry Keys:
HKEY_CURRENT_USER\software\ultimate defender
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ultimate defender
HKEY_LOCAL_MACHINE\software\ultimate defender

Ultimate.Defender Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Ultimate.Defender:

you can run trial version of ExterminateIt, or remove Ultimate.Defender manually.


To completely manually remove Ultimate.Defender malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ultimate.Defender.


Read also:
Remove EwK Trojan
Hupion Trojan Symptoms

Dismowbot Trojan

Click here to remove Dismowbot malware
Dismowbot description:
Dismowbot Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Dismowbot:

you can run trial version of ExterminateIt, or remove Dismowbot manually.


To completely manually remove Dismowbot malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Dismowbot.


Read also:
Vxidl.AMO Trojan Removal instruction
007Guard Adware Information

JS.WindowBomb Trojan

Click here to remove JS.WindowBomb malware
JS.WindowBomb description:
JS.WindowBomb Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing JS.WindowBomb:

you can run trial version of ExterminateIt, or remove JS.WindowBomb manually.


To completely manually remove JS.WindowBomb malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with JS.WindowBomb.


Read also:
Remove Super.Dial Adware

Bancos.GHG Trojan

Click here to remove Bancos.GHG malware
Bancos.GHG description:
Bancos.GHG Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.GHG:

you can run trial version of ExterminateIt, or remove Bancos.GHG manually.


To completely manually remove Bancos.GHG malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GHG.


Read also:
SillyDl.CQI Trojan Removal

Win32.Wuloit Trojan

Click here to remove Win32.Wuloit malware
Win32.Wuloit description:
Win32.Wuloit Category:Trojan,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing Win32.Wuloit:

you can run trial version of ExterminateIt, or remove Win32.Wuloit manually.


To completely manually remove Win32.Wuloit malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Wuloit.


Read also:
Win32.Watch!HookDLL!Trojan Trojan Information
ASP Trojan Information

Pigeon.ETI Trojan

Click here to remove Pigeon.ETI malware
Pigeon.ETI description:
Pigeon.ETI Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.ETI:

you can run trial version of ExterminateIt, or remove Pigeon.ETI manually.


To completely manually remove Pigeon.ETI malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.ETI.


Read also:
Musliv Trojan Information

Friday, January 30, 2009

Bancos.FYH Trojan

Click here to remove Bancos.FYH malware
Bancos.FYH description:
Bancos.FYH Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.FYH:

you can run trial version of ExterminateIt, or remove Bancos.FYH manually.


To completely manually remove Bancos.FYH malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.FYH.


Read also:
Win32.Mimail Trojan Removal instruction
Drive.Hell Trojan Information

Late.Night Trojan

Click here to remove Late.Night malware
Late.Night description:
Late.Night Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Late.Night:

you can run trial version of ExterminateIt, or remove Late.Night manually.


To completely manually remove Late.Night malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Late.Night.


Read also:
Removing Pigeon.AJW Trojan
Phishbank.ADW Trojan Removal instruction
BAT.Eman Trojan Cleaner
IAD.LivePerson Tracking Cookie Cleaner

Vxidl.BBK Trojan

Click here to remove Vxidl.BBK malware
Vxidl.BBK description:
Vxidl.BBK Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.BBK:

you can run trial version of ExterminateIt, or remove Vxidl.BBK manually.


To completely manually remove Vxidl.BBK malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.BBK.


Read also:
Remove Elite.Spyz Spyware

Bancos.HNH Trojan

Click here to remove Bancos.HNH malware
Bancos.HNH description:
Bancos.HNH Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.HNH:

you can run trial version of ExterminateIt, or remove Bancos.HNH manually.


To completely manually remove Bancos.HNH malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.HNH.


Read also:
Remove TrojanNotifier.Win32.Delf Trojan
Dementia Trojan Information
Roach Trojan Removal instruction

cityofcairns.com Tracking Cookie

Click here to remove cityofcairns.com malware
cityofcairns.com description:
cityofcairns.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing cityofcairns.com:

you can run trial version of ExterminateIt, or remove cityofcairns.com manually.


To completely manually remove cityofcairns.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with cityofcairns.com.


Read also:
Agobot.bu Trojan Removal
Remove Pigeon.ESO Trojan
WXYC Trojan Removal instruction
Removing Sandradoor.Keyhook Trojan

System.Pro Spyware

Click here to remove System.Pro malware
System.Pro description:
System.Pro Category:Spyware
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.

Detection System.Pro :

System.Pro Files:
[%WINDOWS%]\runprf32.exe
[%WINDOWS%]\spinsavc.exe
[%DESKTOP%]\systemsurveillancepro.htm
[%DESKTOP%]\SystemSurvPro.htm
[%PROFILE%]\Local Settings\Desktop\SystemSurveillancePro.htm
[%PROGRAMS%]\System Surveillance Pro 4.8\Help Manual.lnk
[%PROGRAMS%]\System Surveillance Pro 4.8\SSPro Data Viewer.lnk
[%PROGRAMS%]\System Surveillance Pro 4.8\Uninstall SSPro.lnk
[%WINDOWS%]\ordpix.dll
[%WINDOWS%]\sspro.cnt
[%WINDOWS%]\sspro.hlp
[%WINDOWS%]\sysural.dll
[%WINDOWS%]\sysurbl.dll
[%WINDOWS%]\runprf32.exe
[%WINDOWS%]\spinsavc.exe
[%DESKTOP%]\systemsurveillancepro.htm
[%DESKTOP%]\SystemSurvPro.htm
[%PROFILE%]\Local Settings\Desktop\SystemSurveillancePro.htm
[%PROGRAMS%]\System Surveillance Pro 4.8\Help Manual.lnk
[%PROGRAMS%]\System Surveillance Pro 4.8\SSPro Data Viewer.lnk
[%PROGRAMS%]\System Surveillance Pro 4.8\Uninstall SSPro.lnk
[%WINDOWS%]\ordpix.dll
[%WINDOWS%]\sspro.cnt
[%WINDOWS%]\sspro.hlp
[%WINDOWS%]\sysural.dll
[%WINDOWS%]\sysurbl.dll

System.Pro Folders:
[%WINDOWS%]\fontinfo
[%PROGRAMS%]\system surveillance pro
[%WINDOWS%]\fontview

System.Pro Registry Keys:
HKEY_CLASSES_ROOT\.zzr
HKEY_CLASSES_ROOT\clsid\{91b066b2-be0d-42bf-bedd-f9dfdbb29236}\implemented categories
HKEY_CLASSES_ROOT\sspro
HKEY_CLASSES_ROOT\sspro.document
HKEY_CLASSES_ROOT\survservices.datablockmanipulation
HKEY_CLASSES_ROOT\survservices.datainterface
HKEY_CLASSES_ROOT\survservices.declarations
HKEY_CLASSES_ROOT\survservices.general
HKEY_CLASSES_ROOT\clsid\{457107e0-4551-11d5-be6f-ae127dee6059}
HKEY_CLASSES_ROOT\clsid\{47643398-a2f7-422b-9fcc-e5540b1eeb05}
HKEY_CLASSES_ROOT\clsid\{95e6c67a-f1e0-48ef-b0cd-3d72b23fb558}
HKEY_CLASSES_ROOT\clsid\{9df88e2d-bc3e-4524-b5d0-1c49557427a4}
HKEY_CLASSES_ROOT\clsid\{b540c664-b279-4702-83b6-813c9552148f}
HKEY_CLASSES_ROOT\interface\{2074d3f5-5d94-4468-b0d4-6388666aa3e3}
HKEY_CLASSES_ROOT\interface\{453706df-465b-11d5-be6f-c0e46d415558}
HKEY_CLASSES_ROOT\interface\{453706e7-465b-11d5-be6f-c0e46d415558}
HKEY_CLASSES_ROOT\interface\{dac453d4-86ad-4dbe-8d44-2b88c376bbe3}
HKEY_CLASSES_ROOT\interface\{dda8b302-e846-4e1f-818d-0b701f969f9b}
HKEY_CLASSES_ROOT\interface\{f127d096-0939-418e-b579-ce7e40eb6a8a}
HKEY_CLASSES_ROOT\picscroll.cpvpicscroll
HKEY_CLASSES_ROOT\typelib\{3b8554df-2818-4d24-bf82-c7ee3f9af3b5}
HKEY_CLASSES_ROOT\typelib\{457107de-4551-11d5-be6f-ae127dee6059}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\system surveillance pro~
HKEY_CURRENT_USER\software\vb and vba program settings\sspro

System.Pro Registry Values:
HKEY_CLASSES_ROOT\clsid\{d46bd5cb-2360-4f5f-8793-5f4ae775ec44}\inprocserver32
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing System.Pro:

you can run trial version of ExterminateIt, or remove System.Pro manually.


To completely manually remove System.Pro malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with System.Pro.


Read also:
Vxidl.AHX Trojan Removal instruction
Remove Bancos.GMX Trojan
Ranger Trojan Removal

ebgames.com Tracking Cookie

Click here to remove ebgames.com malware
ebgames.com description:
ebgames.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing ebgames.com:

you can run trial version of ExterminateIt, or remove ebgames.com manually.


To completely manually remove ebgames.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ebgames.com.


Read also:
Vxidl.BAM Trojan Cleaner
Bancos.GEQ Trojan Information
Remove Pigeon.AVHR Trojan
Remove Win32.Dotf.13!Trojan Trojan

WinxDefender Ransomware

Click here to remove WinxDefender malware
WinxDefender description:
WinxDefender Category:Ransomware
The term ransomware is commonly used to describe such software,
although the field known as cryptovirology predates the term "ransomware".

This type of ransom attack can be accomplished by (for example) attaching
a specially crafted file/program to an e-mail message and sending this to the victim.

Detection WinxDefender :

WinxDefender Files:
[%DESKTOP%]\WinXDefender.lnk
[%DESKTOP%]\WinXDefender.lnk

WinxDefender Folders:
[%APPDATA%]\WinXDefender
[%COMMON_PROGRAMS%]\WinXDefender
[%PROGRAM_FILES%]\WinXDefender

WinxDefender Registry Keys:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\winxdefender

WinxDefender Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run

Removing WinxDefender:

you can run trial version of ExterminateIt, or remove WinxDefender manually.


To completely manually remove WinxDefender malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WinxDefender.


Read also:
TrojanDropper.Win32.Small.ff Trojan Removal
Vxidl.AFL Trojan Cleaner
CondPk Trojan Removal instruction
Kwak Trojan Removal instruction
Vxidl.APO Trojan Information

Thursday, January 29, 2009

Dagger Backdoor

Click here to remove Dagger malware
Dagger description:
Dagger Category:Backdoor,RAT
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Detection Dagger :

Dagger Files:
[%WINDOWS%]\system\manager.exe
[%WINDOWS%]\system\manager.exe

Dagger Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Dagger:

you can run trial version of ExterminateIt, or remove Dagger manually.


To completely manually remove Dagger malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Dagger.


Read also:
Remove Beesul Trojan
CPU.Hog DoS Removal
SillyDl.CTY Trojan Cleaner

doubleclick.net Tracking Cookie

Click here to remove doubleclick.net malware
doubleclick.net description:
doubleclick.net Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing doubleclick.net:

you can run trial version of ExterminateIt, or remove doubleclick.net manually.


To completely manually remove doubleclick.net malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with doubleclick.net.


Read also:
Pigeon.ABO Trojan Removal instruction
Goesna Trojan Symptoms
Bancos.MNN Trojan Information

TrojanDownloader.Win32.Glukonat Downloader

Click here to remove TrojanDownloader.Win32.Glukonat malware
TrojanDownloader.Win32.Glukonat description:
TrojanDownloader.Win32.Glukonat Category:Downloader
Trojans-downloaders downloads and installs new malware or adware on the computer.

Removing TrojanDownloader.Win32.Glukonat:

you can run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Glukonat manually.


To completely manually remove TrojanDownloader.Win32.Glukonat malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Glukonat.


Read also:
Remove VB.pv Backdoor

Remu Trojan

Click here to remove Remu malware
Remu description:
Remu Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Remu:

you can run trial version of ExterminateIt, or remove Remu manually.


To completely manually remove Remu malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Remu.


Read also:
CashNar Trojan Cleaner
Remove Win32.VB.fc Trojan
Remove Avoid.joke Trojan
trafic.ro Tracking Cookie Cleaner
Urlsnuff DoS Symptoms

Win32.Homepage Trojan

Click here to remove Win32.Homepage malware
Win32.Homepage description:
Win32.Homepage Category:Trojan,Hijacker
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Hijackers take control of various parts of your web browser, including your home page,
search pages, and search bar. They may also redirect you to certain sites should you
mistype an address or prevent you from going to a website they would rather you not,
such as sites that combat malware. Some will even redirect you to their own search engine
when you attempt a search.

Removing Win32.Homepage:

you can run trial version of ExterminateIt, or remove Win32.Homepage manually.


To completely manually remove Win32.Homepage malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Homepage.


Read also:
Pigeon.AKH Trojan Removal instruction
Removing Ieasis Ransomware
Remove Sojfuse Trojan
OMPN.mini RAT Removal

Pigeon.DSH Trojan

Click here to remove Pigeon.DSH malware
Pigeon.DSH description:
Pigeon.DSH Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Pigeon.DSH :

Pigeon.DSH Files:
[%SYSTEM%]\csrssar
[%SYSTEM%]\csrssar

Pigeon.DSH Registry Keys:
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_remate_run_rpc_(asp)
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\remate run rpc (asp)

Removing Pigeon.DSH:

you can run trial version of ExterminateIt, or remove Pigeon.DSH manually.


To completely manually remove Pigeon.DSH malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.DSH.


Read also:
Bancos.GSA Trojan Cleaner
Hellz.Little.Spy Spyware Removal instruction
Remove Spirit.2001a.Beta.Edition RAT
Remove Becower Trojan

Vxidl.AMO Trojan

Click here to remove Vxidl.AMO malware
Vxidl.AMO description:
Vxidl.AMO Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.AMO:

you can run trial version of ExterminateIt, or remove Vxidl.AMO manually.


To completely manually remove Vxidl.AMO malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AMO.


Read also:
Pigeon.EIU Trojan Removal instruction
Removing Blackhack.mp Trojan
Pigeon.AVHG Trojan Information

Hail Trojan

Click here to remove Hail malware
Hail description:
Hail Category:Trojan,Backdoor,Downloader,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Hail:

you can run trial version of ExterminateIt, or remove Hail manually.


To completely manually remove Hail malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Hail.


Read also:
Sex.Niche.Guide Toolbar Cleaner
Removing Net.Devil Trojan

Flyswat Adware

Click here to remove Flyswat malware
Flyswat description:
Flyswat Category:Adware,BHO
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
BHO (Browser Helper Object) Trojan.
The BHO waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
The method of network transport used by the attacker makes this Trojan unique.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.
Instead, this Trojan encodes the data with a simple XOR algorithm before placing it into
the data section of an ICMP ping packet." explained the company.

Detection Flyswat :

Flyswat Files:
[%PROGRAM_FILES%]\netcaptor\flylib.dll
[%SYSTEM%]\flylib.dll
[%WINDOWS%]\system\flylib.dll
[%PROGRAM_FILES%]\netcaptor\flylib.dll
[%SYSTEM%]\flylib.dll
[%WINDOWS%]\system\flylib.dll

Flyswat Registry Keys:
HKEY_CLASSES_ROOT\clsid\{58ed1294-990e-11d3-af63-00e01898ddda}
HKEY_CLASSES_ROOT\clsid\{82b98006-7a56-11d2-a26f-00c04f962769}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{82b98006-7a56-11d2-a26f-00c04f962769}
HKEY_LOCAL_MACHINE\software\classes\clsid\{82b98006-7a56-11d2-a26f-00c04f962769}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{82b98006-7a56-11d2-a26f-00c04f962769}

Removing Flyswat:

you can run trial version of ExterminateIt, or remove Flyswat manually.


To completely manually remove Flyswat malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Flyswat.


Read also:
Ehg.mh.hitbox Tracking Cookie Removal instruction
PrivacyProtector Ransomware Removal
Conistall Trojan Cleaner
WWW Trojan Information

RPack Trojan

Click here to remove RPack malware
RPack description:
RPack Category:Trojan,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing RPack:

you can run trial version of ExterminateIt, or remove RPack manually.


To completely manually remove RPack malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RPack.


Read also:
Removing StObj32 Trojan
Remove Bancos.GTF Trojan
eBates.com Tracking Cookie Symptoms
Remove Backdoor.Y3KRat.Server.family Trojan
ZFriends.Takeover RAT Information

Yafo Trojan

Click here to remove Yafo malware
Yafo description:
Yafo Category:Trojan,Backdoor,Downloader,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Yafo:

you can run trial version of ExterminateIt, or remove Yafo manually.


To completely manually remove Yafo malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Yafo.


Read also:
Removing Delf.mr Backdoor

Wyrviouss.Invisible Trojan

Click here to remove Wyrviouss.Invisible malware
Wyrviouss.Invisible description:
Wyrviouss.Invisible Category:Trojan,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing Wyrviouss.Invisible:

you can run trial version of ExterminateIt, or remove Wyrviouss.Invisible manually.


To completely manually remove Wyrviouss.Invisible malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Wyrviouss.Invisible.


Read also:
BAT.Solition Trojan Removal instruction
Bancos.GIM Trojan Cleaner
Family.Key.Logger Spyware Removal
Rip Hacker Tool Information
VB.aq Backdoor Removal

Tfd.cFlooder DoS

Click here to remove Tfd.cFlooder malware
Tfd.cFlooder description:
Tfd.cFlooder Category:DoS
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Tfd.cFlooder:

you can run trial version of ExterminateIt, or remove Tfd.cFlooder manually.


To completely manually remove Tfd.cFlooder malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Tfd.cFlooder.


Read also:
DRCS RAT Information

Netscreen RAT

Click here to remove Netscreen malware
Netscreen description:
Netscreen Category:RAT
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Detection Netscreen :

Netscreen Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run

Removing Netscreen:

you can run trial version of ExterminateIt, or remove Netscreen manually.


To completely manually remove Netscreen malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Netscreen.


Read also:
Bancos.GSA Trojan Removal
Omnox Downloader Removal instruction
Cotmonger Trojan Symptoms
Remove easy.ad.info Tracking Cookie

Wednesday, January 28, 2009

Snivelex Trojan

Click here to remove Snivelex malware
Snivelex description:
Snivelex Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Snivelex:

you can run trial version of ExterminateIt, or remove Snivelex manually.


To completely manually remove Snivelex malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Snivelex.


Read also:
Win32.SubSearch Trojan Symptoms
Remove NPLAGUE.VOM Trojan
Vxidl.APS Trojan Removal

Compain Trojan

Click here to remove Compain malware
Compain description:
Compain Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Compain:

you can run trial version of ExterminateIt, or remove Compain manually.


To completely manually remove Compain malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Compain.


Read also:
Downloader.AWX Downloader Symptoms
Removing ruralpress.com Tracking Cookie
Remove Win32.Flooder.MSN.Bigfly Trojan

Netministrator Spyware

Click here to remove Netministrator malware
Netministrator description:
Netministrator Category:Spyware,Backdoor,RAT
Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Removing Netministrator:

you can run trial version of ExterminateIt, or remove Netministrator manually.


To completely manually remove Netministrator malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Netministrator.


Read also:
Pigeon.AEC Trojan Removal instruction
Removing ZFriends.Takeover RAT
Remove CSKey Trojan
Propo Trojan Cleaner

BL Trojan

Click here to remove BL malware
BL description:
BL Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Detection BL :

BL Files:
[%STARTUP%]\imfe.exe
[%SYSTEM%]\igfxsvc.exe
[%SYSTEM%]\spoolw.exe
[%WINDOWS%]\1001319843.exe
[%WINDOWS%]\1005384546.exe
[%WINDOWS%]\1009449593.exe
[%WINDOWS%]\1013502546.exe
[%WINDOWS%]\1017514140.exe
[%WINDOWS%]\1021521828.exe
[%WINDOWS%]\1025528312.exe
[%WINDOWS%]\1029540156.exe
[%WINDOWS%]\1033547906.exe
[%WINDOWS%]\1037666906.exe
[%WINDOWS%]\1041692718.exe
[%WINDOWS%]\1045698609.exe
[%WINDOWS%]\1049704031.exe
[%WINDOWS%]\1053710187.exe
[%WINDOWS%]\1057760046.exe
[%WINDOWS%]\1061794218.exe
[%WINDOWS%]\1065804265.exe
[%WINDOWS%]\1069809906.exe
[%WINDOWS%]\823008343.exe
[%WINDOWS%]\827109921.exe
[%WINDOWS%]\831197953.exe
[%WINDOWS%]\835303781.exe
[%WINDOWS%]\839390562.exe
[%WINDOWS%]\843490531.exe
[%WINDOWS%]\847554765.exe
[%WINDOWS%]\851608406.exe
[%WINDOWS%]\855615421.exe
[%WINDOWS%]\859635843.exe
[%WINDOWS%]\867757859.exe
[%WINDOWS%]\871776218.exe
[%WINDOWS%]\875783578.exe
[%WINDOWS%]\879793640.exe
[%WINDOWS%]\883800187.exe
[%WINDOWS%]\887908890.exe
[%WINDOWS%]\891932656.exe
[%WINDOWS%]\895971281.exe
[%WINDOWS%]\899977546.exe
[%WINDOWS%]\903983875.exe
[%WINDOWS%]\907989640.exe
[%WINDOWS%]\911995734.exe
[%WINDOWS%]\916001500.exe
[%WINDOWS%]\920007453.exe
[%WINDOWS%]\924014296.exe
[%WINDOWS%]\928020500.exe
[%WINDOWS%]\932033656.exe
[%WINDOWS%]\936081812.exe
[%WINDOWS%]\940201625.exe
[%WINDOWS%]\944309593.exe
[%WINDOWS%]\948431156.exe
[%WINDOWS%]\952599468.exe
[%WINDOWS%]\956750375.exe
[%WINDOWS%]\960779343.exe
[%WINDOWS%]\964788937.exe
[%WINDOWS%]\968795843.exe
[%WINDOWS%]\972831218.exe
[%WINDOWS%]\976943640.exe
[%WINDOWS%]\981022843.exe
[%WINDOWS%]\985081390.exe
[%WINDOWS%]\989138046.exe
[%WINDOWS%]\993195218.exe
[%WINDOWS%]\997254203.exe
[%WINDOWS%]\iexplore_32.exe
[%WINDOWS%]\w32dbg.exe
[%STARTUP%]\imfe.exe
[%SYSTEM%]\igfxsvc.exe
[%SYSTEM%]\spoolw.exe
[%WINDOWS%]\1001319843.exe
[%WINDOWS%]\1005384546.exe
[%WINDOWS%]\1009449593.exe
[%WINDOWS%]\1013502546.exe
[%WINDOWS%]\1017514140.exe
[%WINDOWS%]\1021521828.exe
[%WINDOWS%]\1025528312.exe
[%WINDOWS%]\1029540156.exe
[%WINDOWS%]\1033547906.exe
[%WINDOWS%]\1037666906.exe
[%WINDOWS%]\1041692718.exe
[%WINDOWS%]\1045698609.exe
[%WINDOWS%]\1049704031.exe
[%WINDOWS%]\1053710187.exe
[%WINDOWS%]\1057760046.exe
[%WINDOWS%]\1061794218.exe
[%WINDOWS%]\1065804265.exe
[%WINDOWS%]\1069809906.exe
[%WINDOWS%]\823008343.exe
[%WINDOWS%]\827109921.exe
[%WINDOWS%]\831197953.exe
[%WINDOWS%]\835303781.exe
[%WINDOWS%]\839390562.exe
[%WINDOWS%]\843490531.exe
[%WINDOWS%]\847554765.exe
[%WINDOWS%]\851608406.exe
[%WINDOWS%]\855615421.exe
[%WINDOWS%]\859635843.exe
[%WINDOWS%]\867757859.exe
[%WINDOWS%]\871776218.exe
[%WINDOWS%]\875783578.exe
[%WINDOWS%]\879793640.exe
[%WINDOWS%]\883800187.exe
[%WINDOWS%]\887908890.exe
[%WINDOWS%]\891932656.exe
[%WINDOWS%]\895971281.exe
[%WINDOWS%]\899977546.exe
[%WINDOWS%]\903983875.exe
[%WINDOWS%]\907989640.exe
[%WINDOWS%]\911995734.exe
[%WINDOWS%]\916001500.exe
[%WINDOWS%]\920007453.exe
[%WINDOWS%]\924014296.exe
[%WINDOWS%]\928020500.exe
[%WINDOWS%]\932033656.exe
[%WINDOWS%]\936081812.exe
[%WINDOWS%]\940201625.exe
[%WINDOWS%]\944309593.exe
[%WINDOWS%]\948431156.exe
[%WINDOWS%]\952599468.exe
[%WINDOWS%]\956750375.exe
[%WINDOWS%]\960779343.exe
[%WINDOWS%]\964788937.exe
[%WINDOWS%]\968795843.exe
[%WINDOWS%]\972831218.exe
[%WINDOWS%]\976943640.exe
[%WINDOWS%]\981022843.exe
[%WINDOWS%]\985081390.exe
[%WINDOWS%]\989138046.exe
[%WINDOWS%]\993195218.exe
[%WINDOWS%]\997254203.exe
[%WINDOWS%]\iexplore_32.exe
[%WINDOWS%]\w32dbg.exe

Removing BL:

you can run trial version of ExterminateIt, or remove BL manually.


To completely manually remove BL malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with BL.


Read also:
Bancos.GVD Trojan Symptoms
EwK Trojan Removal
WinAntiSpyware2006 Downloader Removal instruction
Bancos.HEC Trojan Symptoms
Vxidl.AIB Trojan Symptoms

Fixob Trojan

Click here to remove Fixob malware
Fixob description:
Fixob Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Fixob:

you can run trial version of ExterminateIt, or remove Fixob manually.


To completely manually remove Fixob malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Fixob.


Read also:
Win32.VB.gk Trojan Symptoms
Huplu Trojan Symptoms
Remove PWS.Coced Trojan
dominoltd.com Tracking Cookie Removal instruction

RBackdoor Trojan

Click here to remove RBackdoor malware
RBackdoor description:
RBackdoor Category:Trojan,Backdoor,RAT,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing RBackdoor:

you can run trial version of ExterminateIt, or remove RBackdoor manually.


To completely manually remove RBackdoor malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RBackdoor.


Read also:
Hucsyn DoS Information

Logho Trojan

Click here to remove Logho malware
Logho description:
Logho Category:Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Trojans-downloaders downloads and installs new malware or adware on the computer.

Detection Logho :

Logho Files:
[%SYSTEM%]\syst1s.exe
[%SYSTEM%]\win_r54.exe
[%SYSTEM%]\syst1s.exe
[%SYSTEM%]\win_r54.exe

Removing Logho:

you can run trial version of ExterminateIt, or remove Logho manually.


To completely manually remove Logho malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Logho.


Read also:
Removing Apdoor Trojan
Pigeon.ABO Trojan Removal instruction
Rexec RAT Symptoms

WinAntiSpyware2006 Downloader

Click here to remove WinAntiSpyware2006 malware
WinAntiSpyware2006 description:
WinAntiSpyware2006 Category:Downloader
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Removing WinAntiSpyware2006:

you can run trial version of ExterminateIt, or remove WinAntiSpyware2006 manually.


To completely manually remove WinAntiSpyware2006 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WinAntiSpyware2006.


Read also:
TrojanDownloader.Win32.Hatcher Trojan Removal instruction

Pigeon.EQS Trojan

Click here to remove Pigeon.EQS malware
Pigeon.EQS description:
Pigeon.EQS Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.EQS:

you can run trial version of ExterminateIt, or remove Pigeon.EQS manually.


To completely manually remove Pigeon.EQS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EQS.


Read also:
Remove EwK Trojan
Pigeon.EYD Trojan Removal instruction
Removing Pigeon.ASX Trojan
Removing Bancos.INN Trojan
Vxidl.AIB Trojan Symptoms

Renos.az Trojan

Click here to remove Renos.az malware
Renos.az description:
Renos.az Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Renos.az:

you can run trial version of ExterminateIt, or remove Renos.az manually.


To completely manually remove Renos.az malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Renos.az.


Read also:
Contact Trojan Symptoms
Backdoor.Y3KRat.Server.family Trojan Removal

Follow.Me Trojan

Click here to remove Follow.Me malware
Follow.Me description:
Follow.Me Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Follow.Me:

you can run trial version of ExterminateIt, or remove Follow.Me manually.


To completely manually remove Follow.Me malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Follow.Me.


Read also:
Removing Win32.MSN.Juegos Trojan
Remove Bancos.HCB Trojan
Remove Netword.Agent Adware
FTPList Trojan Removal instruction
wh.crew.Spy RAT Removal instruction

Backdoor.Sub7Legend.Server Trojan

Click here to remove Backdoor.Sub7Legend.Server malware
Backdoor.Sub7Legend.Server description:
Backdoor.Sub7Legend.Server Category:Trojan,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Backdoor.Sub7Legend.Server:

you can run trial version of ExterminateIt, or remove Backdoor.Sub7Legend.Server manually.


To completely manually remove Backdoor.Sub7Legend.Server malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Backdoor.Sub7Legend.Server.


Read also:
Mstream DoS Removal instruction
New.Malware.aj Trojan Symptoms
VCodec Trojan Information
Salm Adware Removal

End.of Trojan

Click here to remove End.of malware
End.of description:
End.of Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing End.of:

you can run trial version of ExterminateIt, or remove End.of manually.


To completely manually remove End.of malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with End.of.


Read also:
VB.ey Trojan Information
quebechebdos.com Tracking Cookie Information
Removing TrojanClicker.Win32.Ipons Trojan
steerco.fi Tracking Cookie Information
StartPage.bs Hijacker Removal instruction

Silver.Dollar Trojan

Click here to remove Silver.Dollar malware
Silver.Dollar description:
Silver.Dollar Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Silver.Dollar:

you can run trial version of ExterminateIt, or remove Silver.Dollar manually.


To completely manually remove Silver.Dollar malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Silver.Dollar.


Read also:
PC.Flu Trojan Cleaner

Subroot.12!Server Backdoor

Click here to remove Subroot.12!Server malware
Subroot.12!Server description:
Subroot.12!Server Category:Backdoor
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Subroot.12!Server:

you can run trial version of ExterminateIt, or remove Subroot.12!Server manually.


To completely manually remove Subroot.12!Server malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Subroot.12!Server.


Read also:
Remove Pigeon.EMK Trojan
winantivirus.com Tracking Cookie Cleaner
SillyDl.CVZ Trojan Cleaner

WinPopup DoS

Click here to remove WinPopup malware
WinPopup description:
WinPopup Category:DoS
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing WinPopup:

you can run trial version of ExterminateIt, or remove WinPopup manually.


To completely manually remove WinPopup malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WinPopup.


Read also:
Vxidl.AYK Trojan Removal
Sod Trojan Removal instruction
DRCS RAT Removal instruction

Surfcomp Adware

Click here to remove Surfcomp malware
Surfcomp description:
Surfcomp Category:Adware,BHO
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
BHO (Browser Helper Object) Trojan.
The BHO waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
The method of network transport used by the attacker makes this Trojan unique.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.
Instead, this Trojan encodes the data with a simple XOR algorithm before placing it into
the data section of an ICMP ping packet." explained the company.

Detection Surfcomp :

Surfcomp Files:
[%SYSTEM%]\surfcomp.dll
[%SYSTEM%]\surfcomp.dll

Surfcomp Registry Keys:
HKEY_CLASSES_ROOT\clsid\{4145b998-6511-46de-a873-fd1dbd053164}
HKEY_CLASSES_ROOT\interface\{adaba402-85cd-4037-bc74-f4aaa8c7429c}
HKEY_CLASSES_ROOT\plugin.splugin
HKEY_CLASSES_ROOT\plugin.splugin.1
HKEY_CLASSES_ROOT\typelib\{c776869f-7c58-4778-9f55-8a78b6ec7d28}
HKEY_CURRENT_USER\software\surfplugin
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4145b998-6511-46de-a873-fd1dbd053164}

Removing Surfcomp:

you can run trial version of ExterminateIt, or remove Surfcomp manually.


To completely manually remove Surfcomp malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Surfcomp.


Read also:
StartPage.gf Hijacker Information

Tuesday, January 27, 2009

ICQ.Locked Trojan

Click here to remove ICQ.Locked malware
ICQ.Locked description:
ICQ.Locked Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing ICQ.Locked:

you can run trial version of ExterminateIt, or remove ICQ.Locked manually.


To completely manually remove ICQ.Locked malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ICQ.Locked.


Read also:
VB.pv Backdoor Removal instruction
Remove Win32.TrojanDropper.Fearless Trojan
Remove Arctic RAT
Maz:unpacked Trojan Removal instruction

Rhapsody Trojan

Click here to remove Rhapsody malware
Rhapsody description:
Rhapsody Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Rhapsody:

you can run trial version of ExterminateIt, or remove Rhapsody manually.


To completely manually remove Rhapsody malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Rhapsody.


Read also:
DeadBolt Trojan Symptoms
User.Logger Spyware Cleaner
StartPage.jk Downloader Removal instruction
Remove an Adware

SillyDl.CUM Trojan

Click here to remove SillyDl.CUM malware
SillyDl.CUM description:
SillyDl.CUM Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing SillyDl.CUM:

you can run trial version of ExterminateIt, or remove SillyDl.CUM manually.


To completely manually remove SillyDl.CUM malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.CUM.


Read also:
Nuclear.WebDownloader Downloader Removal instruction
Removing Win32.Kaiten Trojan
Bancos.GYE Trojan Removal instruction
Removing Win32.HellDoor Trojan

Bancos.GRM Trojan

Click here to remove Bancos.GRM malware
Bancos.GRM description:
Bancos.GRM Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.GRM:

you can run trial version of ExterminateIt, or remove Bancos.GRM manually.


To completely manually remove Bancos.GRM malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GRM.


Read also:
Vxidl.ADF Trojan Information
Windows.Search.Bar BHO Cleaner
VB.oe Backdoor Information
Win32.VB.fc Trojan Removal instruction

KeyGen.PC.OnPoint Trojan

Click here to remove KeyGen.PC.OnPoint malware
KeyGen.PC.OnPoint description:
KeyGen.PC.OnPoint Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing KeyGen.PC.OnPoint:

you can run trial version of ExterminateIt, or remove KeyGen.PC.OnPoint manually.


To completely manually remove KeyGen.PC.OnPoint malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with KeyGen.PC.OnPoint.


Read also:
Removing Basic.CD.Tray.Opener Trojan
Removing Bancos.FRN Trojan
SSPPYY RAT Cleaner
Pentagrame Trojan Removal instruction
Blackhack.mp Trojan Removal

Gumbsumb Trojan

Click here to remove Gumbsumb malware
Gumbsumb description:
Gumbsumb Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Detection Gumbsumb :

Gumbsumb Files:
[%SYSTEM%]\bdscheca001.dll
[%SYSTEM%]\Cnscheck001.dll
[%SYSTEM%]\Cnscheck100.dll
[%SYSTEM%]\cs1sa1.dll
[%SYSTEM%]\cxscheca001.dll
[%WINDOWS%]\assistse.exe
[%WINDOWS%]\bbs.dll
[%WINDOWS%]\csrsc.exe
[%WINDOWS%]\system\m.EXE
[%WINDOWS%]\system\w.exe
[%WINDOWS%]\system\z.exe
[%SYSTEM%]\bdscheca001.dll
[%SYSTEM%]\Cnscheck001.dll
[%SYSTEM%]\Cnscheck100.dll
[%SYSTEM%]\cs1sa1.dll
[%SYSTEM%]\cxscheca001.dll
[%WINDOWS%]\assistse.exe
[%WINDOWS%]\bbs.dll
[%WINDOWS%]\csrsc.exe
[%WINDOWS%]\system\m.EXE
[%WINDOWS%]\system\w.exe
[%WINDOWS%]\system\z.exe

Gumbsumb Registry Keys:
HKEY_CLASSES_ROOT\clsid\{9a0cfc58-5a6f-41ba-9ffe-4320f4f621ba}
HKEY_CLASSES_ROOT\clsid\{9a0cfc58-5a6f-41ba-9ffe-4320f4f62fb1}
HKEY_CLASSES_ROOT\clsid\{ad0aca58-656f-61da-9dfe-5d20f4f611ba}
HKEY_CLASSES_ROOT\clsid\{bc0cfa58-3a6f-51ba-9efe-b320f4f621ba}

Gumbsumb Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runservices

Removing Gumbsumb:

you can run trial version of ExterminateIt, or remove Gumbsumb manually.


To completely manually remove Gumbsumb malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Gumbsumb.


Read also:
Pigeon.AXN Trojan Cleaner
Orbit RAT Information
Aqua.Client Trojan Information
Austr.Para.Comic Trojan Cleaner

Arctic RAT

Click here to remove Arctic malware
Arctic description:
Arctic Category:RAT
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Removing Arctic:

you can run trial version of ExterminateIt, or remove Arctic manually.


To completely manually remove Arctic malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Arctic.


Read also:
Hellz.Little.Spy Spyware Symptoms
RIC Backdoor Cleaner
SillyDl.CRF Downloader Cleaner
PHP.Logger Trojan Information

Bancos.ABB Trojan

Click here to remove Bancos.ABB malware
Bancos.ABB description:
Bancos.ABB Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Detection Bancos.ABB :

Bancos.ABB Files:
[%COMMON_STARTUP%]\Flash.exe
[%COMMON_STARTUP%]\Flash.exe

Removing Bancos.ABB:

you can run trial version of ExterminateIt, or remove Bancos.ABB manually.


To completely manually remove Bancos.ABB malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.ABB.


Read also:
Vxidl.AGW Trojan Symptoms
S00d Backdoor Removal

Macedonia Trojan

Click here to remove Macedonia malware
Macedonia description:
Macedonia Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Macedonia:

you can run trial version of ExterminateIt, or remove Macedonia manually.


To completely manually remove Macedonia malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Macedonia.


Read also:
Pigeon.ARR Trojan Information

kingdomsandcatapults.com Tracking Cookie

Click here to remove kingdomsandcatapults.com malware
kingdomsandcatapults.com description:
kingdomsandcatapults.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing kingdomsandcatapults.com:

you can run trial version of ExterminateIt, or remove kingdomsandcatapults.com manually.


To completely manually remove kingdomsandcatapults.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with kingdomsandcatapults.com.


Read also:
Removing Bizdup Trojan
SillyDl.CCW Trojan Information
Remote.Control.server RAT Symptoms
Contact Trojan Symptoms

Benuti.E!downloader Trojan

Click here to remove Benuti.E!downloader malware
Benuti.E!downloader description:
Benuti.E!downloader Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Benuti.E!downloader:

you can run trial version of ExterminateIt, or remove Benuti.E!downloader manually.


To completely manually remove Benuti.E!downloader malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Benuti.E!downloader.


Read also:
Remove Pigeon.AVRU Trojan
Pigeon.AVGJ Trojan Removal

Vxidl.BCB Trojan

Click here to remove Vxidl.BCB malware
Vxidl.BCB description:
Vxidl.BCB Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Vxidl.BCB:

you can run trial version of ExterminateIt, or remove Vxidl.BCB manually.


To completely manually remove Vxidl.BCB malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.BCB.


Read also:
Pigeon.AVSO Trojan Information
Bancos.GHS Trojan Information
Ditul Trojan Removal

Vxidl.AWP Trojan

Click here to remove Vxidl.AWP malware
Vxidl.AWP description:
Vxidl.AWP Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.AWP:

you can run trial version of ExterminateIt, or remove Vxidl.AWP manually.


To completely manually remove Vxidl.AWP malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AWP.


Read also:
Violetta Trojan Cleaner
Removing Emptybase Trojan
Adware.YayaBands Adware Removal instruction

NHVIP Trojan

Click here to remove NHVIP malware
NHVIP description:
NHVIP Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing NHVIP:

you can run trial version of ExterminateIt, or remove NHVIP manually.


To completely manually remove NHVIP malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with NHVIP.


Read also:
PandoraBox Trojan Cleaner
LinkGrabber Adware Removal instruction
MyPic Trojan Information
WinLL Trojan Information

Monday, January 26, 2009

RIC Backdoor

Click here to remove RIC malware
RIC description:
RIC Category:Backdoor,RAT
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Removing RIC:

you can run trial version of ExterminateIt, or remove RIC manually.


To completely manually remove RIC malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RIC.


Read also:
Remove Spirit.2001a.Beta.Edition RAT
Removing ShenHua Trojan
Pigeon.AVLD Trojan Symptoms
ReFog.KGBSpy Spyware Information
BufaloBot Trojan Symptoms

Pigeon.AVFM Trojan

Click here to remove Pigeon.AVFM malware
Pigeon.AVFM description:
Pigeon.AVFM Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.AVFM:

you can run trial version of ExterminateIt, or remove Pigeon.AVFM manually.


To completely manually remove Pigeon.AVFM malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVFM.


Read also:
Irapture Backdoor Removal
roi.jp Tracking Cookie Symptoms

QDel121 Trojan

Click here to remove QDel121 malware
QDel121 description:
QDel121 Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing QDel121:

you can run trial version of ExterminateIt, or remove QDel121 manually.


To completely manually remove QDel121 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with QDel121.


Read also:
NPLAGUE.VOM Trojan Removal instruction
Bancos.GNE Trojan Removal

nozonedata.com Tracking Cookie

Click here to remove nozonedata.com malware
nozonedata.com description:
nozonedata.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing nozonedata.com:

you can run trial version of ExterminateIt, or remove nozonedata.com manually.


To completely manually remove nozonedata.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with nozonedata.com.


Read also:
Remove BrowserAid.Featured.Results BHO

Ieasis Ransomware

Click here to remove Ieasis malware
Ieasis description:
Ieasis Category:Ransomware
A cryptovirus, cryptotrojan or cryptoworm is a type of
malware that encrypts the data belonging to an individual on a computer,
demanding a ransom for its restoration.

The term ransomware is commonly used to describe such software,
although the field known as cryptovirology predates the term "ransomware".

This type of ransom attack can be accomplished by (for example) attaching
a specially crafted file/program to an e-mail message and sending this to the victim.

If the victim opens/executes the attachment, the program encrypts
a number of files on the victim's computer. A ransom note is then left behind for the victim.

The victim will be unable to open the encrypted files without the correct decryption key.
Once the ransom demanded in the ransom note is paid, the cracker may (or may not)
send the decryption key, enabling decryption of the "kidnapped" files.

Detection Ieasis :

Ieasis Files:
[%SYSTEM%]\iea.dll
[%SYSTEM%]\iea.dll

Ieasis Registry Keys:
HKEY_CLASSES_ROOT\appid\{bd4bafb3-3e38-4668-8ec5-ae0118560ac5}
HKEY_CLASSES_ROOT\clsid\{b08d32de-64b2-4137-8345-87293e70d40b}
HKEY_CLASSES_ROOT\ieassistant.assistant
HKEY_CLASSES_ROOT\interface\{b04ff886-12bf-4359-a280-311a94a8663d}
HKEY_CLASSES_ROOT\interface\{e78cbe69-59ed-4f51-93bb-7a040b5df2dc}
HKEY_CURRENT_USER\software\iea
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{b08d32de-64b2-4137-8345-87293e70d40b}

Ieasis Registry Values:
HKEY_CLASSES_ROOT\appid\ieassistant.dll

Removing Ieasis:

you can run trial version of ExterminateIt, or remove Ieasis manually.


To completely manually remove Ieasis malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ieasis.


Read also:
Bancos.AGY Trojan Information
Clearlog Trojan Removal
Remove Video ActiveX Object Trojan

Adware.YayaBands Adware

Click here to remove Adware.YayaBands malware
Adware.YayaBands description:
Adware.YayaBands Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Removing Adware.YayaBands:

you can run trial version of ExterminateIt, or remove Adware.YayaBands manually.


To completely manually remove Adware.YayaBands malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Adware.YayaBands.


Read also:
Removing KooWo BHO
Behaviour Trojan Information
Removing FTPList Trojan
Remove Shutup.syslogd.denial.of.service DoS
Adware.BDSearch.dr Adware Removal instruction

Microsoft.Media.Server.Denial.of.Service.Attack DoS

Click here to remove Microsoft.Media.Server.Denial.of.Service.Attack malware
Microsoft.Media.Server.Denial.of.Service.Attack description:
Microsoft.Media.Server.Denial.of.Service.Attack Category:DoS
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Microsoft.Media.Server.Denial.of.Service.Attack:

you can run trial version of ExterminateIt, or remove Microsoft.Media.Server.Denial.of.Service.Attack manually.


To completely manually remove Microsoft.Media.Server.Denial.of.Service.Attack malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Microsoft.Media.Server.Denial.of.Service.Attack.


Read also:
Bancos.GJG Trojan Information
CandyMan Trojan Removal instruction
Vxidl.AWF Trojan Information
Bat.FormatD Trojan Symptoms
Removing Armageddon Trojan

Sex.Niche.Guide Toolbar

Click here to remove Sex.Niche.Guide malware
Sex.Niche.Guide description:
Sex.Niche.Guide Category:Toolbar
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.
It replaces your start page, continuosly open a number of pop up windows and so on.

Detection Sex.Niche.Guide :

Sex.Niche.Guide Folders:
[%PROGRAM_FILES%]\Sex_Niche_Guide

Sex.Niche.Guide Registry Keys:
HKEY_CURRENT_USER\software\sex_niche_guide
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6230e1cb-3c21-4491-b0af-cfcb5dfa3a3d}
HKEY_LOCAL_MACHINE\software\sex_niche_guide

Sex.Niche.Guide Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser
HKEY_CURRENT_USER\software\microsoft\internet explorer\urlsearchhooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\sex niche guide toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\sex niche guide toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\sex niche guide toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\sex niche guide toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\sex niche guide toolbar

Removing Sex.Niche.Guide:

you can run trial version of ExterminateIt, or remove Sex.Niche.Guide manually.


To completely manually remove Sex.Niche.Guide malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Sex.Niche.Guide.


Read also:
DontRun Trojan Information
Win32.PSW.ICQ.Timsy Trojan Removal instruction
Remove ShenHua Trojan

Bancos.GNN Trojan

Click here to remove Bancos.GNN malware
Bancos.GNN description:
Bancos.GNN Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.GNN:

you can run trial version of ExterminateIt, or remove Bancos.GNN manually.


To completely manually remove Bancos.GNN malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GNN.


Read also:
Ditul Trojan Information
Removing Lamers.Death.7b2 Backdoor
Behaviour Trojan Symptoms
Remove Pigeon.ARR Trojan
Norio Trojan Information

PornTrack.com Tracking Cookie

Click here to remove PornTrack.com malware
PornTrack.com description:
PornTrack.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing PornTrack.com:

you can run trial version of ExterminateIt, or remove PornTrack.com manually.


To completely manually remove PornTrack.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PornTrack.com.


Read also:
Removing NtDLL Trojan
WebServ Backdoor Removal instruction
Pigeon.EBS Trojan Cleaner
Aqua.Client Trojan Removal instruction
Vxidl.BDU Trojan Cleaner

Drwup Trojan

Click here to remove Drwup malware
Drwup description:
Drwup Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Drwup:

you can run trial version of ExterminateIt, or remove Drwup manually.


To completely manually remove Drwup malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Drwup.


Read also:
CandyMan Trojan Cleaner

Shutup.syslogd.denial.of.service DoS

Click here to remove Shutup.syslogd.denial.of.service malware
Shutup.syslogd.denial.of.service description:
Shutup.syslogd.denial.of.service Category:DoS
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Shutup.syslogd.denial.of.service:

you can run trial version of ExterminateIt, or remove Shutup.syslogd.denial.of.service manually.


To completely manually remove Shutup.syslogd.denial.of.service malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Shutup.syslogd.denial.of.service.


Read also:
Frethog.ADS Trojan Symptoms
Myss Trojan Symptoms
Remove ASP Trojan
Remove Word Trojan

VB.aq Backdoor

Click here to remove VB.aq malware
VB.aq description:
VB.aq Category:Backdoor
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing VB.aq:

you can run trial version of ExterminateIt, or remove VB.aq manually.


To completely manually remove VB.aq malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with VB.aq.


Read also:
Becower Trojan Removal instruction
Win32.TrojanDownloader.VB.AA3 Downloader Symptoms
Remove SillyDl.CUS Trojan
Adware.BDSearch.dr Adware Cleaner
Remove easy.ad.info Tracking Cookie

TrojanDownloader.Win32.Dyfuca.ag Adware

Click here to remove TrojanDownloader.Win32.Dyfuca.ag malware
TrojanDownloader.Win32.Dyfuca.ag description:
TrojanDownloader.Win32.Dyfuca.ag Category:Adware,Downloader
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Removing TrojanDownloader.Win32.Dyfuca.ag:

you can run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Dyfuca.ag manually.


To completely manually remove TrojanDownloader.Win32.Dyfuca.ag malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Dyfuca.ag.


Read also:
Remove SillyDl.CZD Trojan

UpdateLoader Adware

Click here to remove UpdateLoader malware
UpdateLoader description:
UpdateLoader Category:Adware,Downloader
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Detection UpdateLoader :

UpdateLoader Files:
[%WINDOWS%]\downloaded program files\download_ul.dll
[%WINDOWS%]\system\randomiser.exe
[%WINDOWS%]\downloaded program files\download_ul.dll
[%WINDOWS%]\system\randomiser.exe

UpdateLoader Registry Keys:
HKEY_CLASSES_ROOT\clsid\{f7adcfe3-aa28-f99e-e665-b13ac332d249}
HKEY_CLASSES_ROOT\download_ul.downloadul
HKEY_CLASSES_ROOT\download_ul.downloadul.1
HKEY_CLASSES_ROOT\interface\{0c1c2c3c-4c5c-6c7c-8c9c-ccbcccdcecfc}
HKEY_CLASSES_ROOT\typelib\{01b8453a-d3bc-479a-8c7a-0e86f3f4ff18}
HKEY_CLASSES_ROOT\typelib\{0b1b2b3b-4b5b-6b7b-8b9b-bbbbcbdbebfb}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{ae6cefa8-1223-4337-8d94-977268ff9aa0}
HKEY_LOCAL_MACHINE\software\microsoft\ms updates
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]\downloaded program files\download_ul.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ms updates

UpdateLoader Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls

Removing UpdateLoader:

you can run trial version of ExterminateIt, or remove UpdateLoader manually.


To completely manually remove UpdateLoader malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with UpdateLoader.


Read also:
SSPPYY RAT Symptoms
Win32.Sedcrop Trojan Removal instruction
ReFog.KGBSpy Spyware Information
3xterm Trojan Removal instruction
Pigeon.AYU Trojan Information

SearchNugget Adware

Click here to remove SearchNugget malware
SearchNugget description:
SearchNugget Category:Adware,Toolbar
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.

Detection SearchNugget :

SearchNugget Files:
[%WINDOWS%]\downloaded program files\sbar.dll
[%WINDOWS%]\downloaded program files\sbar.dll

SearchNugget Folders:
[%PROGRAM_FILES%]\sbar toolbar
[%PROGRAM_FILES%]\searchnugget toolbar 1.0

SearchNugget Registry Keys:
HKEY_CLASSES_ROOT\clsid\{4e7bd74f-2b8d-469e-c0ff-fd7ff4d5fa7d}
HKEY_CLASSES_ROOT\clsid\{4e7bd74f-2b8d-469e-c0ff-fd7ff4d5fa7e}
HKEY_CLASSES_ROOT\clsid\{4e7bd74f-2b8d-469e-c0ff-fd7ff4d5fa7f}
HKEY_CLASSES_ROOT\sbar.sbar
HKEY_CLASSES_ROOT\sbar.sbarmenu button
HKEY_CLASSES_ROOT\sbar.sbartoggle button
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4e7bd74f-2b8d-469e-c0ff-fd7ff4d5fa7d}

SearchNugget Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\searchnugget toolbar 1.0

Removing SearchNugget:

you can run trial version of ExterminateIt, or remove SearchNugget manually.


To completely manually remove SearchNugget malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SearchNugget.


Read also:
DeadBolt Trojan Removal
Quake Trojan Removal instruction
TrojanDownloader.Win32.Swizzor.an BHO Cleaner
Win32.Flooder.MSN.Bigfly Trojan Symptoms

Kadir.Basol.Devastator Backdoor

Click here to remove Kadir.Basol.Devastator malware
Kadir.Basol.Devastator description:
Kadir.Basol.Devastator Category:Backdoor,RAT
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Removing Kadir.Basol.Devastator:

you can run trial version of ExterminateIt, or remove Kadir.Basol.Devastator manually.


To completely manually remove Kadir.Basol.Devastator malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Kadir.Basol.Devastator.


Read also:
Blah Trojan Symptoms
Format.CQ Trojan Removal
Vxidl.ATD Trojan Removal instruction
Bancos.GQA Trojan Cleaner

CandyMan Trojan

Click here to remove CandyMan malware
CandyMan description:
CandyMan Category:Trojan,Backdoor,Downloader,Hacker Tool,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Trojans-downloaders downloads and installs new malware or adware on the computer.

Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing CandyMan:

you can run trial version of ExterminateIt, or remove CandyMan manually.


To completely manually remove CandyMan malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with CandyMan.


Read also:
ICQ.Hack Trojan Removal instruction
Poxmody Downloader Removal instruction
Ramirez.alfa Backdoor Removal
Webster RAT Information
Bat.FormatD Trojan Cleaner

Sunday, January 25, 2009

BackDoor.AKZ.gen Trojan

Click here to remove BackDoor.AKZ.gen malware
BackDoor.AKZ.gen description:
BackDoor.AKZ.gen Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing BackDoor.AKZ.gen:

you can run trial version of ExterminateIt, or remove BackDoor.AKZ.gen manually.


To completely manually remove BackDoor.AKZ.gen malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with BackDoor.AKZ.gen.


Read also:
SoHa Worm Symptoms
Vxidl.BDH Trojan Symptoms
Format.CQ Trojan Information
TrojanDownloader.Win32.DaWeb Trojan Cleaner
VB.ey Trojan Cleaner

MailSpam.Shadow Hacker Tool

Click here to remove MailSpam.Shadow malware
MailSpam.Shadow description:
MailSpam.Shadow Category:Hacker Tool,DoS
Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing MailSpam.Shadow:

you can run trial version of ExterminateIt, or remove MailSpam.Shadow manually.


To completely manually remove MailSpam.Shadow malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with MailSpam.Shadow.


Read also:
Pigeon.AXN Trojan Removal
3xterm Trojan Removal

SillyDl.DEU Trojan

Click here to remove SillyDl.DEU malware
SillyDl.DEU description:
SillyDl.DEU Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing SillyDl.DEU:

you can run trial version of ExterminateIt, or remove SillyDl.DEU manually.


To completely manually remove SillyDl.DEU malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.DEU.


Read also:
CPU.Hog DoS Removal
HotNaughtyWives.com Tracking Cookie Removal instruction
MofDemo Trojan Removal instruction

superstats.com Tracking Cookie

Click here to remove superstats.com malware
superstats.com description:
superstats.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing superstats.com:

you can run trial version of ExterminateIt, or remove superstats.com manually.


To completely manually remove superstats.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with superstats.com.


Read also:
Pigeon.EGF Trojan Symptoms
Startpage.AN!downloader Trojan Cleaner
Back.Orifice.Password.Scanning.Plugin RAT Removal
Remove Headline Trojan

VB.fz Trojan

Click here to remove VB.fz malware
VB.fz description:
VB.fz Category:Trojan,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing VB.fz:

you can run trial version of ExterminateIt, or remove VB.fz manually.


To completely manually remove VB.fz malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with VB.fz.


Read also:
Removing Backdoor.Assasin.Server Trojan
Remove steerco.fi Tracking Cookie
ReFog.KGBSpy Spyware Removal instruction
3xterm Trojan Information
KeyKap Trojan Information

Bancos.IBI Trojan

Click here to remove Bancos.IBI malware
Bancos.IBI description:
Bancos.IBI Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.IBI:

you can run trial version of ExterminateIt, or remove Bancos.IBI manually.


To completely manually remove Bancos.IBI malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.IBI.


Read also:
Remove StartPage.bs Hijacker
Pigeon.ACJ Trojan Cleaner

Guangwaigirl.53b Backdoor

Click here to remove Guangwaigirl.53b malware
Guangwaigirl.53b description:
Guangwaigirl.53b Category:Backdoor,RAT
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Removing Guangwaigirl.53b:

you can run trial version of ExterminateIt, or remove Guangwaigirl.53b manually.


To completely manually remove Guangwaigirl.53b malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Guangwaigirl.53b.


Read also:
Win32.Small.aco Downloader Cleaner

privatecash.com Tracking Cookie

Click here to remove privatecash.com malware
privatecash.com description:
privatecash.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing privatecash.com:

you can run trial version of ExterminateIt, or remove privatecash.com manually.


To completely manually remove privatecash.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with privatecash.com.


Read also:
Bancos.FZU Trojan Removal

PWS.Coced Trojan

Click here to remove PWS.Coced malware
PWS.Coced description:
PWS.Coced Category:Trojan,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing PWS.Coced:

you can run trial version of ExterminateIt, or remove PWS.Coced manually.


To completely manually remove PWS.Coced malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PWS.Coced.


Read also:
RemoteAnything RAT Information
Remove Visual.Killer Backdoor

Pigeon.EBY Trojan

Click here to remove Pigeon.EBY malware
Pigeon.EBY description:
Pigeon.EBY Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.EBY:

you can run trial version of ExterminateIt, or remove Pigeon.EBY manually.


To completely manually remove Pigeon.EBY malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EBY.


Read also:
RemoteWatch Spyware Removal

nethit.free.nl Tracking Cookie

Click here to remove nethit.free.nl malware
nethit.free.nl description:
nethit.free.nl Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing nethit.free.nl:

you can run trial version of ExterminateIt, or remove nethit.free.nl manually.


To completely manually remove nethit.free.nl malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with nethit.free.nl.


Read also:
Pigeon.ACS Trojan Information
SillyDl.AOE Downloader Information
Behaviour Trojan Symptoms
VCodec Trojan Removal instruction
zelda64.com Tracking Cookie Symptoms

traffic4u.nl Tracking Cookie

Click here to remove traffic4u.nl malware
traffic4u.nl description:
traffic4u.nl Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing traffic4u.nl:

you can run trial version of ExterminateIt, or remove traffic4u.nl manually.


To completely manually remove traffic4u.nl malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with traffic4u.nl.


Read also:
HLLP.Non31995 Trojan Information
Remove SillyDl.CPB Trojan
ILL.Eagle RAT Removal instruction
Pendix Downloader Removal instruction

SillyDl.BZA Trojan

Click here to remove SillyDl.BZA malware
SillyDl.BZA description:
SillyDl.BZA Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing SillyDl.BZA:

you can run trial version of ExterminateIt, or remove SillyDl.BZA manually.


To completely manually remove SillyDl.BZA malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.BZA.


Read also:
Removing RemoteAnything RAT
Bancos.HER Trojan Removal
Le.Colonel RAT Removal instruction

adultrevenueservice.com Tracking Cookie

Click here to remove adultrevenueservice.com malware
adultrevenueservice.com description:
adultrevenueservice.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing adultrevenueservice.com:

you can run trial version of ExterminateIt, or remove adultrevenueservice.com manually.


To completely manually remove adultrevenueservice.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with adultrevenueservice.com.


Read also:
Removing UandMe Trojan
Remove PSW.Lmir.gx Trojan
Zdziubus.beta RAT Information
StartPage.gf Hijacker Removal instruction
LSL Trojan Removal

Pigeon.AEC Trojan

Click here to remove Pigeon.AEC malware
Pigeon.AEC description:
Pigeon.AEC Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AEC:

you can run trial version of ExterminateIt, or remove Pigeon.AEC manually.


To completely manually remove Pigeon.AEC malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AEC.


Read also:
PSW.Lmir.gx Trojan Removal instruction
Blah Trojan Cleaner
Removing Tool.AVExp Trojan
CSKey Trojan Removal

Bancos.HER Trojan

Click here to remove Bancos.HER malware
Bancos.HER description:
Bancos.HER Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.HER:

you can run trial version of ExterminateIt, or remove Bancos.HER manually.


To completely manually remove Bancos.HER malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.HER.


Read also:
Removing Batdelmc Trojan
Win32.Joiner.Joiner Trojan Removal instruction
Vxidl.ACS Trojan Information
Removing IROffer.b01 Backdoor

PacerD Adware

Click here to remove PacerD malware
PacerD description:
PacerD Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Detection PacerD :

PacerD Files:
[%SYSTEM%]\202_app13.exe
[%SYSTEM%]\popoops2.dll
[%SYSTEM%]\swlad1.dll
[%SYSTEM%]\202_app13.exe
[%SYSTEM%]\popoops2.dll
[%SYSTEM%]\swlad1.dll

PacerD Registry Keys:
HKEY_CURRENT_USER\software\apd123

PacerD Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing PacerD:

you can run trial version of ExterminateIt, or remove PacerD manually.


To completely manually remove PacerD malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PacerD.


Read also:
Backdoor.An Backdoor Symptoms
Egdi Downloader Cleaner
Pigeon.ANQ Trojan Removal instruction

TrojanDownloader.Win32.Swizzor.bq Downloader

Click here to remove TrojanDownloader.Win32.Swizzor.bq malware
TrojanDownloader.Win32.Swizzor.bq description:
TrojanDownloader.Win32.Swizzor.bq Category:Downloader
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Removing TrojanDownloader.Win32.Swizzor.bq:

you can run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Swizzor.bq manually.


To completely manually remove TrojanDownloader.Win32.Swizzor.bq malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Swizzor.bq.


Read also:
WinKeyLogger Trojan Information
Axload Downloader Cleaner

Bancos.HKY Trojan

Click here to remove Bancos.HKY malware
Bancos.HKY description:
Bancos.HKY Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.HKY:

you can run trial version of ExterminateIt, or remove Bancos.HKY manually.


To completely manually remove Bancos.HKY malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.HKY.


Read also:
MoneyTree.UniDist Adware Cleaner
Pigeon.ACJ Trojan Symptoms
Pepper Trojan Information

Saturday, January 24, 2009

Provder Backdoor

Click here to remove Provder malware
Provder description:
Provder Category:Backdoor
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Provder:

you can run trial version of ExterminateIt, or remove Provder manually.


To completely manually remove Provder malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Provder.


Read also:
Bancos.HBO Trojan Information

StObj32 Trojan

Click here to remove StObj32 malware
StObj32 description:
StObj32 Category:Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Removing StObj32:

you can run trial version of ExterminateIt, or remove StObj32 manually.


To completely manually remove StObj32 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with StObj32.


Read also:
Mosucker Trojan Cleaner

Pigeon.AGV Trojan

Click here to remove Pigeon.AGV malware
Pigeon.AGV description:
Pigeon.AGV Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AGV:

you can run trial version of ExterminateIt, or remove Pigeon.AGV manually.


To completely manually remove Pigeon.AGV malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AGV.


Read also:
600z.com Tracking Cookie Symptoms
ICMP.Angryping DoS Symptoms
Setial Trojan Removal
Removing Dollar.Revenue Adware
Pigeon.EQO Trojan Symptoms

Pigeon.AYU Trojan

Click here to remove Pigeon.AYU malware
Pigeon.AYU description:
Pigeon.AYU Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AYU:

you can run trial version of ExterminateIt, or remove Pigeon.AYU manually.


To completely manually remove Pigeon.AYU malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AYU.


Read also:
Remove Backdoor.Asylum Trojan
Pigeon.AVNE Trojan Symptoms
Remove Istzone Downloader

Disable.Task.Manager.Reg.Entry Trojan

Click here to remove Disable.Task.Manager.Reg.Entry malware
Disable.Task.Manager.Reg.Entry description:
Disable.Task.Manager.Reg.Entry Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Disable.Task.Manager.Reg.Entry :

Disable.Task.Manager.Reg.Entry Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system

Removing Disable.Task.Manager.Reg.Entry:

you can run trial version of ExterminateIt, or remove Disable.Task.Manager.Reg.Entry manually.


To completely manually remove Disable.Task.Manager.Reg.Entry malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Disable.Task.Manager.Reg.Entry.


Read also:
Vxidl.AMH Trojan Removal instruction

winantivirus.com Tracking Cookie

Click here to remove winantivirus.com malware
winantivirus.com description:
winantivirus.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

Removing winantivirus.com:

you can run trial version of ExterminateIt, or remove winantivirus.com manually.


To completely manually remove winantivirus.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with winantivirus.com.


Read also:
Shareme Trojan Cleaner
GetMirar Adware Symptoms
lulu.com Tracking Cookie Information
Removing Onap Trojan
Phishbank.AMF Trojan Removal

Ren.Bat Trojan

Click here to remove Ren.Bat malware
Ren.Bat description:
Ren.Bat Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Ren.Bat :

Ren.Bat Files:
[%DESKTOP%]\grl realhidden.lnk
[%DESKTOP%]\grl realhidden.lnk

Ren.Bat Folders:
[%PROGRAMS%]\grl realhidden
[%PROGRAM_FILES%]\grl realhidden

Removing Ren.Bat:

you can run trial version of ExterminateIt, or remove Ren.Bat manually.


To completely manually remove Ren.Bat malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ren.Bat.


Read also:
Bancos.HCO Trojan Removal instruction
Silentframe Hostile Code Symptoms
Bat.FormatD Trojan Symptoms
SoHa Worm Removal instruction

Wiretap.Professional Spyware

Click here to remove Wiretap.Professional malware
Wiretap.Professional description:
Wiretap.Professional Category:Spyware
Spyware is computer software that is installed surreptitiously on a personal computer
to intercept or take partial control over the user's interaction
with the computer, without the user's informed consent.

While the term spyware suggests software that secretly monitors the user's behavior,
the functions of spyware extend well beyond simple monitoring.

Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.

Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.

Detection Wiretap.Professional :

Wiretap.Professional Folders:
[%SYSTEM%]\recoveryinfo
[%COMMON_PROGRAMS%]\Wiretap Professional
[%PROGRAMS%]\wiretap professional
[%PROGRAM_FILES%]\wiretap professional

Wiretap.Professional Registry Keys:
HKEY_CLASSES_ROOT\applications\scvhost.exe
HKEY_CLASSES_ROOT\clsid\{935fa400-243d-11d3-b06e-857b2ae2be64}
HKEY_CLASSES_ROOT\clsid\{e8b31a72-aace-412d-aa2c-d03fa6fccdef}
HKEY_CLASSES_ROOT\shellexecutehook.tshellexecutehook
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{e8b31a72-aace-412d-aa2c-d03fa6fccdef}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks\{935fa400-243d-11d3-b06e-857b2ae2be64}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\wtp_is1

Wiretap.Professional Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\5291-mdiv

Removing Wiretap.Professional:

you can run trial version of ExterminateIt, or remove Wiretap.Professional manually.


To completely manually remove Wiretap.Professional malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Wiretap.Professional.


Read also:
ICQ.Trogen Trojan Information
Removing SrchUpdt Adware
Remote.GUI Trojan Symptoms
OC.gro4 Trojan Removal instruction

Win32.Agent.db Trojan

Click here to remove Win32.Agent.db malware
Win32.Agent.db description:
Win32.Agent.db Category:Trojan,BHO
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.

Detection Win32.Agent.db :

Win32.Agent.db Files:
[%PROFILE%]\LOCAL.EXE
[%PROFILE_TEMP%]\cel90xbe.sys
[%WINDOWS%]\WebAssist.dll
[%PROFILE%]\LOCAL.EXE
[%PROFILE_TEMP%]\cel90xbe.sys
[%WINDOWS%]\WebAssist.dll

Win32.Agent.db Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{85589B5D-D53D-4237-A677-46B82EA275F3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{85589B5D-D53D-4237-A677-46B82EA275F3}

Removing Win32.Agent.db:

you can run trial version of ExterminateIt, or remove Win32.Agent.db manually.


To completely manually remove Win32.Agent.db malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Agent.db.


Read also:
Krusvex Trojan Cleaner
Removing Elephant2 Trojan
Backdoor.Osirdoor Backdoor Information

Pigeon.AVNE Trojan

Click here to remove Pigeon.AVNE malware
Pigeon.AVNE description:
Pigeon.AVNE Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.AVNE:

you can run trial version of ExterminateIt, or remove Pigeon.AVNE manually.


To completely manually remove Pigeon.AVNE malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVNE.


Read also:
Removing Playx Backdoor
Removing Santosa Trojan
Remove Hatred.Fiend Trojan

Pigeon.EFT Trojan

Click here to remove Pigeon.EFT malware
Pigeon.EFT description:
Pigeon.EFT Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.EFT:

you can run trial version of ExterminateIt, or remove Pigeon.EFT manually.


To completely manually remove Pigeon.EFT malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EFT.


Read also:
Grepage Trojan Cleaner
Roach Trojan Symptoms
Remove NetMama Spyware
Remove Leprosy.Seneca Trojan
Remove Spirit.2001a.Beta.Edition RAT

Win32.TrojanDownloader.VB.AA3 Downloader

Click here to remove Win32.TrojanDownloader.VB.AA3 malware
Win32.TrojanDownloader.VB.AA3 description:
Win32.TrojanDownloader.VB.AA3 Category:Downloader
Trojans-downloaders downloads and installs new malware or adware on the computer.

Removing Win32.TrojanDownloader.VB.AA3:

you can run trial version of ExterminateIt, or remove Win32.TrojanDownloader.VB.AA3 manually.


To completely manually remove Win32.TrojanDownloader.VB.AA3 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.TrojanDownloader.VB.AA3.


Read also:
Lixy Trojan Removal instruction
Win32.Theef Trojan Cleaner
Win32.PSW.ICQ.Timsy Trojan Symptoms
HLLP.Non31995 Trojan Removal
Backdoor.Assasin.Serverstub Trojan Removal instruction

RemoteWatch Spyware

Click here to remove RemoteWatch malware
RemoteWatch description:
RemoteWatch Category:Spyware,Hacker Tool
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Detection RemoteWatch :

RemoteWatch Files:
[%COMMON_STARTUP%]\remotewatch.lnk
[%PROGRAM_FILES%]\remotewatch\remotewatch.exe
[%PROGRAM_FILES%]\remotewatch\unins000.dat
[%PROGRAM_FILES%]\remotewatch\unins000.exe
[%WINDOWS%]\remotewatch.INI
[%COMMON_STARTUP%]\remotewatch.lnk
[%PROGRAM_FILES%]\remotewatch\remotewatch.exe
[%PROGRAM_FILES%]\remotewatch\unins000.dat
[%PROGRAM_FILES%]\remotewatch\unins000.exe
[%WINDOWS%]\remotewatch.INI

RemoteWatch Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\remotewatch_is1

RemoteWatch Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing RemoteWatch:

you can run trial version of ExterminateIt, or remove RemoteWatch manually.


To completely manually remove RemoteWatch malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RemoteWatch.


Read also:
Bancos.HCB Trojan Removal instruction
wh.crew.Spy RAT Information
Removing IROffer.b01 Backdoor

Pigeon.ENY Trojan

Click here to remove Pigeon.ENY malware
Pigeon.ENY description:
Pigeon.ENY Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.ENY:

you can run trial version of ExterminateIt, or remove Pigeon.ENY manually.


To completely manually remove Pigeon.ENY malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.ENY.


Read also:
Remove Bancos.GJG Trojan
Bancos.GTF Trojan Symptoms
Removing Middle Trojan
Remove Preferences.com Tracking Cookie
Removing Search.Assistant Adware

OC.gro4 Trojan

Click here to remove OC.gro4 malware
OC.gro4 description:
OC.gro4 Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing OC.gro4:

you can run trial version of ExterminateIt, or remove OC.gro4 manually.


To completely manually remove OC.gro4 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with OC.gro4.


Read also:
Pigeon.AEX Trojan Cleaner
Downloader.DUB Trojan Symptoms
SrchUpdt Adware Information

Haifa Trojan

Click here to remove Haifa malware
Haifa description:
Haifa Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Trojans-downloaders downloads and installs new malware or adware on the computer.

DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Haifa:

you can run trial version of ExterminateIt, or remove Haifa manually.


To completely manually remove Haifa malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Haifa.


Read also:
Spool Trojan Removal

Friday, January 23, 2009

Win32.StartPage.kk Trojan

Click here to remove Win32.StartPage.kk malware
Win32.StartPage.kk description:
Win32.StartPage.kk Category:Trojan,Hijacker
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Hijackers take control of various parts of your web browser, including your home page,
search pages, and search bar. They may also redirect you to certain sites should you
mistype an address or prevent you from going to a website they would rather you not,
such as sites that combat malware. Some will even redirect you to their own search engine
when you attempt a search.

Removing Win32.StartPage.kk:

you can run trial version of ExterminateIt, or remove Win32.StartPage.kk manually.


To completely manually remove Win32.StartPage.kk malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.StartPage.kk.


Read also:
Netrun.A!downloader Trojan Information
Podcast.Bar.Mini Trojan Symptoms
Remove OmniSux.pl DoS
Silencer Trojan Removal
Perl.Shellbot Trojan Removal instruction

TrojanDownloader.Win32.Hatcher Trojan

Click here to remove TrojanDownloader.Win32.Hatcher malware
TrojanDownloader.Win32.Hatcher description:
TrojanDownloader.Win32.Hatcher Category:Trojan,Downloader
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Trojans-downloaders downloads and installs new malware or adware on the computer.

Removing TrojanDownloader.Win32.Hatcher:

you can run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Hatcher manually.


To completely manually remove TrojanDownloader.Win32.Hatcher malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Hatcher.


Read also:
Bat.Tiny Trojan Removal
Remove Netrun.A!downloader Trojan
Pigeon.AXN Trojan Removal

WinEggDrop.Online.Keylogger Trojan

Click here to remove WinEggDrop.Online.Keylogger malware
WinEggDrop.Online.Keylogger description:
WinEggDrop.Online.Keylogger Category:Trojan,Spyware
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.

Removing WinEggDrop.Online.Keylogger:

you can run trial version of ExterminateIt, or remove WinEggDrop.Online.Keylogger manually.


To completely manually remove WinEggDrop.Online.Keylogger malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WinEggDrop.Online.Keylogger.


Read also:
Libie Trojan Information

Likha Trojan

Click here to remove Likha malware
Likha description:
Likha Category:Trojan,Backdoor,Downloader,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Trojans-downloaders downloads and installs new malware or adware on the computer.

DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Likha:

you can run trial version of ExterminateIt, or remove Likha manually.


To completely manually remove Likha malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Likha.


Read also:
Remove ARCV Trojan
Win32.SubSearch Trojan Removal
Pigeon.ACJ Trojan Removal instruction
Bancos.CYP Trojan Symptoms

Bat.Zor Trojan

Click here to remove Bat.Zor malware
Bat.Zor description:
Bat.Zor Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Trojans-downloaders downloads and installs new malware or adware on the computer.

DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Bat.Zor:

you can run trial version of ExterminateIt, or remove Bat.Zor manually.


To completely manually remove Bat.Zor malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bat.Zor.


Read also:
Downloader.AYN Downloader Removal instruction
secure.res.com Tracking Cookie Removal
Removing Win32.VB.at Trojan
wh.crew.Spy RAT Information

Antitime RAT

Click here to remove Antitime malware
Antitime description:
Antitime Category:RAT
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Removing Antitime:

you can run trial version of ExterminateIt, or remove Antitime manually.


To completely manually remove Antitime malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Antitime.


Read also:
Bancos.HQS Trojan Information
Remove Vxidl.AWU Trojan
Vxidl.ALD Trojan Removal instruction

SillyDl.CLX Trojan

Click here to remove SillyDl.CLX malware
SillyDl.CLX description:
SillyDl.CLX Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing SillyDl.CLX:

you can run trial version of ExterminateIt, or remove SillyDl.CLX manually.


To completely manually remove SillyDl.CLX malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.CLX.


Read also:
Remove Keylogger Trojan

Friend.Greeting Adware

Click here to remove Friend.Greeting malware
Friend.Greeting description:
Friend.Greeting Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Removing Friend.Greeting:

you can run trial version of ExterminateIt, or remove Friend.Greeting manually.


To completely manually remove Friend.Greeting malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Friend.Greeting.


Read also:
MSConnect Adware Cleaner
Removing Pigeon.AVLU Trojan
Ealp Trojan Information
Removing Downloader.AYN Downloader

Egdi Downloader

Click here to remove Egdi malware
Egdi description:
Egdi Category:Downloader
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Removing Egdi:

you can run trial version of ExterminateIt, or remove Egdi manually.


To completely manually remove Egdi malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Egdi.


Read also:
Bancos.CYP Trojan Removal instruction

Bancos.INN Trojan

Click here to remove Bancos.INN malware
Bancos.INN description:
Bancos.INN Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Bancos.INN :

Bancos.INN Files:
[%WINDOWS%]\svc\downcompleto.txt
[%WINDOWS%]\svc\eraumavez.bat
[%WINDOWS%]\svc\downcompleto.txt
[%WINDOWS%]\svc\eraumavez.bat

Bancos.INN Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Bancos.INN:

you can run trial version of ExterminateIt, or remove Bancos.INN manually.


To completely manually remove Bancos.INN malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.INN.


Read also:
Remove Behaviour Trojan
Downloader.AYN Downloader Symptoms
Qoogler Hijacker Information

Pigeon.AEX Trojan

Click here to remove Pigeon.AEX malware
Pigeon.AEX description:
Pigeon.AEX Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AEX:

you can run trial version of ExterminateIt, or remove Pigeon.AEX manually.


To completely manually remove Pigeon.AEX malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AEX.


Read also:
Remove Win32.SubSearch Trojan
Frethog.ACP Trojan Cleaner
Remove New.Malware.as Trojan
Remove Bat.Bat Trojan
Pigeon.AJW Trojan Symptoms

Killstart Trojan

Click here to remove Killstart malware
Killstart description:
Killstart Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Killstart:

you can run trial version of ExterminateIt, or remove Killstart manually.


To completely manually remove Killstart malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Killstart.


Read also:
Removing Adware.DirectIP Adware
Remove Vxidl.BEP Trojan

Backdoor.MoSucker.plugin Trojan

Click here to remove Backdoor.MoSucker.plugin malware
Backdoor.MoSucker.plugin description:
Backdoor.MoSucker.plugin Category:Trojan,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Removing Backdoor.MoSucker.plugin:

you can run trial version of ExterminateIt, or remove Backdoor.MoSucker.plugin manually.


To completely manually remove Backdoor.MoSucker.plugin malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Backdoor.MoSucker.plugin.


Read also:
Double.Helix Backdoor Removal instruction

Thursday, January 22, 2009

Deltabar.Deltaclick BHO

Click here to remove Deltabar.Deltaclick malware
Deltabar.Deltaclick description:
Deltabar.Deltaclick Category:BHO,Toolbar
BHO (Browser Helper Object) Trojan.
The BHO waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
The method of network transport used by the attacker makes this Trojan unique.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.
Instead, this Trojan encodes the data with a simple XOR algorithm before placing it into
the data section of an ICMP ping packet." explained the company.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.

Detection Deltabar.Deltaclick :

Deltabar.Deltaclick Files:
[%SYSTEM%]\deltaclick.dll
[%WINDOWS%]\system\deltaclick.dll
[%SYSTEM%]\deltaclick.dll
[%WINDOWS%]\system\deltaclick.dll

Deltabar.Deltaclick Registry Keys:
HKEY_CLASSES_ROOT\clsid\{0fc817c2-3b45-11d4-8340-0050da825906}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{0fc817c2-3b45-11d4-8340-0050da825906}
HKEY_LOCAL_MACHINE\software\classes\clsid\{0fc817c2-3b45-11d4-8340-0050da825906}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{0fc817c2-3b45-11d4-8340-0050da825906}

Removing Deltabar.Deltaclick:

you can run trial version of ExterminateIt, or remove Deltabar.Deltaclick manually.


To completely manually remove Deltabar.Deltaclick malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Deltabar.Deltaclick.


Read also:
Remove DlSlime Trojan
CondPk Trojan Removal
Pigeon.AVRU Trojan Information
Remove Axload Downloader
Belnow Trojan Removal

Pigeon.AXN Trojan

Click here to remove Pigeon.AXN malware
Pigeon.AXN description:
Pigeon.AXN Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.AXN:

you can run trial version of ExterminateIt, or remove Pigeon.AXN manually.


To completely manually remove Pigeon.AXN malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AXN.


Read also:
Win32.Boredom Trojan Removal
Startpage.AN!downloader Trojan Cleaner
Bizdup Trojan Information
VBS.Generator Worm Information

Pigeon.DZR Trojan

Click here to remove Pigeon.DZR malware
Pigeon.DZR description:
Pigeon.DZR Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.DZR:

you can run trial version of ExterminateIt, or remove Pigeon.DZR manually.


To completely manually remove Pigeon.DZR malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.DZR.


Read also:
Win32.Boredom Trojan Removal instruction
wh.crew.Spy RAT Cleaner
IRC.Lawa Trojan Symptoms
Suriv.Xuxa Trojan Removal instruction

Unke339 Trojan

Click here to remove Unke339 malware
Unke339 description:
Unke339 Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Unke339:

you can run trial version of ExterminateIt, or remove Unke339 manually.


To completely manually remove Unke339 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Unke339.


Read also:
Lopdotcom Tracking Cookie Removal instruction
Elephant2 Trojan Cleaner

Vxidl.AMH Trojan

Click here to remove Vxidl.AMH malware
Vxidl.AMH description:
Vxidl.AMH Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.AMH:

you can run trial version of ExterminateIt, or remove Vxidl.AMH manually.


To completely manually remove Vxidl.AMH malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AMH.


Read also:
Jakposh Trojan Removal instruction

SpywareKnight (SpySoldier) Ransomware

Click here to remove SpywareKnight (SpySoldier) malware
SpywareKnight (SpySoldier) description:
SpywareKnight (SpySoldier) Category:Ransomware
The term ransomware is commonly used to describe such software,
although the field known as cryptovirology predates the term "ransomware".

This type of ransom attack can be accomplished by (for example) attaching
a specially crafted file/program to an e-mail message and sending this to the victim.

Detection SpywareKnight (SpySoldier) :

SpywareKnight (SpySoldier) Files:
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\SpywareKnight.lnk
[%SYSTEM%]\asgp32.dll
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\SpywareKnight.lnk
[%SYSTEM%]\asgp32.dll

SpywareKnight (SpySoldier) Folders:
[%COMMON_PROGRAMS%]\SpywareKnight
[%LOCAL_APPDATA%]\SpySoldier
[%LOCAL_APPDATA%]\SpywareKnight
[%PROGRAM_FILES%]\SpywareKnight

SpywareKnight (SpySoldier) Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{6944D481-DD3D-4252-8992-EBAC37788EB3}
HKEY_CLASSES_ROOT\CLSID\{82B07A2B-F0AF-45FC-BE44-18D83B01EAD9}
HKEY_CLASSES_ROOT\CLSID\{FA5B9933-1AE8-4A8D-9822-B20A6CA2B5EC}
HKEY_CURRENT_USER\Software\SpySoldier
HKEY_CURRENT_USER\Software\SpywareKnight
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6944D481-DD3D-4252-8992-EBAC37788EB3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82B07A2B-F0AF-45FC-BE44-18D83B01EAD9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FA5B9933-1AE8-4A8D-9822-B20A6CA2B5EC}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpywareKnight_is1

Removing SpywareKnight (SpySoldier):

you can run trial version of ExterminateIt, or remove SpywareKnight (SpySoldier) manually.


To completely manually remove SpywareKnight (SpySoldier) malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SpywareKnight (SpySoldier).


Read also:
PSW.Lmir.gx Trojan Cleaner
Removing Pigeon.AVDB Trojan
Remove Wisconsin Trojan
Removing Bancos.GIM Trojan
Remove Requester Trojan

Phishbank.ANK Trojan

Click here to remove Phishbank.ANK malware
Phishbank.ANK description:
Phishbank.ANK Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Phishbank.ANK:

you can run trial version of ExterminateIt, or remove Phishbank.ANK manually.


To completely manually remove Phishbank.ANK malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Phishbank.ANK.


Read also:
Bat.Tiny Trojan Information
Micro.DoT.MMer Hacker Tool Cleaner
Remove NetSonic Adware

WormTrojan Trojan

Click here to remove WormTrojan malware
WormTrojan description:
WormTrojan Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing WormTrojan:

you can run trial version of ExterminateIt, or remove WormTrojan manually.


To completely manually remove WormTrojan malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WormTrojan.


Read also:
War.Machine DoS Symptoms
Removing SillyDl.CPD Trojan

Bat.FormatD Trojan

Click here to remove Bat.FormatD malware
Bat.FormatD description:
Bat.FormatD Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bat.FormatD:

you can run trial version of ExterminateIt, or remove Bat.FormatD manually.


To completely manually remove Bat.FormatD malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bat.FormatD.


Read also:
Vxidl.ADF Trojan Removal
Backdoor.Assasin.Serverstub Trojan Removal
VBS.Generator Worm Removal instruction
Remove RVC Trojan
SillyDl.CPB Trojan Removal instruction

InstallVivid Trojan

Click here to remove InstallVivid malware
InstallVivid description:
InstallVivid Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing InstallVivid:

you can run trial version of ExterminateIt, or remove InstallVivid manually.


To completely manually remove InstallVivid malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with InstallVivid.


Read also:
Silentframe Hostile Code Removal instruction

Vxidl.AYK Trojan

Click here to remove Vxidl.AYK malware
Vxidl.AYK description:
Vxidl.AYK Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.AYK:

you can run trial version of ExterminateIt, or remove Vxidl.AYK manually.


To completely manually remove Vxidl.AYK malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AYK.


Read also:
Warezov Worm Removal instruction
Win32.DoS.Hallenger DoS Symptoms
SillyDl.CVJ Trojan Removal instruction
Delf.mr Backdoor Removal instruction

SkamWerks.Labs Trojan

Click here to remove SkamWerks.Labs malware
SkamWerks.Labs description:
SkamWerks.Labs Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing SkamWerks.Labs:

you can run trial version of ExterminateIt, or remove SkamWerks.Labs manually.


To completely manually remove SkamWerks.Labs malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SkamWerks.Labs.


Read also:
Remove Cotmonger Trojan
Vxidl.AGW Trojan Removal
Vxidl.ABL Trojan Information
Bancos.GTF Trojan Symptoms

Norio Trojan

Click here to remove Norio malware
Norio description:
Norio Category:Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Removing Norio:

you can run trial version of ExterminateIt, or remove Norio manually.


To completely manually remove Norio malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Norio.


Read also:
Removing Pigeon.EHG Trojan
QFile5 Trojan Symptoms
PSW.Lmir.gx Trojan Cleaner

Wednesday, January 21, 2009

Fusion Backdoor

Click here to remove Fusion malware
Fusion description:
Fusion Category:Backdoor
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing Fusion:

you can run trial version of ExterminateIt, or remove Fusion manually.


To completely manually remove Fusion malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Fusion.


Read also:
Spool Trojan Information
Pigeon.AVIC Trojan Information
TrojanSpy.Win32.MiniKeyLog Trojan Removal
Ehg.samsungusa.hitbox Tracking Cookie Cleaner
Roadside.Software RAT Symptoms

NetSonic Adware

Click here to remove NetSonic malware
NetSonic description:
NetSonic Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Detection NetSonic :

NetSonic Files:
[%COMMON_PROGRAMS%]\NetSonic\NetSonic.lnk
[%COMMON_PROGRAMS%]\NetSonic\Readme.lnk
[%COMMON_PROGRAMS%]\NetSonic\UnInstall NetSonic.lnk
[%COMMON_STARTUP%]\NetSonic.lnk
[%DESKTOP%]\NetSonic\netsonic.rar
[%PROFILE%]\Recent\netsonic.rar.lnk
[%STARTUP%]\netsonic.lnk
[%WINDOWS%]\NetSonic.w3k
[%WINDOWS%]\netsoniccleanup.exe
[%COMMON_PROGRAMS%]\NetSonic\NetSonic.lnk
[%COMMON_PROGRAMS%]\NetSonic\Readme.lnk
[%COMMON_PROGRAMS%]\NetSonic\UnInstall NetSonic.lnk
[%COMMON_STARTUP%]\NetSonic.lnk
[%DESKTOP%]\NetSonic\netsonic.rar
[%PROFILE%]\Recent\netsonic.rar.lnk
[%STARTUP%]\netsonic.lnk
[%WINDOWS%]\NetSonic.w3k
[%WINDOWS%]\netsoniccleanup.exe

NetSonic Folders:
[%PROGRAMS%]\netsonic
[%PROGRAM_FILES%]\netsonic

NetSonic Registry Keys:
HKEY_CURRENT_USER\software\web3000.com
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\netsonic

Removing NetSonic:

you can run trial version of ExterminateIt, or remove NetSonic manually.


To completely manually remove NetSonic malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with NetSonic.


Read also:
Removing Mosucker Trojan
Backdoor.Osirdoor Backdoor Removal
TSC Trojan Removal
Remove Super.Dial Adware
Win32.SubSearch Trojan Information