Sunday, October 26, 2008

MenaceRescue Ransomware

How To Remove Remove MenaceRescue?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
MenaceRescue is dangerous virus:
A cryptovirus, cryptotrojan or cryptoworm is a type of
malware that encrypts the data belonging to an individual on a computer,
demanding a ransom for its restoration.

The term ransomware is commonly used to describe software that encrypts the data
belonging to an individual on a computer, demanding a ransom for its restoration.
Although the field known as cryptovirology predates the term "ransomware".


MenaceRescue Symptoms:

Files:
[%PROGRAM_FILES%]\MenaceRescue\pgs.exe
[%PROGRAM_FILES%]\MenaceRescue\pgs.exe

Folders:
[%APPDATA%]\MenaceRescue
[%COMMON_PROGRAMS%]\MenaceRescue
[%PROGRAM_FILES%]\MenaceRescue
[%PROGRAM_FILES_COMMON%]\MenaceRescue

Registry Keys:
HKEY_CLASSES_ROOT\AppID\PopupG.DLL
HKEY_CLASSES_ROOT\AppID\{7F7775D5-1EC8-4c0d-9BD7-6F3380959861}
HKEY_CLASSES_ROOT\AVPGIntegrator.IEIntegrator
HKEY_CLASSES_ROOT\AVPGIntegrator.IEIntegrator.1
HKEY_CLASSES_ROOT\CLSID\{C4514FE1-54AA-42f0-B212-BA8065206F8F}
HKEY_CLASSES_ROOT\CLSID\{D3B4C621-6024-410B-9F0F-22CBD6981F5E}
HKEY_CLASSES_ROOT\G.Object
HKEY_CLASSES_ROOT\G.Object.1
HKEY_CLASSES_ROOT\Interface\{D961C9CA-59B3-46DD-9CEE-47714CFE2831}
HKEY_CLASSES_ROOT\TypeLib\{55B49019-E69E-47FD-A67F-F28D83E5B695}
HKEY_CLASSES_ROOT\TypeLib\{7F7775D5-1EC8-4C0D-9BD7-6F3380959861}
HKEY_CURRENT_USER\SOFTWARE\MenaceRescue
HKEY_LOCAL_MACHINE\SOFTWARE\MenaceRescue
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\UGA6P_is1
HKEY_LOCAL_MACHINE\SOFTWARE\uga6pcw
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_FOPF
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FOPF

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Removing Istbar.dr Downloader
NetHack RAT Symptoms
SillyDl.DKZ Downloader Information
Win32.TrojanDropper.Small Trojan Removal
SillyDl.CJM Downloader Information

No comments: