Thursday, December 4, 2008

Yewbmoat Trojan

How To Remove Yewbmoat?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Yewbmoat is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Yewbmoat It also known as:

[Kaspersky]Trojan-Downlaoder.Win32.Delf.azy,Bakckdoor.Win32.Small.or,Backdoor.Win32.Small.or,Trojan-Proxy.Win32.Delf.cc,Trojan-Proxy.Win32.Delf.db,Trojan-Spy.Win32.Delf.ait;
[McAfee]Multidropper-JD;
[Other]Win32/Yewbmoat.A,Win32/Yewbmoat.B,Win32/Yewbmoat,Backdoor.Sdbot,Win32/Yewbmoat.E,Win32/Yewbmoat.G,Backdoor.Trojan,Troj/Delf-EYS,BKDR_GRAYBIR.DJ

Yewbmoat Symptoms:

Files:
[%WINDOWS%]\drmclient32.dll
[%WINDOWS%]\fmideploy.exe
[%WINDOWS%]\gmflpr32.dll
[%WINDOWS%]\ntmaspi32.dll
[%WINDOWS%]\stclient.ini
[%PROFILE_TEMP%]\utislcomutil59.exe
[%WINDOWS%]\cmflpr32.dll
[%WINDOWS%]\fsclient32.dll
[%WINDOWS%]\iasrecst.exe
[%WINDOWS%]\kbdfi32.dll
[%WINDOWS%]\mcithread.dll
[%WINDOWS%]\msiutil.exe
[%WINDOWS%]\netcfgx32.exe
[%WINDOWS%]\system\lprhelp32.dll
[%WINDOWS%]\drmclient32.dll
[%WINDOWS%]\fmideploy.exe
[%WINDOWS%]\gmflpr32.dll
[%WINDOWS%]\ntmaspi32.dll
[%WINDOWS%]\stclient.ini
[%PROFILE_TEMP%]\utislcomutil59.exe
[%WINDOWS%]\cmflpr32.dll
[%WINDOWS%]\fsclient32.dll
[%WINDOWS%]\iasrecst.exe
[%WINDOWS%]\kbdfi32.dll
[%WINDOWS%]\mcithread.dll
[%WINDOWS%]\msiutil.exe
[%WINDOWS%]\netcfgx32.exe
[%WINDOWS%]\system\lprhelp32.dll

Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\intel audio studio v2.0
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\microsoft keyboard enhance v2.0
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\paradyne adsl network driver v2.3

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\runonce
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\microsoft windows visual v2.0


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
SillyDl.CKE Trojan Information
Gone Backdoor Cleaner
Remove Adware.Ezula Adware

No comments: