Saturday, November 15, 2008

Zlob.Fam.XPasswordManager Trojan

How To Remove Zlob.Fam.XPasswordManager?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Zlob.Fam.XPasswordManager is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Adware is the class of programs that place advertisements on your screen.
These may be in the form of pop-ups, pop-unders, advertisements embedded in programs,
advertisements placed on top of ads in web sites, or any other way the authors can
think of showing you an ad.

The pop-ups generally will not be stopped by pop-up stoppers, and often are
not dependent on your having Internet Explorer open.
They may show up when you are playing a game, writing a document, listening to music,
or anything else. Should you be surfing, the advertisements will often be related to
the web page you are viewing.


Zlob.Fam.XPasswordManager Symptoms:

Files:
[%PROGRAM_FILES%]\X Password Manager\uninst.exe
[%PROGRAM_FILES%]\X Password Manager\X Password Manager.url
[%PROGRAM_FILES%]\X Password Manager\xpassmanager.exe.manifest
[%PROGRAM_FILES%]\X Password Manager\uninst.exe
[%PROGRAM_FILES%]\X Password Manager\X Password Manager.url
[%PROGRAM_FILES%]\X Password Manager\xpassmanager.exe.manifest

Folders:
[%PROGRAM_FILES%]\X Password Manager

Registry Keys:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\X Password Manager


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Bancos.IGX Trojan

Cidra Trojan

How To Remove Cidra?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Cidra is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.


Cidra It also known as:

[Panda]Bck/Cidra.A;
[Computer Associates]Win32/Cidra!Proxy!Trojan,Win32.Cadejar

Cidra Symptoms:

Folders:
[%WINDOWS%]\winskw

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{c5941ee5-6dfa-11d8-86b0-0002441a9695}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\ext\stats\{83de62e0-5805-11d8-9b25-00e04c60faf2}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
CWS.AFF.MadFinder Hijacker Cleaner

Washdbot Trojan

How To Remove Washdbot?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Washdbot is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


Washdbot Symptoms:

Files:
[%SYSTEM%]\1953582061.dat
[%SYSTEM%]\muih.exe
[%SYSTEM%]\1953582061.dat
[%SYSTEM%]\muih.exe

Registry Keys:
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\eventlogcryptsvc


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Removing MediaCodec Trojan
Personal.Inspector Spyware Cleaner
Lemmy BHO Symptoms
Zoih Trojan Symptoms
Remove Renos Trojan

Bancos.HKW Trojan

How To Remove Bancos.HKW?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Bancos.HKW is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


Bancos.HKW It also known as:

[Kaspersky]Trojan-Spy.Win32.Bancos.zf;
[Other]Win32/Bancos.HKW,W32/Bancos.OVL,Infostealer.Bancos

Bancos.HKW Symptoms:

Files:
[%SYSTEM%]\warning.exe
[%SYSTEM%]\warning.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Pigeon.ENA Trojan Removal
Removing Lanzardll.exe Adware
Dynamic.Desktop.Media Trojan Removal
Watching Trojan Removal

TrojanDropper.Win32.Siboco Trojan

How To Remove TrojanDropper.Win32.Siboco?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
TrojanDropper.Win32.Siboco is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


TrojanDropper.Win32.Siboco It also known as:

[Panda]Trj/Siboco.A

TrojanDropper.Win32.Siboco Symptoms:

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Stealther Trojan Symptoms
Removing ZapSpot Adware
Remove W95.Marburg Trojan

GamesBar Adware

How To Remove GamesBar?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
GamesBar is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.

GamesBar Symptoms:

Files:
[%PROGRAM_FILES%]\GamesBar\oberontb.dll
[%PROGRAM_FILES%]\GamesBar\oberontb.dll

Folders:
[%PROGRAM_FILES%]\GamesBar

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{6F282B65-56BF-4BD1-A8B2-A4449A05863D}

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Dialscript Adware Cleaner
WebDir Adware Removal instruction
Dimbus Backdoor Removal
Removing Society Trojan

SillyDL.4PW Trojan

How To Remove SillyDL.4PW?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
SillyDL.4PW is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


SillyDL.4PW Symptoms:

Files:
[%SYSTEM%]\start32.exe
[%WINDOWS%]\p2hhr.bat
[%WINDOWS%]\soso3.exe
[%SYSTEM%]\start32.exe
[%WINDOWS%]\p2hhr.bat
[%WINDOWS%]\soso3.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Tactslay Trojan
Remove Bancos.IBT Trojan

Small.sy Downloader

How To Remove Small.sy?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Small.sy is dangerous virus:
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.


Small.sy Symptoms:

Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\extensions\{a26abcf0-1c8f-46e7-a67c-0489dc21b9cc}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
SillyDl.AYH Downloader Removal instruction
Backdoor.LegendMir Trojan Removal instruction
Removing CWS.DNSRelay Hijacker
Removing CWS.OEMSysPNP Hijacker

Brunme Trojan

How To Remove Brunme?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Brunme is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


Brunme It also known as:

[Kaspersky]AdWare.Win32.BHO.ah,AdWare.Win32.BHO.n;
[McAfee]Brunme;
[Other]HotWebFinder.BHO,trojan-downloader-terula,Win32/Brunme.G,Win32/Brunme.F,Win32/Brunme.I

Brunme Symptoms:

Files:
[%PROGRAM_FILES%]\Internet Explorer\update.exe
[%PROGRAM_FILES%]\Internet Explorer\winbrume.dat
[%SYSTEM%]\winbrume.dll
[%PROGRAM_FILES%]\Internet Explorer\update.exe
[%PROGRAM_FILES%]\Internet Explorer\winbrume.dat
[%SYSTEM%]\winbrume.dll

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{196b9cb5-4c83-46f7-9b06-9672ecd9d99b}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{196b9cb5-4c83-46f7-9b06-9672ecd9d99b}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Reg.Sort Ransomware Cleaner
Loadwin.exe Trojan Information
Removing Free.Spy.Keylogger Spyware
Remove SillyDl.DBO Trojan
Riviera.Gold.Casino Adware Removal

Henbang Trojan

How To Remove Henbang?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Henbang is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


Henbang It also known as:

[Kaspersky]Adware.Win32.Henbang.r,AdWare.Win32.Hengbang.s,AdWare.Win32.Henbang.q,AdWare.Win32.Henbang.p,AdWare.Win32.Henbang.t;
[McAfee]Adware-Henbang;
[Other]Adware.Henbang

Henbang Symptoms:

Files:
[%DESKTOP%]\henbang secretary.lnk
[%PROFILE%]\start menu\henbang secretary.lnk
[%PROFILE_TEMP%]\hdp\adoc.txt
[%PROGRAMS%]\henbang secretary\henbang secretary.lnk
[%PROGRAMS%]\henbang secretary\readme.lnk
[%SYSTEM%]\drivers\khdap.sys
[%SYSTEM%]\drivers\madbp.sys
[%SYSTEM%]\drivers\pupw.sys
[%SYSTEM%]\drivers\ustqilnr.sys
[%SYSTEM%]\hap.dll
[%SYSTEM%]\hbcf.ini
[%SYSTEM%]\hber.ini
[%SYSTEM%]\hbhap.dll
[%SYSTEM%]\hbhsy.ini
[%SYSTEM%]\hbu.ini
[%SYSTEM%]\hda.ini
[%SYSTEM%]\hdp.ini
[%SYSTEM%]\hdpconfig.ini
[%SYSTEM%]\hsy.ini
[%SYSTEM%]\popcounts.ini
[%SYSTEM%]\unregister.ini
[%SYSTEM%]\webad.dll
[%SYSTEM%]\winhtp.dll
[%WINDOWS%]\hb24065.log
[%WINDOWS%]\hbsetup.log
[%WINDOWS%]\hburl.ini
[%WINDOWS%]\henbang.INI
[%WINDOWS%]\hunt.dll
[%DESKTOP%]\henbang secretary.lnk
[%PROFILE%]\start menu\henbang secretary.lnk
[%PROFILE_TEMP%]\hdp\adoc.txt
[%PROGRAMS%]\henbang secretary\henbang secretary.lnk
[%PROGRAMS%]\henbang secretary\readme.lnk
[%SYSTEM%]\drivers\khdap.sys
[%SYSTEM%]\drivers\madbp.sys
[%SYSTEM%]\drivers\pupw.sys
[%SYSTEM%]\drivers\ustqilnr.sys
[%SYSTEM%]\hap.dll
[%SYSTEM%]\hbcf.ini
[%SYSTEM%]\hber.ini
[%SYSTEM%]\hbhap.dll
[%SYSTEM%]\hbhsy.ini
[%SYSTEM%]\hbu.ini
[%SYSTEM%]\hda.ini
[%SYSTEM%]\hdp.ini
[%SYSTEM%]\hdpconfig.ini
[%SYSTEM%]\hsy.ini
[%SYSTEM%]\popcounts.ini
[%SYSTEM%]\unregister.ini
[%SYSTEM%]\webad.dll
[%SYSTEM%]\winhtp.dll
[%WINDOWS%]\hb24065.log
[%WINDOWS%]\hbsetup.log
[%WINDOWS%]\hburl.ini
[%WINDOWS%]\henbang.INI
[%WINDOWS%]\hunt.dll

Folders:
[%COMMON_PROGRAMS%]\ºÜ°ôÈí¼þ
[%PROGRAMS%]\ºÜ°ôÈí¼þ
[%PROGRAM_FILES%]\HBClient
[%PROGRAM_FILES%]\Henbang Applications

Registry Keys:
HKEY_CLASSES_ROOT\browserassistant.browserhap
HKEY_CLASSES_ROOT\browserassistant.browserhap.1
HKEY_CLASSES_ROOT\clsid\{038318e8-0c2d-4df5-a7af-b4fb373f501e}
HKEY_CLASSES_ROOT\clsid\{2d6f6bff-1796-4779-9ba3-5f20f17e5cea}
HKEY_CLASSES_ROOT\clsid\{3ed9ffda-79db-4b2d-99b7-16ea3c4a3a92}
HKEY_CLASSES_ROOT\clsid\{616d4040-5712-4f0f-bcf1-5c6420a99e14}
HKEY_CLASSES_ROOT\clsid\{ae22afe5-1ef4-4d25-9e23-d2825fb17da1}
HKEY_CLASSES_ROOT\clsid\{aef6f648-78d8-4456-bee7-5ade23d209fd}
HKEY_CLASSES_ROOT\downloadstart.downloadvalue
HKEY_CLASSES_ROOT\downloadstart.downloadvalue.1
HKEY_CLASSES_ROOT\hbhelper.hbactivex
HKEY_CLASSES_ROOT\hbhelper.hbactivex.1
HKEY_CLASSES_ROOT\hbhelper.hbobject
HKEY_CLASSES_ROOT\hbhelper.hbobject.1
HKEY_CLASSES_ROOT\interface\{03cdc6b3-5bc5-4cf4-a0f8-78f7d2a68039}
HKEY_CLASSES_ROOT\interface\{1363f829-37f1-4763-9fba-e8bb564d95ee}
HKEY_CLASSES_ROOT\interface\{71246576-0183-4c11-af74-d377ec2209c4}
HKEY_CLASSES_ROOT\interface\{cf1c62e9-ac73-4647-a99c-d2213ffda728}
HKEY_CLASSES_ROOT\interface\{ef991b92-4308-454c-94bb-e0322a511bab}
HKEY_CLASSES_ROOT\monitor.urlmonitor
HKEY_CLASSES_ROOT\monitor.urlmonitor.1
HKEY_CLASSES_ROOT\typelib\{01fbe0ba-8fdf-4360-8af3-a931ff140cd2}
HKEY_CLASSES_ROOT\typelib\{25e5e3d6-0c5c-44bd-a4be-7a1c1285d1bb}
HKEY_CLASSES_ROOT\typelib\{315a06d6-fca7-45ea-b77d-ee7b90041224}
HKEY_CLASSES_ROOT\typelib\{ae9c1b10-c380-4363-8620-7c6311169baa}
HKEY_CLASSES_ROOT\typelib\{b58a1efb-3dee-4493-93b9-4de3f99c8aee}
HKEY_CLASSES_ROOT\xpwindow.xwindow
HKEY_CLASSES_ROOT\xpwindow.xwindow.1
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\ext\stats\{3ed9ffda-79db-4b2d-99b7-16ea3c4a3a92}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\ext\stats\{616d4040-5712-4f0f-bcf1-5c6420a99e14}
HKEY_CURRENT_USER\software\microsoft\windows\shellnoroam\muicache\[%PROGRAM_FILES%]\hbclient
HKEY_CURRENT_USER\software\microsoft\windows\shellnoroam\muicache\[%PROGRAM_FILES%]\henban~1\hdp
HKEY_LOCAL_MACHINE\software\hap
HKEY_LOCAL_MACHINE\software\hdp
HKEY_LOCAL_MACHINE\software\henbang applications
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{3ed9ffda-79db-4b2d-99b7-16ea3c4a3a92}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{616d4040-5712-4f0f-bcf1-5c6420a99e14}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{ae22afe5-1ef4-4d25-9e23-d2825fb17da1}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{aef6f648-78d8-4456-bee7-5ade23d209fd}
HKEY_LOCAL_MACHINE\software\wise solutions\wise installation system\repair\[%PROGRAM_FILES%]\henbang applications\hdp\hbhdp.log\icons

Registry Values:
HKEY_CLASSES_ROOT\appid\{038318e8-0c2d-4df5-a7af-b4fb373f501e}
HKEY_CLASSES_ROOT\interface\{ee7ea3ac-3a3b-4170-abed-56e5efbfcfac}\typelib
HKEY_CURRENT_USER\software\winrar sfx
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run, helperdll=rundll32 [%SYSTEM%]\drivers\pupw.sys
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hap
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hap
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hap
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hap
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hapHKEY_CLASSES_ROOT
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hbhelper
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hbhelper
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\hbhelper
HKEY_LOCAL_MACHINE\software\richmedia


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Messenger.Blocker Ransomware
seoinc.com Tracking Cookie Symptoms
W95.Zombie Backdoor Cleaner
SpyBan Trojan Removal instruction
Banload.ap Trojan Removal

SpyAgent Spyware

How To Remove SpyAgent?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
SpyAgent is dangerous virus:
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.


SpyAgent It also known as:

[Kaspersky]Trojan.Win32.SpyAgent.a,Trojan.Win32.SpyAgent.b,Monitor.Win32.SpyAgent.60006;
[F-Prot]destructive program

SpyAgent Symptoms:

Files:
[%SYSTEM%]\sinvfct.dll
[%WINDOWS%]\sadefs.dat
[%WINDOWS%]\saopts.dat
[%WINDOWS%]\sysk32.dll
[%WINDOWS%]\systemsa32.dll
[%APPDATA%]\emopts.dat
[%COMMON_PROGRAMS%]\spyall\spyall.LNK
[%COMMON_PROGRAMS%]\Spytech SpyAgent\License EULA.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\Read me.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\Remove Spytech SpyAgent.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\SpyAgent Help Documentation.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\SpyAgent PC Surveillance.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\SpyAgent's 10 Step Guide to Total Stealth.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\Stop SpyAgent Stealth Mode.lnk
[%SYSTEM%]\sinvfct.dll
[%WINDOWS%]\sadefs.dat
[%WINDOWS%]\saopts.dat
[%WINDOWS%]\sysk32.dll
[%WINDOWS%]\systemsa32.dll
[%APPDATA%]\emopts.dat
[%COMMON_PROGRAMS%]\spyall\spyall.LNK
[%COMMON_PROGRAMS%]\Spytech SpyAgent\License EULA.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\Read me.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\Remove Spytech SpyAgent.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\SpyAgent Help Documentation.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\SpyAgent PC Surveillance.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\SpyAgent's 10 Step Guide to Total Stealth.lnk
[%COMMON_PROGRAMS%]\Spytech SpyAgent\Stop SpyAgent Stealth Mode.lnk

Folders:
[%APPDATA%]\agentss
[%PROGRAMS%]\all users\start menu\programs\spytech spyagent
[%PROGRAMS%]\spytech spyagent
[%PROGRAM_FILES%]\spyall
[%PROGRAM_FILES%]\spytech software\spyagent
[%PROGRAM_FILES%]\spytech software\spyagent professional
[%PROGRAM_FILES%]\spytech software\spytech spyagent

Registry Keys:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\spyall
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\svctask.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\spytech spyagent
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\spytech spyagent professional

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Bonzi Adware Removal instruction

RockItNet Worm

How To Remove RockItNet?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
RockItNet is dangerous virus:
Worms can be classified by installation method, launch method and finally according
to characteristics standard to all malware: polymorphism, stealth etc.

Many of the worms which managed to cause significant outbreaks use more then
one propagation method as well as more than one infection technique.



RockItNet Symptoms:

Files:
[%DESKTOP%]\RockItNet.lnk
[%STARTUP%]\Update RockItNet.lnk
[%DESKTOP%]\RockItNet.lnk
[%STARTUP%]\Update RockItNet.lnk

Folders:
[%PROGRAMS%]\RockItNet
[%PROGRAM_FILES%]\RockItNet

Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\rockitnet
HKEY_LOCAL_MACHINE\software\wise solutions\wise installation system\repair\[%PROGRAM_FILES%]\rockitnet\install.log
HKEY_LOCAL_MACHINE\software\wise solutions\wiseupdate\apps\rockitnet

Registry Values:
HKEY_LOCAL_MACHINE\software\wise solutions\wiseupdate\apppaths


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
YazzleBundle Trojan Symptoms
Removing KGB.Spy.Software Spyware
Agent.ECM Trojan Symptoms
Nuclear.0b1 Backdoor Symptoms