Friday, November 21, 2008

Minicom Trojan

How To Remove Minicom?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Minicom is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.


Minicom It also known as:

[Panda]Trojan Horse

Minicom Symptoms:

Folders:
[%PROGRAM_FILES%]\minicom

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Dan Trojan
Premium rate adult content Dialer Removal
RedHotNetworks Adware Information

Intelliflag Spyware

How To Remove Intelliflag?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Intelliflag is dangerous virus:
Spyware is computer software that is installed surreptitiously on a personal computer
to with the computer, without the user's informed consent.


Intelliflag Symptoms:

Folders:
[%PROGRAM_FILES%]\Intelliflag Content Monitor

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{be51de2e-2fa0-4451-9241-8cfe5a2f9869}
HKEY_CLASSES_ROOT\interface\{05f35aa2-d3cc-4041-890c-046e9910d6bf}
HKEY_CLASSES_ROOT\sen10l2.registration
HKEY_CLASSES_ROOT\typelib\{e3324155-5645-4d6a-b0f2-89266b291c4f}
HKEY_LOCAL_MACHINE\software\intelliflag
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\intelliflag.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\intelliflag content monitor_is1

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
MiniKeyLog Trojan Information
Remove Sexy.Hot Dialer
GhostKeyLog.dll Spyware Symptoms

OutsBot Trojan

How To Remove OutsBot?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
OutsBot is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


OutsBot It also known as:

[Kaspersky]Backdoor.Win32.Breplibot.ai,Backdoor.Win32.SirBot.a;
[Other]Win32/OutsBot.AZ,Backdoor.Naninf.E,Troj/Stinx-W,BKDR_BREPBOT.A,Win32/OutsBot.BA

OutsBot Symptoms:

Files:
[%SYSTEM%]\svchon32.exe
[%SYSTEM%]\svchon32.exe

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Removing Bancos.HAI Trojan
Flood Trojan Symptoms
WinFetcher Adware Cleaner

VB.vh Backdoor

How To Remove VB.vh?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
VB.vh is dangerous virus:
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.



VB.vh Symptoms:

Files:
[%SYSTEM%]\dll\csrss.exe
[%SYSTEM%]\dll\csrss.exe

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Banker.akx Spyware Cleaner
PersonalMoneyTree Adware Removal
BDHelper Adware Information
StartPage.xd Hijacker Symptoms

HGZ.beta RAT

How To Remove HGZ.beta?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
HGZ.beta is dangerous virus:
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.


HGZ.beta Symptoms:

Files:
[%WINDOWS%]\system\hgzserver.exe
[%WINDOWS%]\system\hgzserver.exe

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
DeskAdTop Adware Removal instruction
Generic.Dialer Adware Information
Removing Adware.Fuel Adware
Puper Trojan Cleaner
Remove Win16.AOLWar Trojan

WinUpdates.MediaGateway Adware

How To Remove WinUpdates.MediaGateway?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
WinUpdates.MediaGateway is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


WinUpdates.MediaGateway Symptoms:

Files:
[%PROFILE_TEMP%]\MediaGateway.exe
[%PROFILE_TEMP%]\MediaGateway.exe

Folders:
[%PROGRAM_FILES%]\media gateway

Registry Keys:
HKEY_CLASSES_ROOT\appid\mediagateway.exe
HKEY_CLASSES_ROOT\appid\{735c5a0c-f79f-47a1-8ca1-2a2e482662a8}
HKEY_CLASSES_ROOT\mediagateway.installer
HKEY_CLASSES_ROOT\mediagatewayx.installer
HKEY_CLASSES_ROOT\typelib\{15696ae2-6ea4-47f4-bea6-a3d32693efc7}
HKEY_LOCAL_MACHINE\software\media gateway
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:\windows\downloaded program files\mediagatewayx.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\media gateway
HKEY_CLASSES_ROOT\mediagatewayx.installer mediagatewayx.installer
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{15ad6789-cdb4-47e1-a9da-992ee8e6bad6}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]\downloaded program files\mediagatewayx.dll


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Small.amd Trojan Information
Removing Dubrundl Downloader
Removing Zlob.Fam.Video Add-on Trojan

Free.Spy.Keylogger Spyware

How To Remove Free.Spy.Keylogger?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Free.Spy.Keylogger is dangerous virus:
Spyware is computer software that is installed surreptitiously on a personal computer
to intercept or take partial control over the user's interaction
with the computer, without the user's informed consent.

While the term spyware suggests software that secretly monitors the user's behavior,
the functions of spyware extend well beyond simple monitoring.

Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.

Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.


Free.Spy.Keylogger Symptoms:

Folders:
[%COMMON_PROGRAMS%]\Free Spy Keylogger
[%PROGRAM_FILES%]\Free Spy Keylogger

Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\free spy keylogger_is1

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Banbot Trojan Information
FWN Toolbar Cleaner
Forced.Entry.Remote.System.Administration Backdoor Information
Bancos.GIM Trojan Information
Popohrand Adware Symptoms

BlueAngel Trojan

How To Remove BlueAngel?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
BlueAngel is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.


BlueAngel It also known as:

[Kaspersky]Backdoor.Blueang,Backdoor.Blueang.a,Backdoor.Blueang.b,Backdoor.Blueang.c;
[Eset]Win32/Blueang.A trojan,Win32/Blueang.B trojan,Win32/Blueang.C trojan;
[McAfee]BackDoor-AUJ;
[F-Prot]security risk or a "backdoor" program;
[Panda]Backdoor Program,Trj/HttpLogger.A;
[Computer Associates]Backdoor/Blueang.Server,Backdoor/Blueang

BlueAngel Symptoms:

Files:
[%SYSTEM%]\krnl.exe
[%SYSTEM%]\msntc.exe
[%SYSTEM%]\ntfrsprf.exe
[%SYSTEM%]\ntkrnl.exe
[%SYSTEM%]\krnl.exe
[%SYSTEM%]\msntc.exe
[%SYSTEM%]\ntfrsprf.exe
[%SYSTEM%]\ntkrnl.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Pornuven Downloader Information
downloaded Trojan Symptoms
Pigeon.AYZ Trojan Removal instruction

Meyfew Trojan

How To Remove Meyfew?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Meyfew is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.


Meyfew It also known as:

[Kaspersky]Trojan-Downloader.Win32.Tiny.ft;
[Other]Win32/Meyfew!generic

Meyfew Symptoms:

Files:
[%PROFILE_TEMP%]\iubzyp.exe
[%PROFILE_TEMP%]\iubzyp.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Reload Backdoor Removal instruction
Removing MiniBackLash Backdoor
StartPage.bx Hijacker Removal
Removing Freelancer.NOCD.Patch.Funb0y Backdoor

JustPorn Trojan

How To Remove JustPorn?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
JustPorn is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


JustPorn Symptoms:

Folders:
[%PROGRAMS%]\JustPorn
[%PROGRAM_FILES%]\JustPorn

Registry Keys:
HKEY_CLASSES_ROOT\justporn
HKEY_CURRENT_USER\software\justporn
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\justporn


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Roings.com Adware Symptoms
Ashlt Spyware Cleaner
Bancos.HFT Trojan Removal
Zlob.Fam.SuperCodec Trojan Information
Small.iz Trojan Removal instruction

Hoolaxy Trojan

How To Remove Hoolaxy?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Hoolaxy is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Hoolaxy It also known as:

[Other]Win32/Hoolaxy

Hoolaxy Symptoms:

Files:
[%SYSTEM%]\alxklt.dll
[%SYSTEM%]\apputs_ga.log
[%SYSTEM%]\ppgaxea.dll
[%SYSTEM%]\setuts_hr.log
[%SYSTEM%]\alxklt.dll
[%SYSTEM%]\apputs_ga.log
[%SYSTEM%]\ppgaxea.dll
[%SYSTEM%]\setuts_hr.log

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run
HKEY_LOCAL_MACHINE\software\power\service
HKEY_LOCAL_MACHINE\software\power\service


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Plzinor Trojan Removal
CMD Backdoor Removal instruction
SexoBFAX Adware Information

ZebraAntivirus Ransomware

How To Remove ZebraAntivirus?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
ZebraAntivirus is dangerous virus:
A cryptovirus, cryptotrojan or cryptoworm is a type of
malware that encrypts the data belonging to an individual on a computer,
demanding a ransom for its restoration.

The term ransomware is commonly used to describe software that encrypts the data
belonging to an individual on a computer, demanding a ransom for its restoration.
Although the field known as cryptovirology predates the term "ransomware".


ZebraAntivirus Symptoms:

Files:
[%COMMON_DESKTOPDIRECTORY%]\ZebraAntiVirus.lnk
[%PROFILE_TEMP%]\NI.UGA6P_0001_N122M2210\settings.ini
[%PROFILE_TEMP%]\NI.UGA6P_0001_N122M2210\setup.exe
[%PROFILE_TEMP%]\NI.UGA6P_0001_N122M2210\setup.len
[%COMMON_DESKTOPDIRECTORY%]\ZebraAntiVirus.lnk
[%PROFILE_TEMP%]\NI.UGA6P_0001_N122M2210\settings.ini
[%PROFILE_TEMP%]\NI.UGA6P_0001_N122M2210\setup.exe
[%PROFILE_TEMP%]\NI.UGA6P_0001_N122M2210\setup.len

Folders:
[%APPDATA%]\ZebraAntiVirus
[%COMMON_PROGRAMS%]\ZebraAntiVirus
[%PROGRAM_FILES%]\ZebraAntiVirus
[%PROGRAM_FILES_COMMON%]\ZebraAntiVirus

Registry Keys:
HKEY_CURRENT_USER\software\zebraantivirus
HKEY_LOCAL_MACHINE\software\zebraantivirus

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\products
HKEY_LOCAL_MACHINE\software\products


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Ginwui Trojan
Remove Ranky.du Trojan

SilentCaller Trojan

How To Remove SilentCaller?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
SilentCaller is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


SilentCaller It also known as:

[Kaspersky]Trojan.win32.Dialer.qy,Trojan.Win32.Dialer.ay,Porn-Dialer.Win32.GBDialer.i,Porn-Dialer.Win32.GBDialer.d;
[McAfee]QDial-46,Dialer-257;
[F-Prot]W32/Tagen.B;
[Panda]Trojan Horse;
[Computer Associates]Win32/SilentCaller.B!Trojan;
[Other]Win32/SilentCaller.Z,Dialer.Kotu,W32/Dialer.gen5,Dialer.DialPlatform,Win32/SilentCaller.V,Dialer.DialerPlatform

SilentCaller Symptoms:

Files:
[%PROFILE_TEMP%]\ma1x1dd1v.game
[%PROFILE_TEMP%]\ma1x1ddv.game
[%SYSTEM%]\max1d11643v.exe
[%SYSTEM%]\max1d164v.exe
[%SYSTEM%]\npdl.exe
[%WINDOWS%]\downloaded program files\conflict.1\geoscp3x.exe
[%WINDOWS%]\downloaded program files\conflict.2\geoscp3x.exe
[%PROFILE_TEMP%]\ma1x1dd1v.game
[%PROFILE_TEMP%]\ma1x1ddv.game
[%SYSTEM%]\max1d11643v.exe
[%SYSTEM%]\max1d164v.exe
[%SYSTEM%]\npdl.exe
[%WINDOWS%]\downloaded program files\conflict.1\geoscp3x.exe
[%WINDOWS%]\downloaded program files\conflict.2\geoscp3x.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove SillyDl.DPI Downloader
Hoolaxy Trojan Symptoms
Small.kz Trojan Cleaner
SillyDl.CBP Trojan Cleaner

iChoose BHO

How To Remove iChoose?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
iChoose is dangerous virus:
The BHO (Browser Helper Object) waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
Hijackers take control of various parts of your web browser, including your home page,
search pages, and search bar. They may also redirect you to certain sites should you
mistype an address or prevent you from going to a website they would rather you not,
such as sites that combat malware. Some will even redirect you to their own search engine
when you attempt a search.


iChoose Symptoms:

Files:
[%SYSTEM%]\bpieclient.dll
[%WINDOWS%]\system\bpieclient.dll
[%SYSTEM%]\bpieclient.dll
[%WINDOWS%]\system\bpieclient.dll

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{b40a6610-1d16-11d3-80b2-005004994da2}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{b40a6610-1d16-11d3-80b2-005004994da2}
HKEY_LOCAL_MACHINE\software\classes\clsid\{b40a6610-1d16-11d3-80b2-005004994da2}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{b40a6610-1d16-11d3-80b2-005004994da2}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
iconinstaller Trojan Cleaner
Bancos.HYX Trojan Removal
Removing Morpheus Adware
SpywareSweeper Ransomware Cleaner

Win32.Bizten.gen Trojan

How To Remove Win32.Bizten.gen?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Win32.Bizten.gen is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Hijackers take control of various parts of your web browser, including your home page,
search pages, and search bar. They may also redirect you to certain sites should you
mistype an address or prevent you from going to a website they would rather you not,
such as sites that combat malware. Some will even redirect you to their own search engine
when you attempt a search.


Win32.Bizten.gen It also known as:

[Panda]Trj/StartPage.gen

Win32.Bizten.gen Symptoms:

Files:
[%PROGRAM_FILES%]\internet explorer\ieeng.exe
[%STARTUP%]\winlgn.exe
[%WINDOWS%]\dllhlp.exe
[%PROGRAM_FILES%]\internet explorer\ieeng.exe
[%STARTUP%]\winlgn.exe
[%WINDOWS%]\dllhlp.exe

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
SearchPack Adware Removal
Remove Win32.Scapur Trojan

BAT.SMF Trojan

How To Remove BAT.SMF?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
BAT.SMF is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


BAT.SMF It also known as:

[Kaspersky]BAT.MF.b,BAT.SMF.b,BAT.SMF.d;
[Eset]BAT/102 virus,BAT/SMF.120.A virus,BAT/SMF.121.A virus,BAT/SMF.137.A virus,BAT/SMF.155.A virus,BAT/SMF.166.A virus;
[Panda]BAT/BAT91.A,Univ.EP,BAT/SMF.137,BAT/SMF.155,BAT/SMF.166;
[Computer Associates]Bat/SMF.102,Bat/SMF.120,Bat/SMF.137,Bat/SMF.155

BAT.SMF Symptoms:

Files:
[%PROGRAM_FILES%]\support software\ss2.dll
[%PROGRAM_FILES%]\support software\ss2.dll


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Small.bz Downloader Cleaner
Win32Info BHO Removal
Remove Femac Trojan

FriendGreetings.Card BHO

How To Remove FriendGreetings.Card?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
FriendGreetings.Card is dangerous virus:
BHO (Browser Helper Object) Trojan.
The BHO waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
The method of network transport used by the attacker makes this Trojan unique.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.
Instead, this Trojan encodes the data with a simple XOR algorithm before placing it into
the data section of an ICMP ping packet." explained the company.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.
It replaces your start page, continuosly open a number of pop up windows and so on.
DoS trojans conduct attacks from a single computer with the consent of the user.


FriendGreetings.Card Symptoms:

Files:
[%PROGRAM_FILES_COMMON%]\media\otdock.dll
[%PROGRAM_FILES_COMMON%]\media\otglove.dll
[%PROGRAM_FILES_COMMON%]\media\otms.exe
[%PROGRAM_FILES_COMMON%]\media\otupdate.exe
[%PROGRAM_FILES_COMMON%]\media\winsrvc.dat
[%PROGRAM_FILES_COMMON%]\media\winsrvc.exe
[%SYSTEM%]\otglove.dll
[%WINDOWS%]\system\otglove.dll
[%PROGRAM_FILES_COMMON%]\media\otdock.dll
[%PROGRAM_FILES_COMMON%]\media\otglove.dll
[%PROGRAM_FILES_COMMON%]\media\otms.exe
[%PROGRAM_FILES_COMMON%]\media\otupdate.exe
[%PROGRAM_FILES_COMMON%]\media\winsrvc.dat
[%PROGRAM_FILES_COMMON%]\media\winsrvc.exe
[%SYSTEM%]\otglove.dll
[%WINDOWS%]\system\otglove.dll

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{7011471D-3F74-498E-88E1-C0491200312D}
HKEY_LOCAL_MACHINE\software\classes\clsid\{7011471d-3f74-498e-88e1-c0491200312d}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7011471D-3F74-498E-88E1-C0491200312D}
HKEY_CLASSES_ROOT\clsid\{36372a5f-1436-4a70-b808-59f6dfd36658}
HKEY_CLASSES_ROOT\clsid\{7011471d-3f74-498e-88e1-c0491200312d}
HKEY_CLASSES_ROOT\clsid\{a47693d1-7e2a-4de3-9907-310c5d310b5f}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{7011471d-3f74-498e-88e1-c0491200312d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{7011471d-3f74-498e-88e1-c0491200312d}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
CWS.XMLMimeFilter Hijacker Cleaner
Remove SillyDl.BBG Trojan

Bancos.IOB Trojan

How To Remove Bancos.IOB?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Bancos.IOB is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Bancos.IOB Symptoms:

Files:
[%SYSTEM%]\orkutkut.exe
[%SYSTEM%]\orkutkut.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Removing SpyHeal Trojan
Zlob.Fam.MovieCommander Trojan Cleaner
Removing AMXPlus Spyware
Removing Mud Trojan
Removing Win32.TrojanDropper.Bridge Trojan

Ad.Popper Adware

How To Remove Ad.Popper?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Ad.Popper is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.


Ad.Popper Symptoms:

Registry Values:
HKEY_CURRENT_USER\software\microsoft\main
HKEY_CURRENT_USER\software\microsoft\main
HKEY_CURRENT_USER\software\microsoft\main
HKEY_LOCAL_MACHINE\software\microsoft\search
HKEY_LOCAL_MACHINE\software\microsoft\search


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Mostrar Adware
Removing Bancos.HPF Trojan
Zlob.Fam.FreeVideo Trojan Cleaner
Removing Namop Trojan
SillyDl.CBB Trojan Information

PECarlin Adware

How To Remove PECarlin?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
PECarlin is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.



PECarlin Symptoms:

Registry Keys:
HKEY_CURRENT_USER\software\pecarlin

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Pcclient Trojan Symptoms

Mersting Trojan

How To Remove Mersting?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Mersting is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Trojans-downloaders downloads and installs new malware or adware on the computer.



Mersting It also known as:

[Eset]Win32/TrojanDownloader.Agent.J trojan;
[Panda]Trj/Agent.F;
[Computer Associates]Win32.Mersting.A,Win32/Agent.J!Downloader

Mersting Symptoms:

Files:
[%SYSTEM%]\kbda.dll
[%SYSTEM%]\loggefh.dll
[%SYSTEM%]\kbda.dll
[%SYSTEM%]\loggefh.dll


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
thesafetyfiles.com Hijacker Cleaner
Trojan Guarder Gold Adware Cleaner

3wPlayer Adware

How To Remove 3wPlayer?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
3wPlayer is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


3wPlayer Symptoms:

Files:
[%DESKTOP%]\3wPlayer.lnk
[%DESKTOP%]\3wPlayer.lnk

Folders:
[%COMMON_PROGRAMS%]\3wPlayer
[%PROGRAM_FILES%]\3wPlayer

Registry Keys:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\3wplayer
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\3wplayer_is1

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove CWS.MTwirl32 Hijacker
Removing W95.Leviathan Trojan
Removing Adware.ClickSpring Adware
HLLP.Philis Trojan Cleaner
Buddy.Spy Spyware Removal instruction

AdultP2P Adware

How To Remove AdultP2P?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
AdultP2P is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


AdultP2P Symptoms:

Files:
[%DESKTOP%]\adultp2p.exe
[%DESKTOP%]\adultp2p.rar
[%DESKTOP%]\Porn2Peer.lnk
[%WINDOWS%]\Porn2Peer Setup Log.txt
[%WINDOWS%]\Porn2Peer\uninstall.exe
[%DESKTOP%]\adultp2p.exe
[%DESKTOP%]\adultp2p.rar
[%DESKTOP%]\Porn2Peer.lnk
[%WINDOWS%]\Porn2Peer Setup Log.txt
[%WINDOWS%]\Porn2Peer\uninstall.exe

Folders:
[%PROGRAMS%]\Porn2Peer
[%PROGRAM_FILES%]\Porn2Peer

Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\porn2peer1.6


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Win32.VB.kb Trojan Information
NetHack RAT Cleaner
PS.Rex Trojan Removal
Frethog.ADV Trojan Cleaner

IntermixMedia.KeenValue Adware

How To Remove IntermixMedia.KeenValue?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
IntermixMedia.KeenValue is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.A Search hijacker redirects search results to other pages and may
transmit search and browsing data to unknown servers. An error page hijacker directs
the browser to another page, usually an advertising page, instead of the usual error
page when the requested URL is not found.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.


IntermixMedia.KeenValue It also known as:

[Kaspersky]TrojanDownloader.Win32.Keenval;
[Eset]Win32/TrojanDownloader.Keenval.E trojan;
[Panda]Adware/EUniverse,Adware/KeenValue

IntermixMedia.KeenValue Symptoms:

Files:
[%APPDATA%]\Musicmatch\Plugins\Portables\LyraHD_4\LyraHDD\Thomson\mp3.exe
[%PROFILE_TEMP%]\kvlhookwin.dll
[%PROFILE_TEMP%]\LyraHD\mp3.exe
[%PROFILE_TEMP%]\perfectnavUninstall.exe
[%PROFILE_TEMP%]\polmx3.inf
[%PROFILE_TEMP%]\sui.exe
[%PROGRAM_FILES%]\MUSICMATCH\MUSICMATCH Jukebox\Plugins\Portables\LyraHD_4\LyraHDD\Thomson\mp3.exe
[%PROGRAM_FILES_COMMON%]\SearchUpgrader\system.cfg
[%WINDOWS%]\inf\polmx3.inf
[%PROGRAMS%]\screensavers\jalapeno\configure screensaver.lnk
[%PROGRAMS%]\screensavers\jalapeno\uninstall.lnk
[%PROGRAM_FILES%]\screensavers\jalapeno\keenvalueinstall_99.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\regw.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\setup_flowgobar_with_track.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\setup_incredifind_screensaver_with_track.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\tipb.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\uninstall.exe
[%STARTUP%]\keenvalue.lnk
[%SYSTEM%]\jalapeno.scr
[%SYSTEM%]\perfectnavbho.dll
[%WINDOWS%]\start menu\programs\startup\keenvalue.lnk
[%WINDOWS%]\system\perfectnavbho.dll
[%APPDATA%]\Musicmatch\Plugins\Portables\LyraHD_4\LyraHDD\Thomson\mp3.exe
[%PROFILE_TEMP%]\kvlhookwin.dll
[%PROFILE_TEMP%]\LyraHD\mp3.exe
[%PROFILE_TEMP%]\perfectnavUninstall.exe
[%PROFILE_TEMP%]\polmx3.inf
[%PROFILE_TEMP%]\sui.exe
[%PROGRAM_FILES%]\MUSICMATCH\MUSICMATCH Jukebox\Plugins\Portables\LyraHD_4\LyraHDD\Thomson\mp3.exe
[%PROGRAM_FILES_COMMON%]\SearchUpgrader\system.cfg
[%WINDOWS%]\inf\polmx3.inf
[%PROGRAMS%]\screensavers\jalapeno\configure screensaver.lnk
[%PROGRAMS%]\screensavers\jalapeno\uninstall.lnk
[%PROGRAM_FILES%]\screensavers\jalapeno\keenvalueinstall_99.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\regw.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\setup_flowgobar_with_track.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\setup_incredifind_screensaver_with_track.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\tipb.exe
[%PROGRAM_FILES%]\screensavers\jalapeno\uninstall.exe
[%STARTUP%]\keenvalue.lnk
[%SYSTEM%]\jalapeno.scr
[%SYSTEM%]\perfectnavbho.dll
[%WINDOWS%]\start menu\programs\startup\keenvalue.lnk
[%WINDOWS%]\system\perfectnavbho.dll

Folders:
[%PROGRAM_FILES%]\bho
[%PROGRAM_FILES_COMMON%]\updater
[%PROGRAM_FILES_COMMON%]\updmgr
[%PROGRAM_FILES%]\perfectnav
[%PROGRAM_FILES%]\perfec~1\bho
[%PROGRAM_FILES%]\common files\updater
[%PROGRAM_FILES%]\common files\updmgr

Registry Keys:
HKEY_CLASSES_ROOT\bho.perfectnavbho
HKEY_CLASSES_ROOT\bho.perfectnavbho.1
HKEY_CLASSES_ROOT\typelib\{de289bfa-737b-4abb-a4ec-f8753551b875}
HKEY_LOCAL_MACHINE\software\classes\clsid\{00d6a7e7-4a97-456f-848a-3b75bf7554d7}
HKEY_LOCAL_MACHINE\software\perfectnav
HKEY_CLASSES_ROOT\bho.eunivbho.1
HKEY_CLASSES_ROOT\clsid\{269b6797-664e-48aa-b283-b012bdf6e525}
HKEY_CLASSES_ROOT\flgobar.flgobar
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{269b6797-664e-48aa-b283-b012bdf6e525}
HKEY_LOCAL_MACHINE\interface\{eabbb49a-4d7b-415b-8250-15c3b854e9ff}
HKEY_LOCAL_MACHINE\software\classes\clsid\{01cd4dda-166d-4831-a373-accc27e1bb9d}
HKEY_LOCAL_MACHINE\software\classes\clsid\{269b6797-664e-48aa-b283-b012bdf6e525}
HKEY_LOCAL_MACHINE\software\classes\clsid\{4e7bd74f-2b8d-469e-c0ff-fd63b399bc7d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{01cd4dda-166d-4831-a373-accc27e1bb9d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{269b6797-664e-48aa-b283-b012bdf6e525}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\xbtb03439.xbtb03439toolbar
HKEY_LOCAL_MACHINE\software\{f08555af-9cc3-11d2-aa8e-000000000000}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\flowgobar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\flowgobar
HKEY_CURRENT_USER\software\microsoft\internet explorer\urlsearchhooks
HKEY_LOCAL_MACHINE\software\kasperskylab\components\101\standalone
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\flowgobar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\flowgobar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\jalapeno screensaver
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\jalapeno screensaver
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\jalapeno screensaver


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
SillyDl.BIT Trojan Removal
Removing Quebus Backdoor
AXPlayer.Spy Trojan Removal

SillyDl.DMQ Downloader

How To Remove SillyDl.DMQ?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
SillyDl.DMQ is dangerous virus:
Trojans-downloaders downloads and installs new malware or adware on the computer.



SillyDl.DMQ It also known as:

[Kaspersky]Trojan.Win32.Delf.aeb;
[McAfee]PWS-Banker.dldr

SillyDl.DMQ Symptoms:

Registry Keys:
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_windowsdriver
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\windowsdriver


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Desktop.Scout Spyware Symptoms
Mate.Watcher Spyware Symptoms
Bancos.FGE Trojan Symptoms
Ofbyon Trojan Removal instruction

NoAdware Ransomware

How To Remove NoAdware?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
NoAdware is dangerous virus:
The term ransomware is commonly used to describe such software,
although the field known as cryptovirology predates the term "ransomware".

This type of ransom attack can be accomplished by (for example) attaching
a specially crafted file/program to an e-mail message and sending this to the victim.


NoAdware Symptoms:

Files:
[%DESKTOP%]\NoAdware.lnk
[%DESKTOP%]\NoAdware.lnk

Folders:
[%COMMON_PROGRAMS%]\NoAdware
[%PROGRAM_FILES%]\NoAdware5.0

Registry Keys:
HKEY_CURRENT_USER\software\noadware5
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\noadware 5.0_is1


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Keylogger Trojan Removal instruction
KeyLogger.wintective Spyware Cleaner

AdMedia Trojan

How To Remove AdMedia?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
AdMedia is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.


AdMedia It also known as:

[Kaspersky]Adware.Win32.AdMedia.a,AdWare.Win32.AdMedia.e,AdWare.Win32.AdMedia.a,AdWare.Win32.AdMedia.d,AdWare.Win32.AdMedia.c;
[McAfee]Downloader-AEU;
[Other]Download.Adware,TROJ_DLOADER.CMI,Win32/Donnic.A,Win32/Donnic.F,Backdoor.Trojan

AdMedia Symptoms:

Files:
[%SYSTEM%]\dtservice.dll
[%SYSTEM%]\ext\DTDL.dll
[%SYSTEM%]\ext\DTSM.dll
[%SYSTEM%]\microapmddt.dll
[%SYSTEM%]\dtservice.dll
[%SYSTEM%]\ext\DTDL.dll
[%SYSTEM%]\ext\DTSM.dll
[%SYSTEM%]\microapmddt.dll

Folders:
[%PROGRAM_FILES%]\DTSVC
[%WINDOWS%]\DTSVC

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{2ef14e3b-45ce-45d6-913e-7aa65331a933}
HKEY_CLASSES_ROOT\clsid\{5375af10-2f77-4e74-b693-4668f6381999}
HKEY_CLASSES_ROOT\clsid\{6b280ac7-8b18-46a4-bf70-fc579a1b2f76}
HKEY_CLASSES_ROOT\clsid\{ac2adcd9-6278-43d6-942c-5fdaf8cab621}
HKEY_CLASSES_ROOT\clsid\{b8ccdd47-38e4-4cd2-b7fa-3b4b690f74bd}
HKEY_CLASSES_ROOT\dtap
HKEY_CLASSES_ROOT\dtap.adconfig
HKEY_CLASSES_ROOT\dtap.adconfig.1
HKEY_CLASSES_ROOT\dts.dtsreg
HKEY_CLASSES_ROOT\dts.dtsvc
HKEY_CLASSES_ROOT\filetype\{5375af10-2f77-4e74-b693-4668f6381999}
HKEY_CLASSES_ROOT\interface\{221f3103-3db3-4ef5-9725-cfb481481f46}
HKEY_CLASSES_ROOT\interface\{63c452d6-c833-4df9-a767-54b642b28373}
HKEY_CLASSES_ROOT\interface\{dc22f8f5-4267-4ca7-bf51-df5c445788ee}
HKEY_CLASSES_ROOT\interface\{e520194f-15a3-46dc-976b-9987e6039dcd}
HKEY_CLASSES_ROOT\macromediapd
HKEY_CLASSES_ROOT\macromediapd.cap
HKEY_CLASSES_ROOT\macromediapd.cap.1
HKEY_CLASSES_ROOT\typelib\{40590d7f-ede9-40af-9702-7023159b0765}
HKEY_CLASSES_ROOT\typelib\{8698090c-e0e7-42e0-bca1-5681a1aceb1e}
HKEY_CLASSES_ROOT\typelib\{a474bd59-f29a-4559-95b9-b4e13fa51faa}
HKEY_LOCAL_MACHINE\software\dongtian
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{2ef14e3b-45ce-45d6-913e-7aa65331a933}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6b280ac7-8b18-46a4-bf70-fc579a1b2f76}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{b8ccdd47-38e4-4cd2-b7fa-3b4b690f74bd}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\directdraw
HKEY_LOCAL_MACHINE\software\microsoft\mmedia
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
FakeSecurityAlert Trojan Symptoms

Puper Trojan

How To Remove Puper?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Puper is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
The BHO (Browser Helper Object) waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
A Search hijacker redirects search results to other pages and may
transmit search and browsing data to unknown servers. An error page hijacker directs
the browser to another page, usually an advertising page, instead of the usual error
page when the requested URL is not found.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.

Puper It also known as:

[Kaspersky]Trojan-Downloader.Win32.Zlob.cb,Trojan-Downloader.Win32.Zlob.aai,Trojan-Downloader.Win32.Zlob.aac,Trojan-Downlaoder.Win32.Zlob.zi,Trojan-Downlaoder.Win32.Zlob.zy,Trojan-Downloader.win32.Zlob.yt,Trojan-downloader.Win32.Zlob.uf,Trojan-Downloader.Win32.Zlob.yt,Trojan-Downloader.Win32.Zlob.aas,Trojan-Downlaoder.Win32.Zlob.aai,Trojan-Downloader.Win32.Zlob.abt,Trojan-Downloader.Win32.Zlob.add,Trojan-Downloader.Win32.Zlob.aaq,Trojan-Downloader.Win32.Zlob.dz,Trojan-Downloader.Win32.Zlob.aec,Trojan-Downloader.Win32.Zlob.adb,Trojan-Downloader.Win32.Zlob.ael,Hoax.Win32.Renos.eg,Trojan-Downloader.Win32.Zlob.adl,Trojan-Downlaoder.Win32.Zlob.afo,Trojan-Downloader.Win32.Zlob.abk,Trojan-Downloader.Win32.Zlob.xp,Trojan-Downloader.Win32.Zlob.alw,Trojan-Downloader.Win32.Zlob.amw,Trojan-Downloader.Win32.Zlob.amk,Trojan-Downloader.Win32.Zlob.anu,Trojan-Downloader.Win32.Zlob.zng,Trojan-Downloader.Win32.Zlob.alu,Trojan-Downlaoder.Win32.Zlob.arw,Trojan-Downloader.Win32.Zlob.apu,hoax.win32.Renos.fo,Trojan-Downloader.Win32.Zlob.arz,Trojan-Downloader.win32.Zlob.ase,Trojan-Downloader.Win32.Zlob.agu,Trojan-Downloader.Win32.Zlob.asl,Trojan-Downloader.Win32.Zlob.awq,Trojan-Downloader.Win32.Zlob.atg,Trojan-Downloader.Win32.Zlob.aue,Trojan-Downloader.Win32.Zlob.avf,Trojan-Downloader.Win32.Zlob.aoi,Trojan-Downloader.Win32.Zlob.aot,Trojan-Downloader.Win32.Zlob.cs,Trojan-Downloader.Win32.Zlob.de,Trojan-Downloader.Win32.Zlob.dj,Trojan-Downloader.Win32.Zlob.cf,Trojan-Downloader.Win32.Zlob.bjo,Trojan-Downloader.Win32.Zlob.bjy,Trojan-Downloader.Win32.Zlob.biu,Trojan-Downloader.Win32.Zlob.ayf,Trojan-Downloader.Win32.Zlob.axt,Trojan-Dropper.Win32.Agent.agx,Trojan-Downloader.Win32.Zlob.bpf,Trojan-Downloader.Win32.Zlob.boo,Trojan-Downloader.Win32.Zlob.bkw,Trojan-Downloader.Win32.Zlob.bti,Trojan-Downloader.Win32.Zlob.bih,Trojan-Downloader.Win32.Zlob.bqw,Trojan-Downloader.Win32.Zlob.pn,Trojan-Downloader.Win32.Zlob.dlf,Hoax.Win32.Renos.vk,Trojan-Downloader.Win32.Zlob.eed,Trojan-Downloader.Win32.Zlob.foq,Trojan-Downloader.Win32.Zlob.fpe,Trojan-Downloader.Win32.Zlob.cth;
[McAfee]Puper.dll,Puper,StartPage-JL,Generic.Downlader.bd,Puper.dll.gen,Generic Downloader.bd,Puper.dr;
[F-Prot]W32/Downloader.LBX,W32/Downloader.LTH,W32/Downloader.LTQ,W32/Dropper.AUQ,W32/Downloader.AXZW,W32/Downloader.AXXG,W32/Zlob.ABQ,W32/Downloader.ATUF,W32/NewMalware-Rootkit-I-based!Maximus;
[Other]Troj/Puper-AC,Win32.Puper.BU,Trojan.Zlob,Win32/Puper.EX,Win32/Puper.EZ,Win32/Puper.DA,Trojan.StartPage,Win32/Puper.DK,Win32/Moiling.CP,Trojan-Downloader.Win32.Zlob.zp,Win32/Puper.DJ,Trojan-Downloader.Win32.Zlob.yt,Win32/Puper.DC,Win32/Puper.DD,Win32/Puper.DF,Win32/Puper.DH,Win32.Puper.DO,Win32/Puper,Trojan-Downloader.Win32.Zlob.acc,Trojan-Downlaoder.Win32.Zlob.abk,Zlob.Media-Codec,Win32/Puper.FQ,Troajn.Zlob,Win32/Puper.FZ,Trojan-Dwonladoer.Win32.zlob.adb,SpywareQuake,Win32/Puper.FX,Trojan.Emcodec.G,Win32/Puper.FU,Win32/Puper.GA,Puper,Win32/Puper.GE,Win32/Puper.GC,Win32/Puper.GG,Win32/Puper.GF,Trojan.Dropper,Win32/Puper.FT,Win32/Zlob.JTG,WIn32/Puper.FJ,Win32/Beovens.IA,Trojan.Emcodec,Win32/Moiling.EI,Win32/Puper.GO,Win32.Puper.GQ,win32/Puper.GR,Win32/Puper.GT,Win32/Puper.GU,Win32/Puper.GW,Trojan-Downloader.Win32.Zlob.aoi,Win32/Puper.GX,Win32/Puper.GY,Win32/Puper.GZ,Win32/Puper.HA,Win32/Puper.HB,Win32/Puper.HD,Win32/Puper.HE,Win32/Puper.HG,Win32/Puper.HH,Win32/Boarim.W,Win32/Puper.HM,W32/Zlob.gen68,Win32/Puper.HI,Win32/Puper.HJ,Win32/Puper.HN,Win32/Puper.HL,W32/Zlob.UTG,Win32/Puper.HP,W32/Puper.BI,Trojan Horse,W32/Zlob.EG,Troj/Zlob-CU,DesktopScam,Win32/Puper.BN,W32/Zlob.HN,Troj/Zlob-CV,Popuper,Win32/Puper.BT,W32/Zlob.GMB,Troj/Zlob-CZ,security2k hijacker,Win32/Puper.BF,Trojan.Zlob.F,W32/Zlob.BV,Troj/Zlob-CY,trojan-downloader.zlob,Win32/Puper.IB,Win32/Moiling.FA,Trojan.AdClicker,Win32/Puper.IH,W32/Zlob.gen71,Troj/Zlobmi-Gen,Win32/Puper.IG,TrojanDownloader.Win32/Zlob.gen,Trojan-Downloader.Zlob.Media-Codec,Win32/Puper.IC,Win32/Puper.HS,Win32/Beovens.IC,Win32/Puper.HQ,Win32/Puper.IV,Win32/Puper!generic,Win32/Puper.ID,Win32/Puper.IJ,Win32/Puper.JF,Win32/Puper.JG,TROJ_ZLOB.BFO,Win32/Puper.JQ,Troj/Puper-KX,TROJ_PUPER.BL,W32/Zlob.HVP,Win32/Puper.JX,TrojanDownloader:Win32/Zlob.gen!T,TROJ_ZLOB.DCR,Troj/Zlob-AFE,Win32/Puper.JY,TrojanDownloader:Win32/Zlob.gen!O,TROJ_ZLOB.DCS,VirusProtectPro,Win32/Puper.KN,TrojanDownloader:Win32/Zlob.gen!P,Win32/Puper.KS,TrojanDownloader:Win32/Zlob.gen!A

Puper Symptoms:

Files:
[%PROFILE_TEMP%]\temp.fr????
[%PROFILE_TEMP%]\temp.fr????\iesmin.exe
[%PROFILE_TEMP%]\temp.fr????\iesmn.exe
[%PROFILE_TEMP%]\temp.fr????\iesplg.dll
[%PROFILE_TEMP%]\temp.fr????\iesunst.exe
[%PROFILE_TEMP%]\temp.fr????\isadd.dll
[%PROFILE_TEMP%]\temp.fr????\isamini.exe
[%PROFILE_TEMP%]\temp.fr????\isamntr.exe
[%PROGRAM_FILES%]\iVideoCodec\isamini.exe
[%PROGRAM_FILES%]\iVideoCodec\isamonitor.exe
[%PROGRAM_FILES%]\Protection Tools\bpmini.exe
[%PROGRAM_FILES%]\Protection Tools\bpmon.exe
[%PROGRAM_FILES%]\Protection Tools\bpvol.dll
[%PROGRAM_FILES%]\Video Access ActiveX Object\isamini.exe
[%PROGRAM_FILES%]\Video Access ActiveX Object\isamntr.exe
[%PROGRAM_FILES%]\Video ActiveX Access\iesmn.exe
[%PROGRAM_FILES%]\Video ActiveX Access\iesplg.dll
[%SYSTEM%]\ishost.exe
[%SYSTEM%]\ismini.exe
[%SYSTEM%]\ixt0.dll
[%SYSTEM%]\ixt1.dll
[%WINDOWS%]\dls0523pmw.exe
[%WINDOWS%]\dls0523pmw.exe~
[%SYSTEM%]\hp3B80.tmp
[%PROFILE_TEMP%]\temp.fr????
[%PROFILE_TEMP%]\temp.fr????\iesmin.exe
[%PROFILE_TEMP%]\temp.fr????\iesmn.exe
[%PROFILE_TEMP%]\temp.fr????\iesplg.dll
[%PROFILE_TEMP%]\temp.fr????\iesunst.exe
[%PROFILE_TEMP%]\temp.fr????\isadd.dll
[%PROFILE_TEMP%]\temp.fr????\isamini.exe
[%PROFILE_TEMP%]\temp.fr????\isamntr.exe
[%PROGRAM_FILES%]\iVideoCodec\isamini.exe
[%PROGRAM_FILES%]\iVideoCodec\isamonitor.exe
[%PROGRAM_FILES%]\Protection Tools\bpmini.exe
[%PROGRAM_FILES%]\Protection Tools\bpmon.exe
[%PROGRAM_FILES%]\Protection Tools\bpvol.dll
[%PROGRAM_FILES%]\Video Access ActiveX Object\isamini.exe
[%PROGRAM_FILES%]\Video Access ActiveX Object\isamntr.exe
[%PROGRAM_FILES%]\Video ActiveX Access\iesmn.exe
[%PROGRAM_FILES%]\Video ActiveX Access\iesplg.dll
[%SYSTEM%]\ishost.exe
[%SYSTEM%]\ismini.exe
[%SYSTEM%]\ixt0.dll
[%SYSTEM%]\ixt1.dll
[%WINDOWS%]\dls0523pmw.exe
[%WINDOWS%]\dls0523pmw.exe~
[%SYSTEM%]\hp3B80.tmp

Folders:
[%PROGRAM_FILES%]\eMedia Codec

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{192c5b4a-3efd-40c7-9f99-c472deb8efc0}
HKEY_CLASSES_ROOT\CLSID\{1a1ddc19-5893-43ab-a73f-f41a0f34d115}
HKEY_CLASSES_ROOT\CLSID\{1ca480cd-c0e5-4548-874e-b85b17905b3a}
HKEY_CLASSES_ROOT\CLSID\{1FC80E00-41B0-4F74-BC16-2C83ED49CAC9}
HKEY_CLASSES_ROOT\CLSID\{36ADA89D-2440-4DC4-820A-3A05E8630935}
HKEY_CLASSES_ROOT\CLSID\{4734044c-7427-43d8-adbe-df942e52bef2}
HKEY_CLASSES_ROOT\CLSID\{67982BB7-0F95-44C5-92DC-E3AF3DC19D6D}
HKEY_CLASSES_ROOT\CLSID\{e0103cd4-d1ce-411a-b75b-4fec072867f4}
HKEY_CLASSES_ROOT\HP
HKEY_CLASSES_ROOT\HP.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{192c5b4a-3efd-40c7-9f99-c472deb8efc0}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1ca480cd-c0e5-4548-874e-b85b17905b3a}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FC80E00-41B0-4F74-BC16-2C83ED49CAC9}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{36ADA89D-2440-4DC4-820A-3A05E8630935}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4734044c-7427-43d8-adbe-df942e52bef2}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{67982BB7-0F95-44C5-92DC-E3AF3DC19D6D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e0103cd4-d1ce-411a-b75b-4fec072867f4}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\eMedia Codec
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_net_agent
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\net agent
HKEY_CLASSES_ROOT\clsid\{192c5b4a-3efd-40c7-9f99-c472deb8efc0}
HKEY_CLASSES_ROOT\clsid\{1a1ddc19-5893-43ab-a73f-f41a0f34d115}
HKEY_CLASSES_ROOT\clsid\{1c3c4699-b285-475f-be47-0b26088ce876}
HKEY_CLASSES_ROOT\clsid\{1ca480cd-c0e5-4548-874e-b85b17905b3a}
HKEY_CLASSES_ROOT\clsid\{1fc80e00-41b0-4f74-bc16-2c83ed49cac9}
HKEY_CLASSES_ROOT\clsid\{23b760d6-c98b-450b-9b32-26c7775cdf83}
HKEY_CLASSES_ROOT\clsid\{36ada89d-2440-4dc4-820a-3a05e8630935}
HKEY_CLASSES_ROOT\clsid\{4734044c-7427-43d8-adbe-df942e52bef2}
HKEY_CLASSES_ROOT\clsid\{67982bb7-0f95-44c5-92dc-e3af3dc19d6d}
HKEY_CLASSES_ROOT\clsid\{69b98c68-d2b8-4a4e-9cb7-e85b6f3a7014}
HKEY_CLASSES_ROOT\clsid\{cfe15135-c591-4000-a55e-a50e5f9f82bc}
HKEY_CLASSES_ROOT\clsid\{e0103cd4-d1ce-411a-b75b-4fec072867f4}
HKEY_CLASSES_ROOT\hp
HKEY_CLASSES_ROOT\hp.1
HKEY_CURRENT_USER\software\microsoft\internet explorer\searchscopes\{daed9266-8c28-4c1c-8b58-5c66eff1d302}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\extensions\{9034a523-d068-4be8-a284-9df278be776e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{192c5b4a-3efd-40c7-9f99-c472deb8efc0}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{1ca480cd-c0e5-4548-874e-b85b17905b3a}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{1fc80e00-41b0-4f74-bc16-2c83ed49cac9}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{23b760d6-c98b-450b-9b32-26c7775cdf83}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{36ada89d-2440-4dc4-820a-3a05e8630935}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4734044c-7427-43d8-adbe-df942e52bef2}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{67982bb7-0f95-44c5-92dc-e3af3dc19d6d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{cfe15135-c591-4000-a55e-a50e5f9f82bc}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{e0103cd4-d1ce-411a-b75b-4fec072867f4}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{ffffffff-ffff-ffff-ffff-fffffffffffa}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\emedia codec

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKEY_CURRENT_USER\software\microsoft\internet explorer\extensions\cmdmapping
HKEY_CURRENT_USER\software\microsoft\internet explorer\searchscopes
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
DyFuCa Internet Optimizer Adware Information
SearchCentrix.Seek4Free BHO Symptoms
Removing CPush Adware
PStopper Adware Cleaner
BlackHaraz Backdoor Removal instruction

Daemon Trojan

How To Remove Daemon?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Daemon is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
Exploits use vulnerabilities in operating systems and applications to achieve the same result.
DoS trojans conduct attacks from a single computer with the consent of the user.


Daemon It also known as:

[Kaspersky]Daemaen.2041.b,Daemaen.2048;
[Panda]Daemaen.2048,Talon.2041.MBR;
[Computer Associates]Daemaen.2048,Talon.2041

Daemon Symptoms:

Files:
[%WINDOWS%]\System32\bounce.exe
[%WINDOWS%]\System32\bounce.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Upidet Trojan
Keylogger.King.Free Spyware Information
Remove Possible.Browser.Hijack.attempt Hijacker

Find4u Hijacker

How To Remove Find4u?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Find4u is dangerous virus:
Hijackers take control of various parts of your web browser, including your home page,
search pages, and search bar. They may also redirect you to certain sites should you
mistype an address or prevent you from going to a website they would rather you not,
such as sites that combat malware. Some will even redirect you to their own search engine
when you attempt a search.


Find4u Symptoms:

Files:
[%FAVORITES%]\Free Web Cams Chat.url
[%FAVORITES%]\Hidden Cams World.url
[%STARTUP%]\winlogon.exe
[%WINDOWS%]\downloaded program files\winlogon.exe
[%FAVORITES%]\Free Web Cams Chat.url
[%FAVORITES%]\Hidden Cams World.url
[%STARTUP%]\winlogon.exe
[%WINDOWS%]\downloaded program files\winlogon.exe

Registry Values:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\internet explorer\main
HKEY_CURRENT_USER\software\microsoft\internet explorer\main
HKEY_CURRENT_USER\software\microsoft\internet explorer\main
HKEY_CURRENT_USER\software\microsoft\internet explorer\search
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
SillyDl.CDV Trojan Removal instruction
Lookup.Abeb BHO Symptoms
Win32.Bizten.gen Trojan Cleaner
Remove Packet.coded RAT
Remove DLSearchBar Hijacker

YazzleBundle Trojan

How To Remove YazzleBundle?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
YazzleBundle is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.



YazzleBundle It also known as:

[Other]Adware.Purityscan,Yazzle,purityscan

YazzleBundle Symptoms:

Files:
[%PROFILE_TEMP%]\YazzleBundle-1281.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1281OinAdmin.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1281OinUninstaller.exe
[%WINDOWS%]\YazzleBundle-1119.exe
[%WINDOWS%]\YazzleBundle-1264.exe
[%PROFILE_TEMP%]\OA.exe
[%PROGRAM_FILES_COMMON%]\Y1304OA.exe
[%PROGRAM_FILES_COMMON%]\Y1304OU.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1122OinAdmin.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1122OinUninstaller.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1739OinAdmin.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1739OinUninstaller.exe
[%PROFILE_TEMP%]\YazzleBundle-1281.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1281OinAdmin.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1281OinUninstaller.exe
[%WINDOWS%]\YazzleBundle-1119.exe
[%WINDOWS%]\YazzleBundle-1264.exe
[%PROFILE_TEMP%]\OA.exe
[%PROGRAM_FILES_COMMON%]\Y1304OA.exe
[%PROGRAM_FILES_COMMON%]\Y1304OU.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1122OinAdmin.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1122OinUninstaller.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1739OinAdmin.exe
[%PROGRAM_FILES_COMMON%]\Yazzle1739OinUninstaller.exe

Registry Keys:
HKEY_CURRENT_USER\software\classes\clsid\{f862b760-0855-1033-1206-060001}
HKEY_LOCAL_MACHINE\software\ccau
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\y1304oin
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\yazzle1122oin


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Agent.gf Trojan Information
Softomate Adware Removal instruction
Katherdoor.Server Backdoor Information
Ehg.sonyesolutions.hitbox Tracking Cookie Removal instruction

Vxidl.AZS Trojan

How To Remove Vxidl.AZS?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Vxidl.AZS is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Vxidl.AZS Symptoms:

Registry Keys:
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_ntldr.sys
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\ntldr.sys


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Anal.FTP Trojan Removal
Casey Trojan Symptoms
SillyDl.DOC Trojan Removal
netpoll.nl Tracking Cookie Cleaner
AdServerNow Adware Removal instruction

91Cast Trojan

How To Remove 91Cast?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
91Cast is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


91Cast It also known as:

[Kaspersky]Backdoor.Win32.Agent.xu,AdWare.Win32.91Cast.a,AdWare.Win32.91Cast.f;
[McAfee]Backdoor-CZI,Generic Backdoor.d,Downloader-AWI,Downlaoder-AWI;
[Other]Win32.Nionca.E,Backdoor.Trojan,Win32/Nionca.A,BackDoor-CZI,Win32/Nionca.B,Win32/Nionca.D

91Cast Symptoms:

Files:
[%WINDOWS%]\cast.config
[%WINDOWS%]\castp.dat
[%WINDOWS%]\castvxml.dat
[%WINDOWS%]\castxml.dat
[%WINDOWS%]\KB910436.log
[%SYSTEM%]\wbauninstall.exe
[%WINDOWS%]\cast.config
[%WINDOWS%]\castp.dat
[%WINDOWS%]\castvxml.dat
[%WINDOWS%]\castxml.dat
[%WINDOWS%]\KB910436.log
[%SYSTEM%]\wbauninstall.exe

Registry Keys:
HKEY_CURRENT_USER\software\91cast
HKEY_CLASSES_ROOT\clsid\{cac068f3-a608-406b-8581-458788a67694}
HKEY_CLASSES_ROOT\ielunch.webacc
HKEY_CLASSES_ROOT\ielunch.webacc.1
HKEY_CLASSES_ROOT\interface\{ecb449b4-6b1c-4c8a-871a-4a86f756cd84}
HKEY_CLASSES_ROOT\typelib\{b25e511b-2a57-41b1-b7ac-53e76e20d11c}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{cac068f3-a608-406b-8581-458788a67694}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\webcastaccelerator

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Pakes Trojan Symptoms
Hatter.dr Trojan Symptoms
Remove Frsk Hijacker
Remove Cyber.Hazard Backdoor

Lineage Trojan

How To Remove Lineage?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Lineage is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.


Lineage It also known as:

[Kaspersky]Trojan-PSW.Win32.Lineage.ag,Trojan-PSW.Win32.Agent.hh,Trojan-PSW.Win32.Lineage.acw,Trojan-PSW.Win32.Gamec.aw,Trojan-PSW.Win32.Lineage.hy,Trojan-PSW.Win32.Lineage.ajq,Trojan-PSW.Win32.Nilage.apv,Trojan-PSW.Win32.Delf.tv,Trojan-PWS.WIn32.Nilage.mo,Trojan-PWS.WIn32.Magania.fx,Trojan-PSW.Win32.Magania.hs,Trojan-PWS.Win32.Agent.dq,Trojan-PSW.Win32.Delf.lx,Trojan-PSW.Win32.WOW.lk,Trojan-PSW.Win32.Nilage.agt,Trojan-PSW.Win32.Nilage.aha,Trojan-PSW.Win32.Maran.t,Trojan-PSW.Win32.Nilage.afz,Trojan-PSW.Win32.Nilage.ahp,Trojan-PSW.Win32.Nilage.ach,Trojan-PSW.Win32.Hangame.bu,Trojan-PSW.Win32.OnLineGames.ar,Trojan-PSW.WIn32.Gamec.bw,Trojan-PSW.Win32.Nilage.ayc,Trojan-PWS.Win32.Gamec.bw,Trojan-PSW.Win32.Agent.cu,Trojan-PWS.Win32.Nilage.awt,Trojan-PSW.Win32.Magania.fx,Trojan-PWS.Win32.Magania.iv,Trojan-PWS.Win32.Nilage.atk,Trojan-PSW.Win32.OnLineGames.aw,Trojan-PSW.Win32.Delf.tf,Trojan-PSW.Win32.Magania.jl,Trojan-PSW.Win32.OnLineGame.eb,Trojan-PSW.Win32.Agent.jp,Trojan-PSW.Win32.OnLineGames.cm,Trojan-PSW.Win32.Nilage.avi,Trojan-PSW.Win32.OnLineGames.de,Trojan-PSW.Win32.Nilage.acy,Trojan-PSW.Win32.OnLineGames.dt,Trojan-PSW.Win32.Nilage.awo,Trojan-PSW.Win32.OnLineGames.kw,Trojan-PSW.Win32.Nilage.bjl,Trojan-PSW.Win32.Magania.ch,Trojan-PSW.Win32.Magania.ov,Trojan-PSW.Win32.Magania.pc,Trojan.PSW.Win32.Nilage.bjk,Trojan-PSW.Win32.Magania.pw,Packed.Win32.NSAnti.n,Trojan-PSW.Win32.Nilage.aix,Trojan-PSW.Win32.Nilage.ait,Trojan-Downloader.Win32.Delf.ade,Trojan-PSW.Win32.Nilage.bjh,Trojan-PWS.Win32.Hangames.eh,Trojan-PSW.Win32.OnLineGames.d,Trojan.Win32.Agent.aac,Trojan-PSW.Win32.Nilage.aic,Trojan-PSW.Win32.Magania.hh,Trojan-PSW.Win32.OnLineGames.dl;
[McAfee]PWS-Lineage,PWS-Lineage.dll,PWS-Lineage.dr,PWS-Gamania.dll,New Malware.bc,PWS-Gamania,PWs-Mmorpg.gen;
[F-Prot]W32/PWStealer.gen1,W32/PWStealer1!Generic,W32/LineageX.CTJ;
[Other]Infostealer,Win32/Lineage.ED,Infostealer.Lineage,PWS-Lineage,Win32.Lineage.EF,Infostealer.Lemir.Gen,Win32/Lineage.DZ,W32/Lineage.BUL,Win32/Lineage!generic,Win32/Lineage.HN,Win32/Lineage.IE,Win32/Lineage.IA,Win32/Lineage.HQ,Infostealer.Uprungam,Win32/Lineage.IM,WIn32.Lineage.IX,Infostealer.Gamania,Win32.Lineage.IY,Win32.Lineage.IW,TSPY_LINEAGE.CVH,Win32/Lineage.HT,Win32/Lineage.JR,Win32/Lineage.HU,TSPY_LINEAGE.CNJ,Win32/Lineage.ER,Win32/Lineage.FB,Win32/Lineage.FF,Win32/Lineage.GV,Win32/Lineage.GW,Win32/Lineage.GX,Win32/Lineage.GY,win32/Lineage.JV,Win32/Lineage.JX,Win32.Lineage.JZ,W32/Lineage.KD,Win32/Lineage.KA,Win32/Lineage.MO,Win32/Lineage.OD,Win32/Lineage.OK,Win32/Lineage.OB,W32/Lineage.ANNO,W32/Bacalid.A,Infostealer.Wowcraft,Win32/Lineage.JB,Win32/Lineage.QS,Win32/Lineage.MB,Troj/Lineag-AEU,Win32/Lineage.TP,Win32/Lineage.SZ,Mal/Packer,Win32/Lineage.TA,Bloodhound.NsAnti,Troj/Agent-DZN,Win32/Lineage.NT,Win32/Lineage.NM,Win32/Lineage.OF,Win32/Lineage.QN,Win32/Lineage.ON,Win32/Lineage.SX,Win32/Lineage.TR,WIn32/Lineage.UU,WIn32/Lineage.KB,Win32/Lineage.OM,Win32/Lineage.TB,Win32/Lineage.UI,Win32/Lineage.UX,Win32/Lineage.VD,Win32/Lineage.VE,Win32/Lineage.VI,Win32/Lineage.RE,Win32/Lineage.RL,W32/Lineage.AOZQ,Win32/Lineage.VX,Win32/Lineage.WW,Win32/Lineage.WX,Win32/Lineage.WZ,Win32/Lineage.WY,Win32/Lineage.XA,Win32/Lineage.XM,Win32/Lineage.XN,Win32/Lineage.XO,Win32/Lineage.XR,Win32/Lineage.YI,Infostealer.Gampass,PWS:Win32/Lineage.gen!dll,Mal/EncPk-F,Win32/Lineage.YJ,Infostealer.Perfwo.B,PWS:Win32/Lineage.gen!D,Win32/Lineage.YK,PWS:Win32/Wowsteal.gen!A,W32/Viking.EQ,Mal/Behav-085,PWS:Win32/Gamania.gen!B,W32/Lineage.APDZ,Win32/Lineage.YL,W32/Lineage.AMXG,Troj/Lineag-Gen,Win32/Lineage.YX,Troj/Dloadr-AYW,TSPY_LINEAGE.FRT,Win32/Lineage.ZH,TrojanDropper:Win32/Lineage.gen,W32/Hupigon.gen67,PWS-Pinch,Win32/Lineage.ZL,Win32/Lineage.ZM

Lineage Symptoms:

Files:
[%PROGRAM_FILES%]\Windows Media Player\svchost.exe
[%SYSTEM%]\dab1.dll
[%SYSTEM%]\msdll.dll
[%SYSTEM%]\PDLL.dll
[%WINDOWS%]\af.dat
[%WINDOWS%]\rundl132.exe
[%PROFILE_TEMP%]\94f.dll
[%PROFILE_TEMP%]\a.dll
[%PROFILE_TEMP%]\cb.exe
[%PROFILE_TEMP%]\file.exe
[%PROFILE_TEMP%]\ie777.exe
[%PROFILE_TEMP%]\iesys.exe
[%PROFILE_TEMP%]\menghuan.exe
[%PROFILE_TEMP%]\mh2\iexpl0re.EXE
[%PROFILE_TEMP%]\Mhgx.dll
[%PROFILE_TEMP%]\packet.dll
[%PROFILE_TEMP%]\qq.exe
[%PROFILE_TEMP%]\sp.dat
[%PROFILE_TEMP%]\VS000025.dll
[%PROFILE_TEMP%]\wanpacket.dll
[%PROFILE_TEMP%]\wow.exe
[%PROFILE_TEMP%]\wulin.exe
[%PROFILE_TEMP%]\zhengtu.exe
[%PROGRAM_FILES%]\explord.exe
[%PROGRAM_FILES%]\Microsoft\svhost32.exe
[%PROGRAM_FILES_COMMON%]\wincreat.dll
[%SYSTEM%]\dllf.dll
[%SYSTEM%]\dllms.dll
[%SYSTEM%]\dllt.dll
[%SYSTEM%]\dllwm.dll
[%SYSTEM%]\dlyy.dll
[%SYSTEM%]\dms.dll
[%SYSTEM%]\exesfisle.exe
[%SYSTEM%]\exploreo.exe
[%SYSTEM%]\explorerf.exe
[%SYSTEM%]\givyoua.exe
[%SYSTEM%]\givyoub.exe
[%SYSTEM%]\htdll.dll
[%SYSTEM%]\qmdll.dll
[%SYSTEM%]\systemlf.dll
[%SYSTEM%]\systemlj.dll
[%SYSTEM%]\systemlo.dll
[%SYSTEM%]\tdll.dll
[%SYSTEM%]\winCreate.exe
[%SYSTEM%]\winsp2.exe
[%SYSTEM%]\wldll.dll
[%SYSTEM%]\xydll.dll
[%SYSTEM%]\ztdll.dll
[%WINDOWS%]\command\rundll32.exe
[%WINDOWS%]\Config\svhost32.exe
[%WINDOWS%]\Download\svhost32.exe
[%WINDOWS%]\down\rundll32.exe
[%WINDOWS%]\Installer\services.exe
[%WINDOWS%]\loadmx.exe
[%WINDOWS%]\mxdll32.dll
[%WINDOWS%]\tdll.dll
[%WINDOWS%]\winpsfisle.dll
[%WINDOWS%]\winvar.dll
[%PROGRAM_FILES%]\Windows Media Player\svchost.exe
[%SYSTEM%]\dab1.dll
[%SYSTEM%]\msdll.dll
[%SYSTEM%]\PDLL.dll
[%WINDOWS%]\af.dat
[%WINDOWS%]\rundl132.exe
[%PROFILE_TEMP%]\94f.dll
[%PROFILE_TEMP%]\a.dll
[%PROFILE_TEMP%]\cb.exe
[%PROFILE_TEMP%]\file.exe
[%PROFILE_TEMP%]\ie777.exe
[%PROFILE_TEMP%]\iesys.exe
[%PROFILE_TEMP%]\menghuan.exe
[%PROFILE_TEMP%]\mh2\iexpl0re.EXE
[%PROFILE_TEMP%]\Mhgx.dll
[%PROFILE_TEMP%]\packet.dll
[%PROFILE_TEMP%]\qq.exe
[%PROFILE_TEMP%]\sp.dat
[%PROFILE_TEMP%]\VS000025.dll
[%PROFILE_TEMP%]\wanpacket.dll
[%PROFILE_TEMP%]\wow.exe
[%PROFILE_TEMP%]\wulin.exe
[%PROFILE_TEMP%]\zhengtu.exe
[%PROGRAM_FILES%]\explord.exe
[%PROGRAM_FILES%]\Microsoft\svhost32.exe
[%PROGRAM_FILES_COMMON%]\wincreat.dll
[%SYSTEM%]\dllf.dll
[%SYSTEM%]\dllms.dll
[%SYSTEM%]\dllt.dll
[%SYSTEM%]\dllwm.dll
[%SYSTEM%]\dlyy.dll
[%SYSTEM%]\dms.dll
[%SYSTEM%]\exesfisle.exe
[%SYSTEM%]\exploreo.exe
[%SYSTEM%]\explorerf.exe
[%SYSTEM%]\givyoua.exe
[%SYSTEM%]\givyoub.exe
[%SYSTEM%]\htdll.dll
[%SYSTEM%]\qmdll.dll
[%SYSTEM%]\systemlf.dll
[%SYSTEM%]\systemlj.dll
[%SYSTEM%]\systemlo.dll
[%SYSTEM%]\tdll.dll
[%SYSTEM%]\winCreate.exe
[%SYSTEM%]\winsp2.exe
[%SYSTEM%]\wldll.dll
[%SYSTEM%]\xydll.dll
[%SYSTEM%]\ztdll.dll
[%WINDOWS%]\command\rundll32.exe
[%WINDOWS%]\Config\svhost32.exe
[%WINDOWS%]\Download\svhost32.exe
[%WINDOWS%]\down\rundll32.exe
[%WINDOWS%]\Installer\services.exe
[%WINDOWS%]\loadmx.exe
[%WINDOWS%]\mxdll32.dll
[%WINDOWS%]\tdll.dll
[%WINDOWS%]\winpsfisle.dll
[%WINDOWS%]\winvar.dll

Folders:
[%WINDOWS%]\Intel

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{081fe200-a103-11d7-a46d-c770e4459f2f}
HKEY_CLASSES_ROOT\clsid\{267709fd-a691-43b0-bf38-0df6887a9b44}
HKEY_CLASSES_ROOT\clsid\{a3b455d8-1ac5-4bad-9c14-1a7d2383c89c}
HKEY_CLASSES_ROOT\clsid\{d14ce39f-eed3-489a-948c-fcd588f831e7}
HKEY_CLASSES_ROOT\clsid\{fdc8d286-9948-4a86-acba-dcb4333b1207}
HKEY_CLASSES_ROOT\inetapi64.classname
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_kinga
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_kingxp
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_kingxxx
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\kei2

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows
HKEY_LOCAL_MACHINE\software\microsoft\windows
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Devil Trojan
Servu.kill DoS Information
Ideach Trojan Symptoms
Remove Win32.Cres Adware
Snavems Adware Cleaner