Sunday, January 25, 2009

SeekSeek Adware

How To Remove SeekSeek?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
SeekSeek is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.

SeekSeek Symptoms:

Files:
[%SYSTEM%]\ieasst.dll
[%SYSTEM%]\iecomp.dll
[%WINDOWS%]\system\ieasst.dll
[%WINDOWS%]\system\iecomp.dll
[%SYSTEM%]\ieasst.dll
[%SYSTEM%]\iecomp.dll
[%WINDOWS%]\system\ieasst.dll
[%WINDOWS%]\system\iecomp.dll

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{5074851c-f67a-488e-a9c9-c244573f4068}
HKEY_CLASSES_ROOT\defaultsearch.seekseek
HKEY_CLASSES_ROOT\defaultsearch.seekseek.1
HKEY_CLASSES_ROOT\interface\{39341eb6-c340-4f68-ab9d-ee4917309828}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{5074851c-f67a-488e-a9c9-c244573f4068}
HKEY_CLASSES_ROOT\typelib\{eac42c32-1fe3-4fd0-9f27-e7f9ccf5fcd9}
HKEY_LOCAL_MACHINE\software\classes\clsid\{5074851c-f67a-488e-a9c9-c244573f4068}
HKEY_LOCAL_MACHINE\software\classes\typelib\{97b4f55a-b1f8-41f3-8a4e-7844d03d9242}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{df042e4a-5577-4d32-9305-442923d7838b}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{5074851c-f67a-488e-a9c9-c244573f4068}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]/downloaded program files/uninstall_ds.ocx
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]/downloaded program files/uninstall_ds.ocx
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove PSW.Lmir.ec Trojan
Biene Trojan Removal
IRC.Posix Backdoor Symptoms
SillyDl.CXC Trojan Information

No comments: