Thursday, January 29, 2009

Spectre Spyware

How To Remove Spectre?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Spectre is dangerous virus:
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.


Spectre Symptoms:

Files:
[%COMMON_PROGRAMS%]\Spectre.lnk
[%PROGRAM_FILES%]\Spectre\cc3260mt.dll
[%PROGRAM_FILES%]\Spectre\CRDE2003.dll
[%PROGRAM_FILES%]\Spectre\Database\Alias.exe
[%PROGRAM_FILES%]\Spectre\Database\cc3260mt.dll
[%PROGRAM_FILES%]\Spectre\Database\Spectre.DB
[%PROGRAM_FILES%]\Spectre\Database\Spectre.MB
[%PROGRAM_FILES%]\Spectre\Database\Spectre.PX
[%PROGRAM_FILES%]\Spectre\Database\Spectre.XG0
[%PROGRAM_FILES%]\Spectre\Database\Spectre.YG0
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.DB
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.PX
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.TV
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.VAL
[%PROGRAM_FILES%]\Spectre\EULA Spectre.rtf
[%PROGRAM_FILES%]\Spectre\Help\Information8.htm
[%PROGRAM_FILES%]\Spectre\Help\Purchase.bmp
[%PROGRAM_FILES%]\Spectre\Help\SpectreHelp.chm
[%PROGRAM_FILES%]\Spectre\IDAPI32.DLL
[%PROGRAM_FILES%]\Spectre\ILRawRead.dll
[%PROGRAM_FILES%]\Spectre\ISP2003.dll
[%PROGRAM_FILES%]\Spectre\Readme.rtf
[%PROGRAM_FILES%]\Spectre\Spectre.exe
[%PROGRAM_FILES%]\Spectre\SpectreView.dat
[%PROGRAM_FILES%]\Spectre\SpectreView.exe
[%PROGRAM_FILES%]\Spectre\Stop.exe
[%SYSTEM%]\2BB66E411A.dll
[%WINDOWS%]\Downloaded Installations\{A68F7049-C123-4DAB-9A9D-3F7CD2DAFE76}\Spectre.msi
[%WINDOWS%]\Installer\84f34a.msi
[%WINDOWS%]\Installer\{D5EF2804-0D9E-4F76-BED5-6B26CCECD785}\NewShortcut1_2.exe
[%COMMON_PROGRAMS%]\Spectre.lnk
[%PROGRAM_FILES%]\Spectre\cc3260mt.dll
[%PROGRAM_FILES%]\Spectre\CRDE2003.dll
[%PROGRAM_FILES%]\Spectre\Database\Alias.exe
[%PROGRAM_FILES%]\Spectre\Database\cc3260mt.dll
[%PROGRAM_FILES%]\Spectre\Database\Spectre.DB
[%PROGRAM_FILES%]\Spectre\Database\Spectre.MB
[%PROGRAM_FILES%]\Spectre\Database\Spectre.PX
[%PROGRAM_FILES%]\Spectre\Database\Spectre.XG0
[%PROGRAM_FILES%]\Spectre\Database\Spectre.YG0
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.DB
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.PX
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.TV
[%PROGRAM_FILES%]\Spectre\Database\SpectreInit.VAL
[%PROGRAM_FILES%]\Spectre\EULA Spectre.rtf
[%PROGRAM_FILES%]\Spectre\Help\Information8.htm
[%PROGRAM_FILES%]\Spectre\Help\Purchase.bmp
[%PROGRAM_FILES%]\Spectre\Help\SpectreHelp.chm
[%PROGRAM_FILES%]\Spectre\IDAPI32.DLL
[%PROGRAM_FILES%]\Spectre\ILRawRead.dll
[%PROGRAM_FILES%]\Spectre\ISP2003.dll
[%PROGRAM_FILES%]\Spectre\Readme.rtf
[%PROGRAM_FILES%]\Spectre\Spectre.exe
[%PROGRAM_FILES%]\Spectre\SpectreView.dat
[%PROGRAM_FILES%]\Spectre\SpectreView.exe
[%PROGRAM_FILES%]\Spectre\Stop.exe
[%SYSTEM%]\2BB66E411A.dll
[%WINDOWS%]\Downloaded Installations\{A68F7049-C123-4DAB-9A9D-3F7CD2DAFE76}\Spectre.msi
[%WINDOWS%]\Installer\84f34a.msi
[%WINDOWS%]\Installer\{D5EF2804-0D9E-4F76-BED5-6B26CCECD785}\NewShortcut1_2.exe

Registry Keys:
HKEY_CLASSES_ROOT\installer\features\4082fe5de9d067f4eb5db662ccce7d58
HKEY_CLASSES_ROOT\installer\products\4082fe5de9d067f4eb5db662ccce7d58
HKEY_CLASSES_ROOT\installer\upgradecodes\41fff91a064990b4ab14421e0ef70803
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\upgradecodes\41fff91a064990b4ab14421e0ef70803
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{d5ef2804-0d9e-4f76-bed5-6b26ccecd785}
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\spectre1

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shareddlls


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Vxidl.AKZ Trojan Information

Small.gr Downloader

How To Remove Small.gr?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Small.gr is dangerous virus:
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.


Small.gr Symptoms:

Files:
[%PROFILE%]\applic~1\srytuikb.exe
[%PROFILE%]\applic~1\srytuikb.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
SillyDl.DGX Trojan Information
AdBand Adware Cleaner
Ux Trojan Cleaner
WhenU Adware Removal

OutsBot Trojan

How To Remove OutsBot?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
OutsBot is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


OutsBot It also known as:

[Kaspersky]Backdoor.Win32.Breplibot.ai,Backdoor.Win32.SirBot.a;
[Other]Win32/OutsBot.AZ,Backdoor.Naninf.E,Troj/Stinx-W,BKDR_BREPBOT.A,Win32/OutsBot.BA

OutsBot Symptoms:

Files:
[%SYSTEM%]\svchon32.exe
[%SYSTEM%]\svchon32.exe

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
DirSpy Spyware Symptoms
Pigeon.AVAE Trojan Removal instruction
IconDrop Trojan Removal instruction

FWN Toolbar

How To Remove FWN?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
FWN is dangerous virus:
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.
It replaces your start page, continuosly open a number of pop up windows and so on.


FWN Symptoms:

Files:
[%SYSTEM%]\fwntoolbar.dll
[%SYSTEM%]\fwntoolbar.dll

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shell extensions\approved


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
PWS.GOP Trojan Removal
Remove SillyDl.CDF Trojan
Remove Dirty.Mouse Trojan

Wnad Spyware

How To Remove Wnad?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Wnad is dangerous virus:
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.


Wnad It also known as:

[McAfee]Wnad.e;
[Panda]Adware/Wnad;
[Computer Associates]Win32/AdWama.A!Trojan;
[Other]WinAD

Wnad Symptoms:

Files:
[%WINDOWS%]\wnad.dat
[%WINDOWS%]\wnad.dn
[%WINDOWS%]\wnad.exe
[%WINDOWS%]\wnad.dat
[%WINDOWS%]\wnad.dn
[%WINDOWS%]\wnad.exe

Folders:
[%PROGRAM_FILES%]\osama

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Valv.0B1 Trojan Cleaner
Remove Use.Kill2 Trojan

ProtectingTool Ransomware

How To Remove ProtectingTool?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
ProtectingTool is dangerous virus:
The term ransomware is commonly used to describe such software,
although the field known as cryptovirology predates the term "ransomware".

This type of ransom attack can be accomplished by (for example) attaching
a specially crafted file/program to an e-mail message and sending this to the victim.


ProtectingTool Symptoms:

Files:
[%DESKTOP%]\ProtectingTool.lnk
[%DESKTOP%]\ProtectingTool.lnk

Folders:
[%APPDATA%]\protectingtool
[%COMMON_PROGRAMS%]\ProtectingTool
[%PROGRAM_FILES%]\ProtectingTool
[%PROGRAM_FILES_COMMON%]\ProtectingTool

Registry Keys:
HKEY_CURRENT_USER\software\protectingtool
HKEY_LOCAL_MACHINE\software\protectingtool


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Fatalill Trojan Information
Ramerl Trojan Removal
TrojanDownloader.Win32.IstBar.gen Downloader Removal instruction
Backdoor.Osirdoor Backdoor Cleaner

webspyshield Ransomware

How To Remove webspyshield?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
webspyshield is dangerous virus:
A cryptovirus, cryptotrojan or cryptoworm is a type of
malware that encrypts the data belonging to an individual on a computer,
demanding a ransom for its restoration.

The term ransomware is commonly used to describe software that encrypts the data
belonging to an individual on a computer, demanding a ransom for its restoration.
Although the field known as cryptovirology predates the term "ransomware".


webspyshield Symptoms:

Folders:
[%PROGRAMS%]\WebSpyShield
[%PROGRAM_FILES%]\WebSpyShield

Registry Keys:
HKEY_CLASSES_ROOT\appid\webspyshield.exe
HKEY_CLASSES_ROOT\appid\{331bb5fe-6a91-45f8-ae63-33d910e1a0b0}
HKEY_CLASSES_ROOT\clsid\{2f12ebbc-8cf2-464e-9f13-cb58705d4824}
HKEY_CLASSES_ROOT\clsid\{dc87418b-0b2c-424e-900d-54f2ece15b6b}
HKEY_CURRENT_USER\software\webspyshield

Registry Values:
HKEY_CLASSES_ROOT\clsid\{e4988de7-c5db-4173-96f9-aac426af7bce}\inprocserver32
HKEY_CLASSES_ROOT\interface\{72a7be89-c627-4a6c-bbe4-ab171c51beac}\typelib
HKEY_CLASSES_ROOT\interface\{b16d65ab-ebaf-4dcd-bd17-eec7c5de790c}\typelib
HKEY_CLASSES_ROOT\interface\{ea5d3c85-6c7a-42f3-974b-216442137576}\typelib
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\webspyshield
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\webspyshield
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\webspyshield
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\webspyshield


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Free.Surfer BHO Information
PWS.BStroj Trojan Removal
Remove Pigeon.EKX Trojan
LE Trojan Cleaner
Remove Bancos.HYS Trojan

NetPal.PrizePopper BHO

How To Remove NetPal.PrizePopper?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
NetPal.PrizePopper is dangerous virus:
BHO (Browser Helper Object) Trojan.
The BHO waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
The method of network transport used by the attacker makes this Trojan unique.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.
Instead, this Trojan encodes the data with a simple XOR algorithm before placing it into
the data section of an ICMP ping packet." explained the company.


NetPal.PrizePopper Symptoms:

Files:
[%SYSTEM%]\ker7120.dll
[%SYSTEM%]\kernell32.dll
[%WINDOWS%]\system\ker7120.dll
[%WINDOWS%]\system\kernell32.dll
[%SYSTEM%]\ker7120.dll
[%SYSTEM%]\kernell32.dll
[%WINDOWS%]\system\ker7120.dll
[%WINDOWS%]\system\kernell32.dll

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{c7ade150-743d-11d4-8141-00e029626f6a}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{c7ade150-743d-11d4-8141-00e029626f6a}
HKEY_LOCAL_MACHINE\software\classes\clsid\{c7ade150-743d-11d4-8141-00e029626f6a}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{c7ade150-743d-11d4-8141-00e029626f6a}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Kantow Trojan Information
Removing Vbus Trojan
Remove Mista Trojan
Removing Moonpie.35b Backdoor
Removing Vxidl.BBV Trojan

Ieok Trojan

How To Remove Ieok?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Ieok is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


Ieok It also known as:

[Kaspersky]Trojan-Spy.Win32.Agent.ni,Trojan-SPy.Win32.Agent.ir;
[McAfee]Proxy-Agent.aj;
[Other]Win32/Ieok,Win32.Ieok.M,trojan-Spy.win32.Agent.mn,Win32.Ieok.L,Win32.Ieok.K,Win32/Ieok!generic

Ieok Symptoms:

Files:
[%WINDOWS%]\system\ctldlg32.dll
[%WINDOWS%]\system\ctldlg32.dll

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{06849e9f-c8d7-4d59-b87d-784b7d6be083}
HKEY_CLASSES_ROOT\clsid\{30569401-8721-8345-2ca1-873581cf4101}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{06849e9f-c8d7-4d59-b87d-784b7d6be083}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{30569401-8721-8345-2ca1-873581cf4101}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
OpinionBar BHO Symptoms
Bancos.GXT Trojan Cleaner
OKiller Trojan Symptoms
Removing IRC.Wup Backdoor
Upset Trojan Cleaner

Spydown Downloader

How To Remove Spydown?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Spydown is dangerous virus:
Trojans-downloaders downloads and installs new malware or adware on the computer.



Spydown It also known as:

[Kaspersky]Hoax.Win32.Renos.dw,Hoax.win32.Renos.eu,Trojan-Downloader.Win32.Zlob.jx;
[McAfee]FakeAlert-B,Spywarestrike.dldr;
[Other]Win32.Spax.AC,Adware.SpySherriff,Win32.Spydown.AB,Adware.SpySheriff,Win32/Spax!generic,Adware.spySheriff,Win32/Spax.Q,Win32/Spax.U,SpyFalcon

Spydown Symptoms:

Files:
[%SYSTEM%]\dpfwu.dll
[%SYSTEM%]\mzoeut.dll
[%SYSTEM%]\dpfwu.dll
[%SYSTEM%]\mzoeut.dll


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Bancos.GHH Trojan Symptoms
Removing Mainpean.Stardialer Adware
IRCBot.MCfg.Server Trojan Information

2nd.Thought Trojan

How To Remove 2nd.Thought?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
2nd.Thought is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.A Search hijacker redirects search results to other pages and may
transmit search and browsing data to unknown servers. An error page hijacker directs
the browser to another page, usually an advertising page, instead of the usual error
page when the requested URL is not found.


2nd.Thought It also known as:

[Kaspersky]Trojan.Win32.SecondThought.b,Trojan.Win32.SecondThought,Trojan.Win32.SecondThought.a;
[Panda]Adware/PortalScan,Spyware/BetterInet,Spyware/ClearSearch;
[Computer Associates]Win32.BettInet.E;
[Other]Adware.SecondThought,Trojan.Win32.SecondThought.c,Win32/SecondThought.G

2nd.Thought Symptoms:

Files:
[%PROFILE_TEMP%]\randreco.exe
[%PROFILE_TEMP%]\THI1EA2.tmp\VoiceIp.dll
[%PROFILE_TEMP%]\THI1EA2.tmp\VoiceIP.inf
[%PROFILE_TEMP%]\THI75D.tmp\VoiceIp.dll
[%PROFILE_TEMP%]\THI75D.tmp\VoiceIP.inf
[%PROFILE_TEMP%]\tt_unadd.inf
[%SYSTEM%]\2ndsrch.dll
[%SYSTEM%]\automove.exe_
[%SYSTEM%]\data.xml
[%SYSTEM%]\idleui.dll
[%SYSTEM%]\retpdat32.xml
[%SYSTEM%]\sp32.xml
[%SYSTEM%]\stcloader.exe
[%SYSTEM%]\swin32.dll
[%SYSTEM%]\SWRT01.dll
[%WINDOWS%]\bokja.exe
[%WINDOWS%]\jawa32.ocx
[%WINDOWS%]\stcloader.exe
[%WINDOWS%]\voiceip.dll
[%DESKTOP%]\second thought.lnk
[%DESKTOP%]\spediabar.lnk
[%PROFILE%]\administrator\start menu\programs\spediabar.lnk
[%PROFILE%]\locals~1\temp\randreco.exe
[%SYSTEM%]\automove.exe
[%SYSTEM%]\cdsm32.dll
[%WINDOWS%]\mwsvm.ocx
[%WINDOWS%]\system\idleui.dll
[%WINDOWS%]\system\stcloader.exe
[%PROFILE_TEMP%]\randreco.exe
[%PROFILE_TEMP%]\THI1EA2.tmp\VoiceIp.dll
[%PROFILE_TEMP%]\THI1EA2.tmp\VoiceIP.inf
[%PROFILE_TEMP%]\THI75D.tmp\VoiceIp.dll
[%PROFILE_TEMP%]\THI75D.tmp\VoiceIP.inf
[%PROFILE_TEMP%]\tt_unadd.inf
[%SYSTEM%]\2ndsrch.dll
[%SYSTEM%]\automove.exe_
[%SYSTEM%]\data.xml
[%SYSTEM%]\idleui.dll
[%SYSTEM%]\retpdat32.xml
[%SYSTEM%]\sp32.xml
[%SYSTEM%]\stcloader.exe
[%SYSTEM%]\swin32.dll
[%SYSTEM%]\SWRT01.dll
[%WINDOWS%]\bokja.exe
[%WINDOWS%]\jawa32.ocx
[%WINDOWS%]\stcloader.exe
[%WINDOWS%]\voiceip.dll
[%DESKTOP%]\second thought.lnk
[%DESKTOP%]\spediabar.lnk
[%PROFILE%]\administrator\start menu\programs\spediabar.lnk
[%PROFILE%]\locals~1\temp\randreco.exe
[%SYSTEM%]\automove.exe
[%SYSTEM%]\cdsm32.dll
[%WINDOWS%]\mwsvm.ocx
[%WINDOWS%]\system\idleui.dll
[%WINDOWS%]\system\stcloader.exe

Folders:
[%FAVORITES%]\ cool stuff
[%PROGRAMS%]\addestroyer
[%PROGRAM_FILES%]\clearsearch
[%PROGRAM_FILES_COMMON%]\slmss
[%PROGRAM_FILES%]\STC
[%PROFILE_TEMP%]\132.zip
[%PROGRAM_FILES%]\common files\slmss
[%PROGRAM_FILES%]\second thought
[%PROGRAM_FILES%]\stc

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{00000250-0320-4dd4-be4f-7566d2314352}
HKEY_CLASSES_ROOT\clsid\{5fa6752a-c4a0-4222-88c2-928ae5ab4966}
HKEY_CLASSES_ROOT\clsid\{965a592f-8efa-4250-8630-7960230792f1}
HKEY_CLASSES_ROOT\csie.csiecore
HKEY_CLASSES_ROOT\csie.csiecore.1
HKEY_CLASSES_ROOT\interface\{0f2a4adc-dabf-4980-8db4-19f67d7b1f95}
HKEY_CLASSES_ROOT\interface\{96b3b1b9-a510-4603-bd66-2bb2c9f21542}
HKEY_CLASSES_ROOT\typelib\{60494593-5408-447d-bd5e-a16640d6af99}
HKEY_CLASSES_ROOT\typelib\{69db5061-ff0a-418b-ada6-68ac77d69e44}
HKEY_CLASSES_ROOT\urlsearch.urlsearch.1
HKEY_CLASSES_ROOT\voiceipdll.voiceipdllobj.1
HKEY_CURRENT_USER\Software\STC
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000250-0320-4DD4-BE4F-7566D2314352}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5FA6752A-C4A0-4222-88C2-928AE5AB4966}
HKEY_CLASSES_ROOT\clsid\{13197ace-6851-45c3-a7ff-c281324d5489}
HKEY_CLASSES_ROOT\clsid\{95c60327-8e17-44d6-98eb-7eb70cc606dd}
HKEY_CURRENT_USER\software\stc
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{00000250-0320-4dd4-be4f-7566d2314352}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{5fa6752a-c4a0-4222-88c2-928ae5ab4966}

Registry Values:
HKEY_LOCAL_MACHINE\software\bokja
HKEY_LOCAL_MACHINE\software\bokja
HKEY_LOCAL_MACHINE\software\bokja
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\contextsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\contextsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\contextsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\mirrorunder
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\mirrorunder
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\mirrorunder
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\mirrorunder
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ronsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ronsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ronsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\spidersidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\spidersidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\urlsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\urlsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\urlsidebar
HKEY_LOCAL_MACHINE\software\y036
HKEY_LOCAL_MACHINE\software\bokja
HKEY_LOCAL_MACHINE\software\bokja
HKEY_LOCAL_MACHINE\software\bokja
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\contextsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\contextsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\mirrorunder
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\mirrorunder
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ronsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ronsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\spidersidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\spidersidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\urlsidebar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\urlsidebar
HKEY_LOCAL_MACHINE\software\y036


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Win95.MrKlunky Trojan Removal instruction
SillyDl.BCV Trojan Removal

Lanzardll.exe Adware

How To Remove Lanzardll.exe?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Lanzardll.exe is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


Lanzardll.exe Symptoms:

Files:
[%APPDATA%]\MATRIX\FotosSexys\LanzarDll.exe
[%APPDATA%]\MATRIX\FotosSexys\LanzarDll.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Vxidl.BBI Trojan
Agobot.bu Trojan Cleaner
Zlob.Fam.XXXSoft Trojan Cleaner
Removing How.To.Write.Buffer.Overflows DoS

Bagle.gen Trojan

How To Remove Bagle.gen?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Bagle.gen is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Bagle.gen It also known as:

[McAfee]W32/Bagle.gen;
[Other]Win32/Glieder.BP,Trojan.Tooso.Q,Troj/BagleDl-U

Bagle.gen Symptoms:

Registry Values:
HKEY_CURRENT_USER\software\firstrun
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\software\firstrun
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Pigeon.AVV Trojan
OrbitExplorer Adware Cleaner
Removing MIRC.MircGirl Trojan
Remove SillyDl.CMD Trojan

Hopee Trojan

How To Remove Hopee?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Hopee is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.


Hopee It also known as:

[Kaspersky]Trojan-Downloader.Win32.Agent.bnz;
[Other]Win32/Hopee,Win32/Hopee.A,Hacktool.Rootkit,TrojanDownloader:Win32/Agent,W32/Agent.BQGU

Hopee Symptoms:

Files:
[%SYSTEM%]\cssrss.exe
[%SYSTEM%]\nso12k.sys
[%SYSTEM%]\cssrss.exe
[%SYSTEM%]\nso12k.sys

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\driver


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Bancos.HZU Trojan Information

Calknil Trojan

How To Remove Calknil?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Calknil is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Calknil It also known as:

[Kaspersky]Backdoor.Win32.VB.bbx;
[Other]Win32/Calknil.A

Calknil Symptoms:

Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{b2e996c3-dfe0-ac08-a0e5-a9dc688dfa0f}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Ads.dbforums Tracking Cookie
Tops DoS Symptoms
Remove TrojanProxy.Win32.Agent Trojan
Bancos.GKM Trojan Symptoms
GlueJoiner Trojan Cleaner

The.Best.Offers.Network Adware

How To Remove The.Best.Offers.Network?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
The.Best.Offers.Network is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits


The.Best.Offers.Network Symptoms:

Files:
[%PROGRAM_FILES%]\TBONAS\TBONlchr.dll
[%WINDOWS%]\tboninst.cfg
[%PROGRAM_FILES%]\TBONAS\TBONlchr.dll
[%WINDOWS%]\tboninst.cfg

Folders:
[%PROGRAM_FILES%]\tbonbin

Registry Keys:
HKEY_CLASSES_ROOT\tbonac
HKEY_CURRENT_USER\software\classes\tbonac
HKEY_CURRENT_USER\software\tbon
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\tbon

Registry Values:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\kazaa host app
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\kazaa host app
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\kazaa host app
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\kazaa host app


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Cast Trojan Cleaner
Roger Trojan Removal instruction
Slodist Trojan Symptoms
Removing TrojanDownloader.Win32.Swizzor.bn Trojan

Surila Trojan

How To Remove Surila?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Surila is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.



Surila Symptoms:

Files:
[%COMMON_STARTUP%]\tcp32shlp.exe
[%SYSTEM%]\tcp32sec.sys
[%SYSTEM%]\tcp32sflt.dll
[%SYSTEM%]\tcp32shlp.exe
[%WINDOWS%]\tcp32ss.exe
[%COMMON_STARTUP%]\tcp32shlp.exe
[%SYSTEM%]\tcp32sec.sys
[%SYSTEM%]\tcp32sflt.dll
[%SYSTEM%]\tcp32shlp.exe
[%WINDOWS%]\tcp32ss.exe

Registry Keys:
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_tcp32sec
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcp32sec

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove Lemming Trojan
Removing Bancos.IAO Trojan
Win32.Davps Trojan Removal instruction
SillyDl.DEU Trojan Removal

Ursnif Trojan

How To Remove Ursnif?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Ursnif is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
Exploits use vulnerabilities in operating systems and applications to achieve the same result.


Ursnif It also known as:

[Kaspersky]Trojan-PSW.Win32.Small.bs,Trojan-PSW.win32.Small.bs,Rootkit.Win32.Agent.ef,Packed.Win32.PolyCrypt.b,Backdoor.Win32.Agent.dbz;
[McAfee]Spy-Agent.bg;
[F-Prot]W32/Trojan.BJJO;
[Panda]Trj/Downloader.MDW;
[Other]Win32/Ursnif,TSPY_GOLDUN,Infostealer.Snifula,Win32/Ursnif.A,TSPY_GOLDUN.EX,Win32/Ursnif.U,Infostealer,Win32/Ursnif.F,Win32/Ursnif.J,Hacktool.rootkit,Win32/Ursnif.K,Win32/Ursnif.AM,Win32/Ursnif.AP,Trojan:Win32/Anomaly.gen!A,Mal/AvPak,TR/Crypt.XPACK.Gen,TrojanDownloader:Win32/Small.CBA,WIn32/Ursnif.BA,Win32/Ursnif.BN,W32/Banker.CBSH

Ursnif Symptoms:

Files:
[%LOCAL_APPDATA%]\IM\Identities\{71768965-6668-44EE-B4F9-80AB7D0C616B}\Message Store\Attachments\order_37679041.0ip
[%WINDOWS%]\new_drv.sys
[%PROFILE%]\xx_ijmf.exe
[%WINDOWS%]\9129837.exe
[%WINDOWS%]\hide_evr2.sys
[%LOCAL_APPDATA%]\IM\Identities\{71768965-6668-44EE-B4F9-80AB7D0C616B}\Message Store\Attachments\order_37679041.0ip
[%WINDOWS%]\new_drv.sys
[%PROFILE%]\xx_ijmf.exe
[%WINDOWS%]\9129837.exe
[%WINDOWS%]\hide_evr2.sys

Registry Keys:
HKEY_CURRENT_USER\software\microsoft\inetdata
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_hide_evr2
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_new_drv
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\hide_evr2
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\new_drv

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Remove PWS.Mafia Trojan
Remove sptag2.com Tracking Cookie
Removing Specificpop.com Tracking Cookie
Pigeon.DZR Trojan Symptoms
GetMirar Adware Cleaner

Agent.BDO Trojan

How To Remove Agent.BDO?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Agent.BDO is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Agent.BDO It also known as:

[Kaspersky]Trojan-Dropper.Win32.Agent.bdo;
[McAfee]Generic.abc;
[F-Prot]W32/Agent.CAF;
[Other]Trojan.Dropper

Agent.BDO Symptoms:

Files:
[%WINDOWS%]\AntiAdwa.exe
[%WINDOWS%]\NTServer.DLL
[%WINDOWS%]\sclgntfys.dll
[%WINDOWS%]\winamps.dll
[%WINDOWS%]\AntiAdwa.exe
[%WINDOWS%]\NTServer.DLL
[%WINDOWS%]\sclgntfys.dll
[%WINDOWS%]\winamps.dll

Folders:
[%SYSTEM%]\system\.setupq

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{fdc9c3c0-4b00-1d11-abed-70495e710015}
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\sclgntfys
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\.setupq
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\umwdfmgr


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
WurldMedia.mbho Hijacker Information
Bancos.HKU Trojan Cleaner

RSM Backdoor

How To Remove RSM?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
RSM is dangerous virus:
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.



RSM It also known as:

[Kaspersky]Backdoor.RSM.28,Backdoor.RSM.11,Backdoor.RSM.20,Backdoor.RSM.21,Backdoor.RSM.25,Backdoor.RSM.27;
[McAfee]BackDoor-AEW;
[F-Prot]security risk or a "backdoor" program;
[Panda]Backdoor Program,Bck/RSM,Backdoor Program.LC;
[Computer Associates]Backdoor/RSM.27!Server,Backdoor/RSM.28!Server,Backdoor/RSM.21!Server,Backdoor/RSM.25!Server

RSM Symptoms:

Registry Keys:
HKEY_CLASSES_ROOT\interface\{8ba2fe8d-8506-11d4-bfe2-cb5fed326646}
HKEY_CLASSES_ROOT\interface\{8ba2fe8f-8506-11d4-bfe2-cb5fed326646}
HKEY_CLASSES_ROOT\interface\{8ba2fe91-8506-11d4-bfe2-cb5fed326646}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Removing Bancos.FYL Trojan

PCSentinel.SmokingGun Spyware

How To Remove PCSentinel.SmokingGun?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
PCSentinel.SmokingGun is dangerous virus:
Spyware is computer software that is installed surreptitiously on a personal computer
to with the computer, without the user's informed consent.


PCSentinel.SmokingGun Symptoms:

Files:
[%DESKTOP%]\PC Smoking Gun.lnk
[%DESKTOP%]\Smoking Gun!.lnk
[%DESKTOP%]\PC Smoking Gun.lnk
[%DESKTOP%]\Smoking Gun!.lnk

Folders:
[%PROGRAMS%]\PC Sentinel's Smoking Gun!
[%PROGRAMS%]\PC Sentinel's Smoking Gun! 2.0.1
[%PROGRAMS%]\PC Sentinel's Smoking Gun! 2.0.3
[%PROGRAMS%]\PC Sentinel's Smoking Gun! 2.0.4
[%PROGRAMS%]\PCSentinel's Smoking Gun!
[%PROGRAM_FILES%]\PCS\PC Sentinel's Smoking Gun!

Registry Keys:
HKEY_CURRENT_USER\software\pcs\pc sentinel's smoking gun!
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\pcsmokinggun.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\pcsmokinggun1.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\smokinggun.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\pc sentinel's smoking gun!
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\pc sentinel's smoking gun! 2.0.1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\pc sentinel's smoking gun! 2.0.3
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\pc sentinel's smoking gun! 2.0.4
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\pcsentinel's smoking gun!
HKEY_LOCAL_MACHINE\software\pcsentinel software
HKEY_LOCAL_MACHINE\software\pcs\pc sentinel's smoking gun!

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Win32.MSN.Mapto Trojan Symptoms
SillyDl.BZO Trojan Removal instruction

AdMoke Adware

How To Remove AdMoke?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
AdMoke is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
Trojans-downloaders downloads and installs new malware or adware on the computer.



AdMoke It also known as:

[Kaspersky]AdWare.Win32.AdMoke.bc;
[Other]Trojan.Downloader.Agent.NY,W32/DLoader.AIYY

AdMoke Symptoms:

Files:
[%PROFILE_TEMP%]\Skymmstp013.exe
[%PROFILE_TEMP%]\Skymmstp013.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
JS.Sepuc Trojan Symptoms
Remove Bancos.HKY Trojan

Mecapaw Trojan

How To Remove Mecapaw?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Mecapaw is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.


Mecapaw It also known as:

[Kaspersky]Trojan-Spy.Win32.Agent.pr;
[Other]Win32/Mecapaw.A,Trojan.Abwiz.F

Mecapaw Symptoms:

Files:
[%PROFILE%]\wpcem.exe
[%PROFILE%]\wpcem.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
WishBone BHO Removal instruction
Flowbye Downloader Cleaner
ICKiller Trojan Cleaner
Banload.kh Trojan Cleaner
SillyDl.CFG Trojan Removal