Sunday, December 7, 2008

ActualNames BHO

How To Remove ActualNames?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
ActualNames is dangerous virus:
The BHO (Browser Helper Object) waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.

ActualNames Symptoms:

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{bf4b360b-1717-4bea-8c5b-6936de82e8f6}
HKEY_LOCAL_MACHINE\software\classes\clsid\{33403499-e238-4f35-8f5a-7f53d24ff9e2}
HKEY_LOCAL_MACHINE\software\classes\clsid\{80751b22-3fb8-4ed9-b029-e6f568bb48a8}
HKEY_LOCAL_MACHINE\software\classes\clsid\{b9cd23f0-086d-4190-9c04-fbfa1ea09ff8}
HKEY_LOCAL_MACHINE\software\classes\clsid\{dee456f3-a075-4f60-bea0-8748d0917701}
HKEY_LOCAL_MACHINE\software\classes\interface\{33403499-e238-4f35-8f5a-7f53d24ff9e2}
HKEY_LOCAL_MACHINE\software\classes\interface\{9d81bc42-475c-4eec-9ace-07886d014c9d}
HKEY_LOCAL_MACHINE\software\classes\interface\{b9cd23f0-086d-4190-9c04-fbfa1ea09ff8}
HKEY_LOCAL_MACHINE\software\classes\typelib\{300d6635-e419-47e3-9642-6d73337684cd}
HKEY_LOCAL_MACHINE\software\classes\typelib\{4cd051dd-aa90-4c5c-bd55-ea52969be48b}
HKEY_LOCAL_MACHINE\software\classes\typelib\{7197649b-548d-41c0-b2c1-45e1d402594a}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/wuinst.dll
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\hardware\resourcemap\pnp manager\pnpmanager
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\advsearch_is1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]/dhsigned.ocx
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]/dhsigned.ocx
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]/downloaded program files/wuinst.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]/downloaded program files/wuinst.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
Kompanion Trojan Symptoms
Madjid Trojan Cleaner

No comments: