Friday, November 14, 2008

XP.Keylogger Spyware

How To Remove XP.Keylogger?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
XP.Keylogger is dangerous virus:
Spyware is computer software that is installed surreptitiously on a personal computer
to intercept or take partial control over the user's interaction
with the computer, without the user's informed consent.

While the term spyware suggests software that secretly monitors the user's behavior,
the functions of spyware extend well beyond simple monitoring.

Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.

Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.


XP.Keylogger Symptoms:

Files:
[%DESKTOP%]\xp keylogger.lnk
[%DESKTOP%]\xp keylogger.lnk

Folders:
[%PROGRAMS%]\xp keylogger
[%PROGRAM_FILES%]\xp keylogger

Registry Keys:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\xp keylogger_is1


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:
ESDIexplorr Adware Symptoms
SillyDl.CRU Trojan Removal instruction
Pigeon.BBE Trojan Cleaner
Bancos.IBI Trojan Removal
Setial Trojan Symptoms

Comforest Trojan

How To Remove Comforest?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Comforest is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.


Comforest It also known as:

[Kaspersky]Trojan.Win32.Delf.cn;
[Other]ComforestDial,comforest dialer,W32/Delf.TWV

Comforest Symptoms:

Files:
[%DESKTOP%]\Club del Vizio - Foto Video Calendari - VM18.lnk
[%PROGRAMS%]\Club del Vizio - Foto Video Calendari - VM18.lnk
[%SYSTEM%]\Winsystemas\fotoieri.EXE
[%WINDOWS%]\$hf_mig$\KB090545\semail.exe
[%WINDOWS%]\$hf_mig$\KB090545\semail.tpl
[%WINDOWS%]\$hf_mig$\KB090545\target.dat
[%DESKTOP%]\Club del Vizio - Foto Video Calendari - VM18.lnk
[%PROGRAMS%]\Club del Vizio - Foto Video Calendari - VM18.lnk
[%SYSTEM%]\Winsystemas\fotoieri.EXE
[%WINDOWS%]\$hf_mig$\KB090545\semail.exe
[%WINDOWS%]\$hf_mig$\KB090545\semail.tpl
[%WINDOWS%]\$hf_mig$\KB090545\target.dat

Folders:
[%SYSTEM%]\Winsystemp

Registry Keys:
HKEY_CURRENT_USER\software\freeware\{491a5872-c30f-4e54-8ff1-bf31cc73dc4b}

Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\extensions\cmdmapping
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1de8619d-8dd8-40ba-8a42-e1d12f119524}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1de8619d-8dd8-40ba-8a42-e1d12f119524}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1de8619d-8dd8-40ba-8a42-e1d12f119524}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1de8619d-8dd8-40ba-8a42-e1d12f119524}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1de8619d-8dd8-40ba-8a42-e1d12f119524}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1de8619d-8dd8-40ba-8a42-e1d12f119524}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:

CommonName.Winnet Hijacker

How To Remove CommonName.Winnet?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
CommonName.Winnet is dangerous virus:
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.


CommonName.Winnet It also known as:

[Panda]Spyware/CommonName

CommonName.Winnet Symptoms:

Registry Keys:
HKEY_CLASSES_ROOT\appid\winnet.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:

SurfSideKick Adware

How To Remove SurfSideKick?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
SurfSideKick is dangerous virus:
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.



SurfSideKick Symptoms:

Files:
[%APPDATA%]\Sskcwrd.dll
[%APPDATA%]\sskdmns.dll
[%APPDATA%]\sskknwrd.dll
[%APPDATA%]\sskuknwrd.dll
[%APPDATA%]\tvmuknwrd.dll
[%COMMON_APPDATA%]\DelFin\PromulGate\delfinAD.ebd
[%COMMON_APPDATA%]\nsv\wmv0104.dbd
[%COMMON_APPDATA%]\pcsvc\delfinAD.ebd
[%PROFILE_TEMP%]\echo.exe
[%SYSTEM%]\bk.exe
[%WINDOWS%]\SS1001.exe
[%WINDOWS%]\ss1205.exe
[%WINDOWS%]\ssk3b5doublemedia.exe
[%PROFILE_TEMP%]\ic.tmp
[%PROFILE_TEMP%]\sskupdater3.exe
[%PROFILE_TEMP%]\ssk_b5.exe
[%SYSTEM%]\repairs303169572.dll
[%SYSTEM%]\repairs303169590.dll
[%WINDOWS%]\ssk3_b5.exe
[%APPDATA%]\Sskcwrd.dll
[%APPDATA%]\sskdmns.dll
[%APPDATA%]\sskknwrd.dll
[%APPDATA%]\sskuknwrd.dll
[%APPDATA%]\tvmuknwrd.dll
[%COMMON_APPDATA%]\DelFin\PromulGate\delfinAD.ebd
[%COMMON_APPDATA%]\nsv\wmv0104.dbd
[%COMMON_APPDATA%]\pcsvc\delfinAD.ebd
[%PROFILE_TEMP%]\echo.exe
[%SYSTEM%]\bk.exe
[%WINDOWS%]\SS1001.exe
[%WINDOWS%]\ss1205.exe
[%WINDOWS%]\ssk3b5doublemedia.exe
[%PROFILE_TEMP%]\ic.tmp
[%PROFILE_TEMP%]\sskupdater3.exe
[%PROFILE_TEMP%]\ssk_b5.exe
[%SYSTEM%]\repairs303169572.dll
[%SYSTEM%]\repairs303169590.dll
[%WINDOWS%]\ssk3_b5.exe

Folders:
[%PROGRAM_FILES%]\surfsidekick 3
[%PROGRAM_FILES%]\surfsidekick
[%PROGRAM_FILES%]\surfsidekick 2

Registry Keys:
HKEY_CURRENT_USER\software\surfsidekick3
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\surf sidekick
HKEY_LOCAL_MACHINE\software\surfsidekick2
HKEY_LOCAL_MACHINE\software\surfsidekick3
HKEY_CLASSES_ROOT\clsid\{000ab005-ff12-42c2-8df5-39e12e5f9c91}
HKEY_CLASSES_ROOT\clsid\{02ee5b04-f144-47bb-83fb-a60bd91b74a9}
HKEY_CLASSES_ROOT\clsid\{ca0e28fa-1afd-4c21-a8dc-70eb5be2f076}
HKEY_CURRENT_USER\software\surfsidekick
HKEY_CURRENT_USER\software\surfsidekick2
HKEY_LOCAL_MACHINE\software\microsoft\surfsidekick3
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\surf sidekick_is1

Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\urlsearchhooks
HKEY_CURRENT_USER\software\microsoft\internet explorer\urlsearchhooks
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\urlsearchhooks
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\urlsearchhooks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\software\microsoft\internet explorer\urlsearchhooks
HKEY_CURRENT_USER\software\microsoft\internet explorer\urlsearchhooks
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\urlsearchhooks
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:

BackLash Trojan

How To Remove BackLash?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
BackLash is dangerous virus:
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.


BackLash It also known as:

[Kaspersky]Backdoor.Backlash.101;
[Eset]Win32/Backlash.101 trojan;
[Computer Associates]Backdoor/AntiLamer Server family,Win32.BackLash.101

BackLash Symptoms:

Files:
[%WINDOWS%]\d3d8thk.exe
[%WINDOWS%]\d3d8thk.exe


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:

Cfow Trojan

How To Remove Cfow?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
Cfow is dangerous virus:
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.


Cfow Symptoms:

Files:
[%PROFILE_TEMP%]\acsver.ini
[%PROFILE_TEMP%]\datacache.ini
[%PROFILE_TEMP%]\_istmp1.dir\_istmp0.dir\dsetup.dll
[%PROFILE_TEMP%]\_istmp1.dir\_istmp0.dir\dsetup16.dll
[%PROFILE_TEMP%]\_istmp1.dir\_istmp0.dir\dsetup32.dll
[%PROFILE_TEMP%]\acsver.ini
[%PROFILE_TEMP%]\datacache.ini
[%PROFILE_TEMP%]\_istmp1.dir\_istmp0.dir\dsetup.dll
[%PROFILE_TEMP%]\_istmp1.dir\_istmp0.dir\dsetup16.dll
[%PROFILE_TEMP%]\_istmp1.dir\_istmp0.dir\dsetup32.dll

Folders:
[%PROGRAM_FILES%]\sysai

Registry Keys:
HKEY_CLASSES_ROOT\Interface\{B548B7D8-3D03-4AED-A6A1-4251FAD00C10}


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats:

KeenValue Hijacker

How To Remove KeenValue?
You must download trial version of "Exterminate-It" antivirus software,to check your computer instantly.
KeenValue is dangerous virus:
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.


KeenValue Symptoms:

Folders:
[%PROGRAM_FILES_COMMON%]\keenvalue
[%PROGRAM_FILES%]\common files\keenvalue


You must clean you computer ASAP !!!
Download Free Trial Version of antivirus software here, to check your computer instantly.

Also Be Aware of the Following Threats: