Wednesday, February 4, 2009

SpywareRemover Ransomware

Click here to remove SpywareRemover malware
SpywareRemover description:
SpywareRemover Category:Ransomware
A cryptovirus, cryptotrojan or cryptoworm is a type of
malware that encrypts the data belonging to an individual on a computer,
demanding a ransom for its restoration.

The term ransomware is commonly used to describe software that encrypts the data
belonging to an individual on a computer, demanding a ransom for its restoration.
Although the field known as cryptovirology predates the term "ransomware".

Detection SpywareRemover :

SpywareRemover Files:
[%WINDOWS%]\Tasks\SpywareRemover Scheduled Scan.job
[%COMMON_DESKTOPDIRECTORY%]\SpywareRemover.lnk
[%WINDOWS%]\Tasks\SpywareRemover Scheduled Scan.job
[%COMMON_DESKTOPDIRECTORY%]\SpywareRemover.lnk

SpywareRemover Folders:
[%APPDATA%]\SpywareRemover
[%PROGRAM_FILES%]\SpywareRemover
[%COMMON_PROGRAMS%]\SpywareRemover

SpywareRemover Registry Keys:
HKEY_CURRENT_USER\software\spywareremover
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\spywareremover_is1

SpywareRemover Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\shellnoroam\muicache
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing SpywareRemover:

you can run trial version of ExterminateIt, or remove SpywareRemover manually.


To completely manually remove SpywareRemover malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SpywareRemover.


Read also:
Centrport.net Tracking Cookie Information
ICU.Surf Spyware Cleaner

Tuesday, February 3, 2009

StartPage.xd Hijacker

Click here to remove StartPage.xd malware
StartPage.xd description:
StartPage.xd Category:Hijacker
Hijackers are software programs that modify users' default browser home page,
search settings, error page settings, or desktop wallpaper without adequate notice, disclosure,
or user consent.

Detection StartPage.xd :

StartPage.xd Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer
HKEY_CURRENT_USER\software\microsoft\internet explorer
HKEY_CURRENT_USER\software\microsoft\internet explorer
HKEY_CURRENT_USER\software\microsoft\internet explorer

Removing StartPage.xd:

you can run trial version of ExterminateIt, or remove StartPage.xd manually.


To completely manually remove StartPage.xd malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with StartPage.xd.


Read also:
abnad.net Tracking Cookie Removal instruction
Dead.Locked DoS Symptoms
Remove SYS Trojan
IRC.Pipe DoS Symptoms

Lemir.ci Trojan

Click here to remove Lemir.ci malware
Lemir.ci description:
Lemir.ci Category:Trojan,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.

Removing Lemir.ci:

you can run trial version of ExterminateIt, or remove Lemir.ci manually.


To completely manually remove Lemir.ci malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Lemir.ci.


Read also:
PSW.Ring0 Trojan Removal

Proteboy Trojan

Click here to remove Proteboy malware
Proteboy description:
Proteboy Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Proteboy:

you can run trial version of ExterminateIt, or remove Proteboy manually.


To completely manually remove Proteboy malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Proteboy.


Read also:
Homer.worm Trojan Removal instruction
FDoS.Floods DoS Symptoms
Remove SurfPlayer Adware
Pigeon.AMN Trojan Information

PWS.MSNSteal Trojan

Click here to remove PWS.MSNSteal malware
PWS.MSNSteal description:
PWS.MSNSteal Category:Trojan,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.

Removing PWS.MSNSteal:

you can run trial version of ExterminateIt, or remove PWS.MSNSteal manually.


To completely manually remove PWS.MSNSteal malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PWS.MSNSteal.


Read also:
Remove SuxxProxy Trojan
Phoenix.ServerDLL Trojan Removal

QFat24 Trojan

Click here to remove QFat24 malware
QFat24 description:
QFat24 Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing QFat24:

you can run trial version of ExterminateIt, or remove QFat24 manually.


To completely manually remove QFat24 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with QFat24.


Read also:
Stilen Trojan Removal
Remove Pigeon.ATY Trojan
YP Trojan Removal
Remove Errorpanel Hostile Code

Rkl.setup Spyware

Click here to remove Rkl.setup malware
Rkl.setup description:
Rkl.setup Category:Spyware
Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.

Removing Rkl.setup:

you can run trial version of ExterminateIt, or remove Rkl.setup manually.


To completely manually remove Rkl.setup malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Rkl.setup.


Read also:
SillyDl.DKW Trojan Cleaner
Bancos.GPW Trojan Information
Shithead Trojan Symptoms
Remove AUpdate Adware
Bancos.HKM Trojan Information

The.Ripperz.IP.Mail RAT

Click here to remove The.Ripperz.IP.Mail malware
The.Ripperz.IP.Mail description:
The.Ripperz.IP.Mail Category:RAT
Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Removing The.Ripperz.IP.Mail:

you can run trial version of ExterminateIt, or remove The.Ripperz.IP.Mail manually.


To completely manually remove The.Ripperz.IP.Mail malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with The.Ripperz.IP.Mail.


Read also:
PSW.QQpass Trojan Cleaner
PWS.Fake Trojan Symptoms

Pigeon.APO Trojan

Click here to remove Pigeon.APO malware
Pigeon.APO description:
Pigeon.APO Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Pigeon.APO :

Pigeon.APO Registry Keys:
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_windows_applitcation_log
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\windows applitcation log

Removing Pigeon.APO:

you can run trial version of ExterminateIt, or remove Pigeon.APO manually.


To completely manually remove Pigeon.APO malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.APO.


Read also:
SearchRevelancy Adware Information
FilterProgram Ransomware Symptoms
Drawa Trojan Symptoms

Bancos.IBG Trojan

Click here to remove Bancos.IBG malware
Bancos.IBG description:
Bancos.IBG Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.IBG:

you can run trial version of ExterminateIt, or remove Bancos.IBG manually.


To completely manually remove Bancos.IBG malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.IBG.


Read also:
Pigeon.AMS Trojan Removal instruction
Houndblaster Trojan Removal instruction
KeyHookDLL Trojan Information
Remove Lolita Trojan

Vxidl.AHX Trojan

Click here to remove Vxidl.AHX malware
Vxidl.AHX description:
Vxidl.AHX Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Vxidl.AHX:

you can run trial version of ExterminateIt, or remove Vxidl.AHX manually.


To completely manually remove Vxidl.AHX malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.AHX.


Read also:
Poetry@M Trojan Removal instruction

Bancos.FXI Trojan

Click here to remove Bancos.FXI malware
Bancos.FXI description:
Bancos.FXI Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.FXI:

you can run trial version of ExterminateIt, or remove Bancos.FXI manually.


To completely manually remove Bancos.FXI malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.FXI.


Read also:
BridgeW Backdoor Cleaner
Removing Socha Trojan

TrojanDownloader.Win32.Small.dg Trojan

Click here to remove TrojanDownloader.Win32.Small.dg malware
TrojanDownloader.Win32.Small.dg description:
TrojanDownloader.Win32.Small.dg Category:Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Removing TrojanDownloader.Win32.Small.dg:

you can run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Small.dg manually.


To completely manually remove TrojanDownloader.Win32.Small.dg malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Small.dg.


Read also:
Vxidl.AMQ Trojan Removal
Removing GetMirar Adware

Grokster Adware

Click here to remove Grokster malware
Grokster description:
Grokster Category:Adware,Worm,Hijacker,Toolbar
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

Worms can be classified according to the propagation method they use,
i.e. how they deliver copies of themselves to new victim machines.
Worms can also be classified by installation method, launch method and finally according
to characteristics standard to all malware: polymorphism, stealth etc.

Many of the worms which managed to cause significant outbreaks use more then
one propagation method as well as more than one infection technique.
The methods are listed separately below.
When the default home page is hijacked, the browser opens to the web page set by the hijacker
instead of the user's designated home page. In some cases, the hijacker may block users from
restoring their desired home page.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.
It replaces your start page, continuosly open a number of pop up windows and so on.

Detection Grokster :

Grokster Files:
[%DESKTOP%]\get $10 free now at zodiac casino.url
[%DESKTOP%]\high rollers club casino.url
[%DESKTOP%]\my grokster files.lnk
[%DESKTOP%]\my grokster.lnk
[%DESKTOP%]\spors interaction casino.url
[%DESKTOP%]\sportsbook.url
[%PROFILE%]\administrator\start menu\programs\grokster\check for grokster updates.lnk
[%PROFILE%]\administrator\start menu\programs\grokster\grokster on the web.lnk
[%PROFILE%]\administrator\start menu\programs\grokster\launch grokster.lnk
[%PROFILE%]\administrator\start menu\programs\grokster\my grokster files.lnk
[%PROFILE%]\administrator\start menu\sportsbook.url
[%PROFILE_TEMP%]\cpr_in.exe
[%PROFILE_TEMP%]\ferretbar.exe
[%PROFILE_TEMP%]\grokstersetup.exe
[%PROFILE_TEMP%]\inst_bpc.exe
[%PROFILE_TEMP%]\searchlocate.exe
[%PROFILE_TEMP%]\supportinstall.exe
[%PROFILE_TEMP%]\sysren.exe
[%PROGRAMS%]\grokster\check for grokster updates.lnk
[%PROGRAMS%]\grokster\grokster on the web.lnk
[%PROGRAMS%]\grokster\launch grokster.lnk
[%PROGRAMS%]\grokster\my grokster files.lnk
[%PROGRAMS%]\grokster\uninstall grokster.lnk
[%STARTUP%]\update grokster.lnk
[%SYSTEM%]\gr03.dll
[%SYSTEM%]\gr0ck03.dll
[%WINDOWS%]\cache371\b_371_0_1_503300.htm
[%WINDOWS%]\cache371\b_371_0_1_523000.htm
[%WINDOWS%]\cache371\b_371_0_1_532400.htm
[%WINDOWS%]\cache371\b_371_0_1_534700.htm
[%WINDOWS%]\cache371\b_371_0_1_537300.htm
[%WINDOWS%]\cache371\b_525100.htm
[%WINDOWS%]\cache371\b_561000.htm
[%WINDOWS%]\cache371\t_b_371_2_1_577800.htm
[%WINDOWS%]\cache371\t_b_371_2_1_755100.htm
[%WINDOWS%]\cache371\t_b_371_2_2_568100.htm
[%WINDOWS%]\cache371\t_b_371_2_2_570100.htm
[%WINDOWS%]\cache371\t_b_371_2_2_572300.htm
[%WINDOWS%]\cache371\t_b_371_2_2_573900.htm
[%WINDOWS%]\cache371\t_b_371_2_2_576000.htm
[%WINDOWS%]\cache371\t_b_371_2_2_703900.htm
[%WINDOWS%]\cache371\t_b_371_2_3_778600.htm
[%WINDOWS%]\cache371\t_b_501000.htm
[%WINDOWS%]\cache371\t_b_525100.htm
[%WINDOWS%]\cache371\t_b_561000.htm
[%WINDOWS%]\cache371\t_b_605600.htm
[%WINDOWS%]\cache371\t_b_605800.htm
[%DESKTOP%]\get $10 free now at zodiac casino.url
[%DESKTOP%]\high rollers club casino.url
[%DESKTOP%]\my grokster files.lnk
[%DESKTOP%]\my grokster.lnk
[%DESKTOP%]\spors interaction casino.url
[%DESKTOP%]\sportsbook.url
[%PROFILE%]\administrator\start menu\programs\grokster\check for grokster updates.lnk
[%PROFILE%]\administrator\start menu\programs\grokster\grokster on the web.lnk
[%PROFILE%]\administrator\start menu\programs\grokster\launch grokster.lnk
[%PROFILE%]\administrator\start menu\programs\grokster\my grokster files.lnk
[%PROFILE%]\administrator\start menu\sportsbook.url
[%PROFILE_TEMP%]\cpr_in.exe
[%PROFILE_TEMP%]\ferretbar.exe
[%PROFILE_TEMP%]\grokstersetup.exe
[%PROFILE_TEMP%]\inst_bpc.exe
[%PROFILE_TEMP%]\searchlocate.exe
[%PROFILE_TEMP%]\supportinstall.exe
[%PROFILE_TEMP%]\sysren.exe
[%PROGRAMS%]\grokster\check for grokster updates.lnk
[%PROGRAMS%]\grokster\grokster on the web.lnk
[%PROGRAMS%]\grokster\launch grokster.lnk
[%PROGRAMS%]\grokster\my grokster files.lnk
[%PROGRAMS%]\grokster\uninstall grokster.lnk
[%STARTUP%]\update grokster.lnk
[%SYSTEM%]\gr03.dll
[%SYSTEM%]\gr0ck03.dll
[%WINDOWS%]\cache371\b_371_0_1_503300.htm
[%WINDOWS%]\cache371\b_371_0_1_523000.htm
[%WINDOWS%]\cache371\b_371_0_1_532400.htm
[%WINDOWS%]\cache371\b_371_0_1_534700.htm
[%WINDOWS%]\cache371\b_371_0_1_537300.htm
[%WINDOWS%]\cache371\b_525100.htm
[%WINDOWS%]\cache371\b_561000.htm
[%WINDOWS%]\cache371\t_b_371_2_1_577800.htm
[%WINDOWS%]\cache371\t_b_371_2_1_755100.htm
[%WINDOWS%]\cache371\t_b_371_2_2_568100.htm
[%WINDOWS%]\cache371\t_b_371_2_2_570100.htm
[%WINDOWS%]\cache371\t_b_371_2_2_572300.htm
[%WINDOWS%]\cache371\t_b_371_2_2_573900.htm
[%WINDOWS%]\cache371\t_b_371_2_2_576000.htm
[%WINDOWS%]\cache371\t_b_371_2_2_703900.htm
[%WINDOWS%]\cache371\t_b_371_2_3_778600.htm
[%WINDOWS%]\cache371\t_b_501000.htm
[%WINDOWS%]\cache371\t_b_525100.htm
[%WINDOWS%]\cache371\t_b_561000.htm
[%WINDOWS%]\cache371\t_b_605600.htm
[%WINDOWS%]\cache371\t_b_605800.htm

Grokster Folders:
[%PROFILE%]\documents\softwrap\groksterfrtrial1
[%PROFILE%]\start menu\programs\grokster
[%PROGRAM_FILES%]\gatinst
[%PROGRAM_FILES%]\grokster
[%PROGRAM_FILES%]\grokstersupport

Grokster Registry Keys:
HKEY_CLASSES_ROOT\bidll.bidllobj.1
HKEY_CLASSES_ROOT\clsid\{952ec978-4920-4f18-8237-91d69b54c580}
HKEY_CLASSES_ROOT\clsid\{d6ca5d91-5ea2-4654-9b75-499267012611}
HKEY_CLASSES_ROOT\interface\{43e7f027-c2d6-41b3-a5de-261e0e42211c}
HKEY_CLASSES_ROOT\interface\{92b1c4ac-39a6-469c-a1e4-bd3ddc6f8425}
HKEY_CLASSES_ROOT\magnet
HKEY_CLASSES_ROOT\signingmodule.signingmodule
HKEY_CLASSES_ROOT\signingmodule.signingmodule.1
HKEY_CLASSES_ROOT\typelib\{5830698f-7fc0-40cd-a453-9a0cafdf3a64}
HKEY_CLASSES_ROOT\typelib\{676f6d1d-c559-42a9-860b-27c1477b7179}
HKEY_CLASSES_ROOT\typelib\{c03ec1bf-654e-4b01-bd4e-0902ad31f8c6}
HKEY_CURRENT_USER\software\grokster
HKEY_LOCAL_MACHINE\software\grokster
HKEY_LOCAL_MACHINE\software\microsoft\mediaplayer\shimexclusionlist\grokster.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\grokster
HKEY_LOCAL_MACHINE\software\wast
HKEY_LOCAL_MACHINE\software\wise solutions\wiseupdate\apps\grokster

Grokster Registry Values:
HKEY_CURRENT_USER\software\appconf
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser
HKEY_CURRENT_USER\software\softomate\batoolbar
HKEY_CURRENT_USER\software\softomate\batoolbar
HKEY_CURRENT_USER\software\softomate\batoolbar
HKEY_CURRENT_USER\software\softomate\batoolbar
HKEY_CURRENT_USER\software\softomate\batoolbar
HKEY_CURRENT_USER\software\softomate\batoolbar
HKEY_LOCAL_MACHINE\software\dvx
HKEY_LOCAL_MACHINE\software\dvx
HKEY_LOCAL_MACHINE\software\dvx
HKEY_LOCAL_MACHINE\software\dvx
HKEY_LOCAL_MACHINE\software\dvx
HKEY_LOCAL_MACHINE\software\lnplpp
HKEY_LOCAL_MACHINE\software\lnplpp
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\main
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\control panel\cpls
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\products\c8d617f6f8933d11581e000540386890\usage
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\relevantknowledge
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\relevantknowledge
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\toolbarbesttoolbarstoolbar.besttoolbarstoolbarobjectietoolbar
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\sys ren
HKEY_LOCAL_MACHINE\software\wise solutions\wiseupdate\apppaths

Removing Grokster:

you can run trial version of ExterminateIt, or remove Grokster manually.


To completely manually remove Grokster malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Grokster.


Read also:
ShellDoor Trojan Symptoms
Canadian Trojan Information
Removing Ultimate Cleaner Ransomware
Removing Nuvens.JU+B49168 Trojan
FastTracker Spyware Symptoms

Bancos.ING Trojan

Click here to remove Bancos.ING malware
Bancos.ING description:
Bancos.ING Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Bancos.ING :

Bancos.ING Files:
[%SYSTEM%]\MEGATRON.ini
[%WINDOWS%]\ponto.DLL
[%SYSTEM%]\MEGATRON.ini
[%WINDOWS%]\ponto.DLL

Bancos.ING Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Bancos.ING:

you can run trial version of ExterminateIt, or remove Bancos.ING manually.


To completely manually remove Bancos.ING malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.ING.


Read also:
NakedBind Trojan Removal instruction
Thorin Trojan Cleaner
Pigeon.AVQZ Trojan Information
Remove Sex.Cookie Tracking Cookie
Remove Connector Trojan

Monday, February 2, 2009

Soldier Trojan

Click here to remove Soldier malware
Soldier description:
Soldier Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Soldier:

you can run trial version of ExterminateIt, or remove Soldier manually.


To completely manually remove Soldier malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Soldier.


Read also:
microsoft.com Tracking Cookie Symptoms
Removing Montana Trojan

Maright Trojan

Click here to remove Maright malware
Maright description:
Maright Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Maright:

you can run trial version of ExterminateIt, or remove Maright manually.


To completely manually remove Maright malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Maright.


Read also:
Maxicods Trojan Removal instruction
Remove Amecisco.Invisible.KeyLogger.Stealth Spyware

af Trojan

Click here to remove af malware
af description:
af Category:Trojan,Adware,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.

Detection af :

af Files:
[%WINDOWS%]\wiesasp.0ll
[%WINDOWS%]\wiesasp.0ll

Removing af:

you can run trial version of ExterminateIt, or remove af manually.


To completely manually remove af malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with af.


Read also:
QDel114 Trojan Removal
Removing School.Server Trojan
Remove Bancos.BBK Trojan
Bunga Trojan Symptoms
DlRage Trojan Removal instruction

Bancos.IJM Trojan

Click here to remove Bancos.IJM malware
Bancos.IJM description:
Bancos.IJM Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.IJM:

you can run trial version of ExterminateIt, or remove Bancos.IJM manually.


To completely manually remove Bancos.IJM malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.IJM.


Read also:
Infected DoS Removal
Remove SillyDl.DJI Downloader
Vxidl.ANE Trojan Information
AUJ Trojan Removal instruction
Removing Spy.Striker Trojan

Pigeon.AVFA Trojan

Click here to remove Pigeon.AVFA malware
Pigeon.AVFA description:
Pigeon.AVFA Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AVFA:

you can run trial version of ExterminateIt, or remove Pigeon.AVFA manually.


To completely manually remove Pigeon.AVFA malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVFA.


Read also:
Interneter Trojan Removal instruction
Remove Intended.Rajaat Trojan

Pigeon.ENA Trojan

Click here to remove Pigeon.ENA malware
Pigeon.ENA description:
Pigeon.ENA Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.ENA:

you can run trial version of ExterminateIt, or remove Pigeon.ENA manually.


To completely manually remove Pigeon.ENA malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.ENA.


Read also:
Bancos.FZU Trojan Information
ZA.Killer Trojan Information
Clodpuntor Trojan Cleaner
Vxidl.BDZ Trojan Removal instruction
Regap Backdoor Symptoms

Bancos.IGI Trojan

Click here to remove Bancos.IGI malware
Bancos.IGI description:
Bancos.IGI Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.IGI:

you can run trial version of ExterminateIt, or remove Bancos.IGI manually.


To completely manually remove Bancos.IGI malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.IGI.


Read also:
Vxidl.AJA Trojan Symptoms
Pigeon.ETA Trojan Removal
SpyDldr.J Trojan Symptoms
Austr.Para Trojan Symptoms
Bancos.HTD Trojan Removal

Backdoor.Zombam.Server Trojan

Click here to remove Backdoor.Zombam.Server malware
Backdoor.Zombam.Server description:
Backdoor.Zombam.Server Category:Trojan,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing Backdoor.Zombam.Server:

you can run trial version of ExterminateIt, or remove Backdoor.Zombam.Server manually.


To completely manually remove Backdoor.Zombam.Server malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Backdoor.Zombam.Server.


Read also:
Vxidl.AGZ Trojan Removal instruction
HRVG Backdoor Cleaner
Bancos.IEW Trojan Information
PWS.Fib Trojan Cleaner

HLLP.ImageMaker Trojan

Click here to remove HLLP.ImageMaker malware
HLLP.ImageMaker description:
HLLP.ImageMaker Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing HLLP.ImageMaker:

you can run trial version of ExterminateIt, or remove HLLP.ImageMaker manually.


To completely manually remove HLLP.ImageMaker malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with HLLP.ImageMaker.


Read also:
SillyDl.DGF Trojan Removal
Removing Bancos.GXX Trojan
Trojan.Clicker.Win32.VB.bw Trojan Information
Maniadoor Backdoor Information

Frethog.ACD Trojan

Click here to remove Frethog.ACD malware
Frethog.ACD description:
Frethog.ACD Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Frethog.ACD:

you can run trial version of ExterminateIt, or remove Frethog.ACD manually.


To completely manually remove Frethog.ACD malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Frethog.ACD.


Read also:
Akosh Trojan Removal instruction
SdBot.HA Worm Cleaner
Remove Backdoor.VB.Unknown.Server Trojan
Ill.ICQ.Notify Trojan Removal

Vxidl.ACN Trojan

Click here to remove Vxidl.ACN malware
Vxidl.ACN description:
Vxidl.ACN Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Vxidl.ACN:

you can run trial version of ExterminateIt, or remove Vxidl.ACN manually.


To completely manually remove Vxidl.ACN malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.ACN.


Read also:
Removing Bancos.GFV Trojan
EZ.Keylogger Spyware Removal instruction
Removing Bancos.IEB Trojan
Remove Pigeon.ENE Trojan

MyData RAT

Click here to remove MyData malware
MyData description:
MyData Category:RAT
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.
They usually do whimsical things like flip the screen upside-down, open the CD-ROM tray,
and swap mouse buttons. However, they can be quite hard to remove.

Removing MyData:

you can run trial version of ExterminateIt, or remove MyData manually.


To completely manually remove MyData malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with MyData.


Read also:
Removing Implia Trojan
Vxidl.APZ Trojan Removal
Bancos.FVC Trojan Symptoms

Queen Backdoor

Click here to remove Queen malware
Queen description:
Queen Category:Backdoor,RAT
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Removing Queen:

you can run trial version of ExterminateIt, or remove Queen manually.


To completely manually remove Queen malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Queen.


Read also:
Bancos.IFJ Trojan Removal
InternetDelivery Adware Removal instruction
Tefut Trojan Cleaner

Win32.Agent.bt Trojan

Click here to remove Win32.Agent.bt malware
Win32.Agent.bt description:
Win32.Agent.bt Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Win32.Agent.bt:

you can run trial version of ExterminateIt, or remove Win32.Agent.bt manually.


To completely manually remove Win32.Agent.bt malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Agent.bt.


Read also:
Bancos.GTQ Trojan Cleaner
VSToolBar Adware Cleaner
WebClaw DoS Removal
Tasmer.version RAT Symptoms
Removing Harvester Trojan

Sunday, February 1, 2009

Pigeon.BAI Trojan

Click here to remove Pigeon.BAI malware
Pigeon.BAI description:
Pigeon.BAI Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.BAI:

you can run trial version of ExterminateIt, or remove Pigeon.BAI manually.


To completely manually remove Pigeon.BAI malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.BAI.


Read also:
Datacrime.Ib Trojan Information

EZ.Killa Trojan

Click here to remove EZ.Killa malware
EZ.Killa description:
EZ.Killa Category:Trojan,Backdoor,RAT
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Removing EZ.Killa:

you can run trial version of ExterminateIt, or remove EZ.Killa manually.


To completely manually remove EZ.Killa malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with EZ.Killa.


Read also:
Broomop Trojan Symptoms
AckCmd RAT Removal instruction
AntiKeyb Trojan Information

JScript.GodMessage Worm

Click here to remove JScript.GodMessage malware
JScript.GodMessage description:
JScript.GodMessage Category:Worm,Hacker Tool
Many of the worms which managed to cause significant outbreaks use more then
one propagation method as well as more than one infection technique.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing JScript.GodMessage:

you can run trial version of ExterminateIt, or remove JScript.GodMessage manually.


To completely manually remove JScript.GodMessage malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with JScript.GodMessage.


Read also:
Caracas Trojan Symptoms
Win32.Rebooter Trojan Information

SpyDldr.J Trojan

Click here to remove SpyDldr.J malware
SpyDldr.J description:
SpyDldr.J Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Detection SpyDldr.J :

SpyDldr.J Files:
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\Antispyware Soldier.lnk
[%DESKTOP%]\Antispyware Soldier.lnk
[%PROFILE%]\cmd.exe
[%PROFILE%]\start
[%PROGRAM_FILES%]\Antispyware Soldier\antispysoldier.url
[%PROGRAM_FILES%]\Antispyware Soldier\unins000.dat
[%STARTUP%]\antispysoldier.lnk
[%SYSTEM%]\a.exe
[%SYSTEM%]\alxres.dll
[%SYSTEM%]\bridge.dll
[%SYSTEM%]\dailytoolbar.dll
[%SYSTEM%]\jao.dll
[%SYSTEM%]\lfd.dat
[%SYSTEM%]\oiso.bin
[%SYSTEM%]\questmod.dll
[%SYSTEM%]\runsrv32.dll
[%SYSTEM%]\runsrv32.exe
[%SYSTEM%]\sumsw32.exe
[%SYSTEM%]\SUSP.exe
[%SYSTEM%]\tcpservice2.exe
[%SYSTEM%]\txfdb32.dll
[%SYSTEM%]\udpmod.dll
[%SYSTEM%]\wstart.dll
[%WINDOWS%]\alexaie.dll
[%WINDOWS%]\alxie328.dll
[%WINDOWS%]\alxtb1.dll
[%WINDOWS%]\bg_bg.gif
[%WINDOWS%]\big_red_x.gif
[%WINDOWS%]\BTGrab.dll
[%WINDOWS%]\buy_now.gif
[%WINDOWS%]\click_for_free_scan.gif
[%WINDOWS%]\close_ico.gif
[%WINDOWS%]\dlmax.dll
[%WINDOWS%]\download.gif
[%WINDOWS%]\download_product.gif
[%WINDOWS%]\free_scan_red_btn.gif
[%WINDOWS%]\icon_warning_big.gif
[%WINDOWS%]\infected_top_bg.gif
[%WINDOWS%]\logo.gif
[%WINDOWS%]\navibar_bg.gif
[%WINDOWS%]\navibar_corner_left.gif
[%WINDOWS%]\navibar_corner_right.gif
[%WINDOWS%]\product_box.gif
[%WINDOWS%]\Pynix.dll
[%WINDOWS%]\red_warning_ico.gif
[%WINDOWS%]\remove_spyware_header.gif
[%WINDOWS%]\safe_and_trusted.gif
[%WINDOWS%]\spyware_detected.gif
[%WINDOWS%]\susp.exe
[%WINDOWS%]\yellow_warning_ico.gif
[%WINDOWS%]\yod.htm
[%WINDOWS%]\ZServ.dll
[%APPDATA%]\Microsoft\Internet Explorer\Quick Launch\Antispyware Soldier.lnk
[%DESKTOP%]\Antispyware Soldier.lnk
[%PROFILE%]\cmd.exe
[%PROFILE%]\start
[%PROGRAM_FILES%]\Antispyware Soldier\antispysoldier.url
[%PROGRAM_FILES%]\Antispyware Soldier\unins000.dat
[%STARTUP%]\antispysoldier.lnk
[%SYSTEM%]\a.exe
[%SYSTEM%]\alxres.dll
[%SYSTEM%]\bridge.dll
[%SYSTEM%]\dailytoolbar.dll
[%SYSTEM%]\jao.dll
[%SYSTEM%]\lfd.dat
[%SYSTEM%]\oiso.bin
[%SYSTEM%]\questmod.dll
[%SYSTEM%]\runsrv32.dll
[%SYSTEM%]\runsrv32.exe
[%SYSTEM%]\sumsw32.exe
[%SYSTEM%]\SUSP.exe
[%SYSTEM%]\tcpservice2.exe
[%SYSTEM%]\txfdb32.dll
[%SYSTEM%]\udpmod.dll
[%SYSTEM%]\wstart.dll
[%WINDOWS%]\alexaie.dll
[%WINDOWS%]\alxie328.dll
[%WINDOWS%]\alxtb1.dll
[%WINDOWS%]\bg_bg.gif
[%WINDOWS%]\big_red_x.gif
[%WINDOWS%]\BTGrab.dll
[%WINDOWS%]\buy_now.gif
[%WINDOWS%]\click_for_free_scan.gif
[%WINDOWS%]\close_ico.gif
[%WINDOWS%]\dlmax.dll
[%WINDOWS%]\download.gif
[%WINDOWS%]\download_product.gif
[%WINDOWS%]\free_scan_red_btn.gif
[%WINDOWS%]\icon_warning_big.gif
[%WINDOWS%]\infected_top_bg.gif
[%WINDOWS%]\logo.gif
[%WINDOWS%]\navibar_bg.gif
[%WINDOWS%]\navibar_corner_left.gif
[%WINDOWS%]\navibar_corner_right.gif
[%WINDOWS%]\product_box.gif
[%WINDOWS%]\Pynix.dll
[%WINDOWS%]\red_warning_ico.gif
[%WINDOWS%]\remove_spyware_header.gif
[%WINDOWS%]\safe_and_trusted.gif
[%WINDOWS%]\spyware_detected.gif
[%WINDOWS%]\susp.exe
[%WINDOWS%]\yellow_warning_ico.gif
[%WINDOWS%]\yod.htm
[%WINDOWS%]\ZServ.dll

SpyDldr.J Folders:
[%COMMON_PROGRAMS%]\Antispyware Soldier
[%PROGRAM_FILES%]\Antispyware Soldier

SpyDldr.J Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{00000000-59D4-4008-9058-080011001200}
HKEY_CLASSES_ROOT\CLSID\{00000000-C1EC-0345-6EC2-4D0300000000}
HKEY_CLASSES_ROOT\CLSID\{00000000-F09C-02B4-6EC2-AD0300000000}
HKEY_CLASSES_ROOT\CLSID\{3ceff6cd-6f08-4e4d-bccd-ff7415288c3b}
HKEY_CLASSES_ROOT\CLSID\{7b55bb05-0b4d-44fd-81a6-b136188f5deb}
HKEY_CLASSES_ROOT\CLSID\{8333C319-0669-4893-A418-F56D9249FCA6}
HKEY_CLASSES_ROOT\CLSID\{E52DEDBB-D168-4BDB-B229-C48160800E81}
HKEY_CURRENT_USER\Software\ADV
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000000-59D4-4008-9058-080011001200}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000000-C1EC-0345-6EC2-4D0300000000}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000000-F09C-02B4-6EC2-AD0300000000}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3ceff6cd-6f08-4e4d-bccd-ff7415288c3b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7b55bb05-0b4d-44fd-81a6-b136188f5deb}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8333c319-0669-4893-a418-f56d9249fca6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9c691a33-7dda-4c2f-be4c-c176083f35cf}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e52dedbb-d168-4bdb-b229-c48160800e81}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ffd2825e-0785-40c5-9a41-518f53a8261f}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Antispyware Soldier_is1

SpyDldr.J Registry Values:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run

Removing SpyDldr.J:

you can run trial version of ExterminateIt, or remove SpyDldr.J manually.


To completely manually remove SpyDldr.J malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SpyDldr.J.


Read also:
Pigeon.AVEZ Trojan Symptoms

Pigeon.ECO Trojan

Click here to remove Pigeon.ECO malware
Pigeon.ECO description:
Pigeon.ECO Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.ECO:

you can run trial version of ExterminateIt, or remove Pigeon.ECO manually.


To completely manually remove Pigeon.ECO malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.ECO.


Read also:
Vxidl.BDZ Trojan Symptoms
Remote Backdoor Removal instruction
Volk Backdoor Information
MSNCookie Trojan Symptoms

Bancos.HPL Trojan

Click here to remove Bancos.HPL malware
Bancos.HPL description:
Bancos.HPL Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.HPL:

you can run trial version of ExterminateIt, or remove Bancos.HPL manually.


To completely manually remove Bancos.HPL malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.HPL.


Read also:
Removing Hell.Mass.Dcc.&.Spreader Worm
Project.Mayhem Backdoor Removal instruction

Phoenix.ServerDLL Trojan

Click here to remove Phoenix.ServerDLL malware
Phoenix.ServerDLL description:
Phoenix.ServerDLL Category:Trojan,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Phoenix.ServerDLL:

you can run trial version of ExterminateIt, or remove Phoenix.ServerDLL manually.


To completely manually remove Phoenix.ServerDLL malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Phoenix.ServerDLL.


Read also:
Vxidl.AEL Trojan Removal
Vxidl.AAG Trojan Cleaner

Dragodor Trojan

Click here to remove Dragodor malware
Dragodor description:
Dragodor Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Dragodor:

you can run trial version of ExterminateIt, or remove Dragodor manually.


To completely manually remove Dragodor malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Dragodor.


Read also:
Remove KBDPQL1 BHO
IRC.Client DoS Removal instruction
Remove Safety Bar Trojan
SillyDl.CZS Trojan Cleaner

ExeBug Trojan

Click here to remove ExeBug malware
ExeBug description:
ExeBug Category:Trojan,Backdoor,Downloader,DoS
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing ExeBug:

you can run trial version of ExterminateIt, or remove ExeBug manually.


To completely manually remove ExeBug malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ExeBug.


Read also:
Pigeon.AMR Trojan Removal
Bancos.GUL Trojan Cleaner
Vxidl.AGW Trojan Removal instruction

Bancos.GHZ Trojan

Click here to remove Bancos.GHZ malware
Bancos.GHZ description:
Bancos.GHZ Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Bancos.GHZ:

you can run trial version of ExterminateIt, or remove Bancos.GHZ manually.


To completely manually remove Bancos.GHZ malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GHZ.


Read also:
SillyDl.DBG Downloader Symptoms

Dancerbot Backdoor

Click here to remove Dancerbot malware
Dancerbot description:
Dancerbot Category:Backdoor
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing Dancerbot:

you can run trial version of ExterminateIt, or remove Dancerbot manually.


To completely manually remove Dancerbot malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Dancerbot.


Read also:
Backdoor.BeastDoor Trojan Removal
Vxidl.AEL Trojan Removal instruction

atwola.com Tracking Cookie

Click here to remove atwola.com malware
atwola.com description:
atwola.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing atwola.com:

you can run trial version of ExterminateIt, or remove atwola.com manually.


To completely manually remove atwola.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with atwola.com.


Read also:
Removing Lemir.Variant Trojan
WinEggDrop Trojan Removal
Removing easy.hit.counters.com Tracking Cookie

Integr Trojan

Click here to remove Integr malware
Integr description:
Integr Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Integr:

you can run trial version of ExterminateIt, or remove Integr manually.


To completely manually remove Integr malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Integr.


Read also:
DelFin Adware Symptoms
Win32.Small.al Trojan Cleaner

Pigeon.EHS Trojan

Click here to remove Pigeon.EHS malware
Pigeon.EHS description:
Pigeon.EHS Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.EHS:

you can run trial version of ExterminateIt, or remove Pigeon.EHS manually.


To completely manually remove Pigeon.EHS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EHS.


Read also:
Forger Hostile Code Removal
Riot.Doom Trojan Removal instruction
internet.ge Tracking Cookie Cleaner