Sunday, November 16, 2008

SillyDl.CJT Trojan

SillyDl.CJT malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing SillyDl.CJT:

An up-to-date copy of ExterminateIt should detect and prevent infection from SillyDl.CJT.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove SillyDl.CJT manually.

To completely manually remove SillyDl.CJT malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.CJT.

  1. Use Task Manager to terminate the SillyDl.CJT process.
  2. Delete the original SillyDl.CJT file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes SillyDl.CJT from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of SillyDl.CJT!


Also Be Aware of the Following Threats:
SearchCentrix.Mygeek.com BHO Removal
WebHancer Spyware Symptoms

Pigeon.EOF Trojan

Pigeon.EOF malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.EOF:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.EOF.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.EOF manually.

To completely manually remove Pigeon.EOF malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EOF.

  1. Use Task Manager to terminate the Pigeon.EOF process.
  2. Delete the original Pigeon.EOF file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.EOF from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.EOF!


Also Be Aware of the Following Threats:
AdultChat Adware Cleaner
Remove Beastdoor.8qb Trojan
Removing Fakefmt Trojan
Elkong Trojan Removal

Pigeon.AVSV Trojan

Pigeon.AVSV malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.AVSV:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.AVSV.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.AVSV manually.

To completely manually remove Pigeon.AVSV malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVSV.

  1. Use Task Manager to terminate the Pigeon.AVSV process.
  2. Delete the original Pigeon.AVSV file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.AVSV from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.AVSV!


Also Be Aware of the Following Threats:
Backdoor.LegendMir Trojan Information
Flood Trojan Information
Removing IamBigBrother Spyware
Prevedl Downloader Cleaner

VB.km Backdoor

VB.km malware description and removal detail
Categories:Backdoor

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing VB.km:

An up-to-date copy of ExterminateIt should detect and prevent infection from VB.km.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove VB.km manually.

To completely manually remove VB.km malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with VB.km.

  1. Use Task Manager to terminate the VB.km process.
  2. Delete the original VB.km file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes VB.km from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of VB.km!


Also Be Aware of the Following Threats:
ShopForGood Adware Information
SillyDl.CCZ Trojan Removal

Pigeon.AVLU Trojan

Pigeon.AVLU malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.AVLU:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.AVLU.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.AVLU manually.

To completely manually remove Pigeon.AVLU malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVLU.

  1. Use Task Manager to terminate the Pigeon.AVLU process.
  2. Delete the original Pigeon.AVLU file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.AVLU from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.AVLU!


Also Be Aware of the Following Threats:
StartPage.zb Hijacker Removal instruction
Lifeform Trojan Information
Baiso Trojan Removal
SafeShare Worm Information

TrojanDownloader.Win32.Deepgal Downloader

TrojanDownloader.Win32.Deepgal malware description and removal detail
Categories:Downloader

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing TrojanDownloader.Win32.Deepgal:

An up-to-date copy of ExterminateIt should detect and prevent infection from TrojanDownloader.Win32.Deepgal.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Deepgal manually.

To completely manually remove TrojanDownloader.Win32.Deepgal malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Deepgal.

  1. Use Task Manager to terminate the TrojanDownloader.Win32.Deepgal process.
  2. Delete the original TrojanDownloader.Win32.Deepgal file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes TrojanDownloader.Win32.Deepgal from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of TrojanDownloader.Win32.Deepgal!


Also Be Aware of the Following Threats:
Penfur Trojan Symptoms
DelFin Adware Symptoms
VB.oe Backdoor Removal

WinAntiSpyware Adware

WinAntiSpyware malware description and removal detail
Categories:Adware,Ransomware
Visible Symptoms:
Files in system folders:
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml

In order to ensure that the WinAntiSpyware is launched automatically each time the system is booted, the WinAntiSpyware adds a link to its executable file in the system registry:
HKLM\Microsoft\Windows\CurrentVersion\Run
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting WinAntiSpyware:

Files:
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml

Folders:
[%APPDATA%]\WinAntiSpyware 2007
[%COMMON_PROGRAMS%]\WinAntiSpyware 2006
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free
[%PROGRAM_FILES%]\winantispyware 2006 scanner
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Download
[%PROGRAM_FILES%]\WinAntiSpyware 2007\RTMonitor.dat
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free
[%APPDATA%]\WinAntiSpyware 2006
[%APPDATA%]\WinAntiSpyware 2007 Free
[%COMMON_APPDATA%]\WinAntiSpyware 2007
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007
[%PROFILE_TEMP%]\NI.UWAS6V_0001_N91M2208
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301
[%PROFILE_TEMP%]\NI.UWAS6_0001_N69M0703
[%PROFILE_TEMP%]\NI.UWAS6_0001_N69M0903
[%PROFILE_TEMP%]\NI.UWAS6_0001_N73M1104
[%PROFILE_TEMP%]\NI.UWAS6_0001_N85M1306
[%PROFILE_TEMP%]\NI.UWAS6_0001_N91M1508
[%PROGRAMS%]\WinAntiSpyware 2006
[%PROGRAM_FILES%]\WinAntiSpyware 2005
[%PROGRAM_FILES%]\WinAntiSpyware 2007
[%PROGRAM_FILES%]\WinAntiSpyware 2007 Free
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware Pro 2007
[%APPDATA%]\SalesMonitor
[%PROGRAMS%]\winantispyware 2006 scanner

Registry Keys:
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\ExplorerUWAS
HKEY_CLASSES_ROOT\CLSID\{1230649B-B980-44A5-B259-9B09EBEA6331}
HKEY_CLASSES_ROOT\CLSID\{1236DE55-EDED-4675-AF10-BA15EDDB4D7A}
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}\programmable
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}\programmable
HKEY_CLASSES_ROOT\CLSID\{ABCD4567-76B5-4bc7-AAC5-396D70925B11}
HKEY_CLASSES_ROOT\CLSID\{_CLSID_WAShellExecuteCheck}
HKEY_CLASSES_ROOT\Directory\shellex\ContextMenuHandlers\ExplorerUWAS
HKEY_CLASSES_ROOT\Drive\shellex\ContextMenuHandlers\ExplorerUWAS
HKEY_CLASSES_ROOT\Interface\{4567AB12-A884-4CA6-B739-CEDB12FEF096}
HKEY_CLASSES_ROOT\Interface\{ABCD4567-4D73-43E9-85E5-53A2DBD95411}
HKEY_CLASSES_ROOT\Interface\{ABCD4567-D8E8-4DF1-A3EA-D0AA72F42611}
HKEY_CLASSES_ROOT\TypeLib\{12398A44-7DFC-4C46-BD8F-41259D169A0D}
HKEY_CLASSES_ROOT\typelib\{4567ab12-7dfc-4c46-bd8f-41259d169a0d}
HKEY_CLASSES_ROOT\TypeLib\{4567AB12-AE24-4FD6-B479-E2B464F32DA6}
HKEY_CLASSES_ROOT\TypeLib\{ABCD4567-7437-43EF-AB74-4AB1D3A37411}
HKEY_CLASSES_ROOT\UWAS6.UWAS6
HKEY_CLASSES_ROOT\uwasfsd.CreationNotifier
HKEY_CLASSES_ROOT\uwashellext.ShellHook
HKEY_CLASSES_ROOT\uwashellext.WASContextMenu
HKEY_CLASSES_ROOT\washellext.wascontextmenu
HKEY_CURRENT_USER\Software\WinAntiSpyware 2006 Free
HKEY_CURRENT_USER\Software\WinAntiSpyware 2007
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\was7_is1
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2006 Free
HKEY_LOCAL_MACHINE\software\winantispyware 2006 scanner
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\apimon
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FOPN
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\uwasfsd
HKEY_CLASSES_ROOT\uwasfsd.CreationNotifier.1
HKEY_CLASSES_ROOT\uwashellext.ShellHook.1
HKEY_CLASSES_ROOT\uwashellext.WASContextMenu.1
HKEY_CURRENT_USER\Software\qwqngoFMnMIouoBeleqownFIgewncwgolanwII
HKEY_CURRENT_USER\Software\WinAntiSpyware 2006
HKEY_CURRENT_USER\Software\WinAntiSpyware 2006 Scanner
HKEY_CURRENT_USER\Software\WinAntiSpyware 2007 Free
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinAntiSpyware 2006 Free_is1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinAntiSpyware 2007 Free_is1
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2006
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2007
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2007 Free
HKEY_CLASSES_ROOT\*\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\clsid\{1230649b-b980-44a5-b259-9b09ebea6331}
HKEY_CLASSES_ROOT\clsid\{1236de55-eded-4675-af10-ba15eddb4d7a}
HKEY_CLASSES_ROOT\clsid\{abcd4567-76b5-4bc7-aac5-396d70925b11}
HKEY_CLASSES_ROOT\clsid\{d7b4c168-2c12-40bc-8659-b6c81a6f0a40}
HKEY_CLASSES_ROOT\clsid\{f3ef3329-ccb1-433b-a3ed-6e763665d280}
HKEY_CLASSES_ROOT\clsid\{_clsid_washellexecutecheck}
HKEY_CLASSES_ROOT\directory\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\drive\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\interface\{4567ab12-a884-4ca6-b739-cedb12fef096}
HKEY_CLASSES_ROOT\interface\{abcd4567-4d73-43e9-85e5-53a2dbd95411}
HKEY_CLASSES_ROOT\interface\{abcd4567-d8e8-4df1-a3ea-d0aa72f42611}
HKEY_CLASSES_ROOT\typelib\{12398a44-7dfc-4c46-bd8f-41259d169a0d}
HKEY_CLASSES_ROOT\typelib\{4567ab12-ae24-4fd6-b479-e2b464f32da6}
HKEY_CLASSES_ROOT\typelib\{abcd4567-7437-43ef-ab74-4ab1d3a37411}
HKEY_CLASSES_ROOT\uwas6.uwas6
HKEY_CLASSES_ROOT\uwasfsd.creationnotifier
HKEY_CLASSES_ROOT\uwashellext.shellhook
HKEY_CLASSES_ROOT\uwashellext.wascontextmenu
HKEY_CURRENT_USER\software\winantispyware 2006 free
HKEY_CURRENT_USER\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\winantispyware 2006 free_is1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\winantispyware 2006 scanner_is1
HKEY_LOCAL_MACHINE\software\winantispyware 2006 free
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\fopn
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\uwasfsd

Registry Values:
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}\inprocserver32
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}\inprocserver32
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000\control
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}\inprocserver32
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}\inprocserver32
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000\control
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000\control

Removing WinAntiSpyware:

An up-to-date copy of ExterminateIt should detect and prevent infection from WinAntiSpyware.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove WinAntiSpyware manually.

To completely manually remove WinAntiSpyware malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WinAntiSpyware.

  1. Use Task Manager to terminate the WinAntiSpyware process.
  2. Delete the original WinAntiSpyware file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes WinAntiSpyware from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of WinAntiSpyware!


Also Be Aware of the Following Threats:
Pigeon.AVGK Trojan Removal
Papwaste Trojan Removal
Win32.SocksProxy Trojan Removal instruction
WinHLP.generic Trojan Removal instruction

Malaise Trojan

Malaise malware description and removal detail
Categories:Trojan,Backdoor,Downloader,DoS
Also known as:

[Kaspersky]Info.1355;
[Panda]Malaise.1355A.COM

Visible Symptoms:
Files in system folders:
[%PROGRAM_FILES%]\WhenUSearch\search.htm
[%PROGRAM_FILES%]\WhenUSearch\search.htm

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting Malaise:

Files:
[%PROGRAM_FILES%]\WhenUSearch\search.htm
[%PROGRAM_FILES%]\WhenUSearch\search.htm

Folders:
[%PROGRAM_FILES_COMMON%]\whenu
[%PROGRAM_FILES%]\vvsn

Registry Keys:
HKEY_CLASSES_ROOT\interface\{711648f0-5ff5-4c81-805e-a1aedbab4951}

Registry Values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Removing Malaise:

An up-to-date copy of ExterminateIt should detect and prevent infection from Malaise.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Malaise manually.

To completely manually remove Malaise malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Malaise.

  1. Use Task Manager to terminate the Malaise process.
  2. Delete the original Malaise file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Malaise from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Malaise!


Also Be Aware of the Following Threats:
srpa.de Tracking Cookie Information
Bancos.GHZ Trojan Cleaner
Enimen Trojan Symptoms

Win32.SocksProxy Trojan

Win32.SocksProxy malware description and removal detail
Categories:Trojan
Also known as:

[Panda]Trojan Horse

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Win32.SocksProxy:

An up-to-date copy of ExterminateIt should detect and prevent infection from Win32.SocksProxy.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Win32.SocksProxy manually.

To completely manually remove Win32.SocksProxy malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.SocksProxy.

  1. Use Task Manager to terminate the Win32.SocksProxy process.
  2. Delete the original Win32.SocksProxy file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Win32.SocksProxy from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Win32.SocksProxy!


Also Be Aware of the Following Threats:
ISpyU Trojan Removal instruction
VB.gd Backdoor Removal
PopUp.Network Hijacker Information
Remove Vxidl.ARE Trojan

FotoMoto Adware

FotoMoto malware description and removal detail
Categories:Adware
Visible Symptoms:
Files in system folders:
[%SYSTEM%]\fo-remove.exe
[%SYSTEM%]\nsl753.dll
[%SYSTEM%]\nsx3A.dll
[%SYSTEM%]\fo-remove.exe
[%SYSTEM%]\nsl753.dll
[%SYSTEM%]\nsx3A.dll

In order to ensure that the FotoMoto is launched automatically each time the system is booted, the FotoMoto adds a link to its executable file in the system registry:
HKLM\Microsoft\Windows\CurrentVersion\Run
[%SYSTEM%]\fo-remove.exe

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting FotoMoto:

Files:
[%SYSTEM%]\fo-remove.exe
[%SYSTEM%]\nsl753.dll
[%SYSTEM%]\nsx3A.dll
[%SYSTEM%]\fo-remove.exe
[%SYSTEM%]\nsl753.dll
[%SYSTEM%]\nsx3A.dll

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{8606F990-FD48-4428-B8C3-E8C78BC7B8BB}
HKEY_CLASSES_ROOT\fotomoto.lefty
HKEY_CLASSES_ROOT\fotomoto.lefty.1
HKEY_CLASSES_ROOT\interface\{7a296741-0116-4168-ac61-92744da65aec}
HKEY_CLASSES_ROOT\interface\{ea97198e-6097-4b86-be91-28ae5b069e49}
HKEY_CLASSES_ROOT\typelib\{4677c155-997e-4324-8c7e-8b2827095801}
HKEY_LOCAL_MACHINE\software\microsoft\plastique
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8606F990-FD48-4428-B8C3-E8C78BC7B8BB}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\p2psoft
HKEY_CLASSES_ROOT\clsid\{275296e0-75ec-4380-bb5f-900636889a8d}
HKEY_CLASSES_ROOT\clsid\{8606f990-fd48-4428-b8c3-e8c78bc7b8bb}
HKEY_CLASSES_ROOT\clsid\{c00b57ad-f72f-4fdf-8116-a0c34cd3e716}
HKEY_CLASSES_ROOT\fotomoto.themask
HKEY_CLASSES_ROOT\fotomoto.themask.1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{8606f990-fd48-4428-b8c3-e8c78bc7b8bb}

Removing FotoMoto:

An up-to-date copy of ExterminateIt should detect and prevent infection from FotoMoto.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove FotoMoto manually.

To completely manually remove FotoMoto malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with FotoMoto.

  1. Use Task Manager to terminate the FotoMoto process.
  2. Delete the original FotoMoto file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes FotoMoto from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of FotoMoto!


Also Be Aware of the Following Threats:
Trojan.Downloader.Win32.Zlob Trojan Removal
Bagle.AC Trojan Information

Bat.Zeke Trojan

Bat.Zeke malware description and removal detail
Categories:Trojan
Also known as:

[Eset]Bat.Zeke.324 virus;
[Panda]BAT/Zeke.324;
[Computer Associates]Bat/Zeke

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Bat.Zeke:

An up-to-date copy of ExterminateIt should detect and prevent infection from Bat.Zeke.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Bat.Zeke manually.

To completely manually remove Bat.Zeke malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bat.Zeke.

  1. Use Task Manager to terminate the Bat.Zeke process.
  2. Delete the original Bat.Zeke file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Bat.Zeke from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Bat.Zeke!


Also Be Aware of the Following Threats:
Enimen Trojan Removal instruction
Removing TrojanDownloader.Win32.LDL Trojan

RFPoison Trojan

RFPoison malware description and removal detail
Categories:Trojan,Hacker Tool
Also known as:

[Kaspersky]DoS.Win32.Aleph.a,DoS.Win32.Aleph.b;
[F-Prot]destructive program;
[Panda]Trj/Aleph.B;
[Computer Associates]Win32/Aleph.b!Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing RFPoison:

An up-to-date copy of ExterminateIt should detect and prevent infection from RFPoison.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove RFPoison manually.

To completely manually remove RFPoison malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RFPoison.

  1. Use Task Manager to terminate the RFPoison process.
  2. Delete the original RFPoison file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes RFPoison from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of RFPoison!


Also Be Aware of the Following Threats:
Tool.AVExp Trojan Cleaner
Banbra.cc Spyware Removal
Vxidl.BGF Trojan Removal instruction
CommonName.Outlook.Agent Hijacker Removal
Modem.Monitor Trojan Removal instruction

Vxidl.BAD Trojan

Vxidl.BAD malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Vxidl.BAD:

An up-to-date copy of ExterminateIt should detect and prevent infection from Vxidl.BAD.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Vxidl.BAD manually.

To completely manually remove Vxidl.BAD malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.BAD.

  1. Use Task Manager to terminate the Vxidl.BAD process.
  2. Delete the original Vxidl.BAD file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Vxidl.BAD from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Vxidl.BAD!


Also Be Aware of the Following Threats:
SpywareStrike Trojan Information

Avclose Trojan

Avclose malware description and removal detail
Categories:Trojan
Also known as:

[Panda]Trojan Horse;
[Computer Associates]Avclose!Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Avclose:

An up-to-date copy of ExterminateIt should detect and prevent infection from Avclose.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Avclose manually.

To completely manually remove Avclose malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Avclose.

  1. Use Task Manager to terminate the Avclose process.
  2. Delete the original Avclose file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Avclose from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Avclose!


Also Be Aware of the Following Threats:
Bancos.IAA Trojan Cleaner
Mytob Worm Cleaner
Libie Trojan Removal
Yar Adware Removal
Removing MaxSearch Adware

Ohpass RAT

Ohpass malware description and removal detail
Categories:RAT

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Ohpass:

An up-to-date copy of ExterminateIt should detect and prevent infection from Ohpass.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Ohpass manually.

To completely manually remove Ohpass malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Ohpass.

  1. Use Task Manager to terminate the Ohpass process.
  2. Delete the original Ohpass file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Ohpass from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Ohpass!


Also Be Aware of the Following Threats:
PSW.Bancos Trojan Information
XXXDial Adware Removal instruction
Remove Stirbot Trojan

Inv.Evil Trojan

Inv.Evil malware description and removal detail
Categories:Trojan,Backdoor,Downloader,DoS
Also known as:

[Kaspersky]Riot.Evil.786;
[Computer Associates]StayCool.573

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Inv.Evil:

An up-to-date copy of ExterminateIt should detect and prevent infection from Inv.Evil.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Inv.Evil manually.

To completely manually remove Inv.Evil malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Inv.Evil.

  1. Use Task Manager to terminate the Inv.Evil process.
  2. Delete the original Inv.Evil file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Inv.Evil from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Inv.Evil!


Also Be Aware of the Following Threats:
Screen.Cutter RAT Removal
Remove W95.Marburg Trojan

TrojanDownloader.Win32.small.fk Trojan

TrojanDownloader.Win32.small.fk malware description and removal detail
Categories:Trojan,Downloader
Also known as:

[Panda]Trojan Horse

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing TrojanDownloader.Win32.small.fk:

An up-to-date copy of ExterminateIt should detect and prevent infection from TrojanDownloader.Win32.small.fk.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove TrojanDownloader.Win32.small.fk manually.

To completely manually remove TrojanDownloader.Win32.small.fk malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.small.fk.

  1. Use Task Manager to terminate the TrojanDownloader.Win32.small.fk process.
  2. Delete the original TrojanDownloader.Win32.small.fk file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes TrojanDownloader.Win32.small.fk from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of TrojanDownloader.Win32.small.fk!


Also Be Aware of the Following Threats:
Hacker.Defender Trojan Removal

Bancos.HAI Trojan

Bancos.HAI malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Bancos.HAI:

An up-to-date copy of ExterminateIt should detect and prevent infection from Bancos.HAI.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Bancos.HAI manually.

To completely manually remove Bancos.HAI malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.HAI.

  1. Use Task Manager to terminate the Bancos.HAI process.
  2. Delete the original Bancos.HAI file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Bancos.HAI from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Bancos.HAI!


Also Be Aware of the Following Threats:
CheckURL BHO Information
Backdoor.Prorat Backdoor Information
Removing RedHotNetworks Adware
SearchFu.123Search BHO Symptoms
KSLogger Spyware Information

Bancos.HLX Trojan

Bancos.HLX malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Bancos.HLX:

An up-to-date copy of ExterminateIt should detect and prevent infection from Bancos.HLX.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Bancos.HLX manually.

To completely manually remove Bancos.HLX malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.HLX.

  1. Use Task Manager to terminate the Bancos.HLX process.
  2. Delete the original Bancos.HLX file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Bancos.HLX from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Bancos.HLX!


Also Be Aware of the Following Threats:
Binet Adware Cleaner
Remove Protocol Hijacker Hijacker
Back.Attack Trojan Cleaner
Pigeon.AVBB Trojan Symptoms
SillyDl.CSA Trojan Removal