Sunday, November 16, 2008

SillyDl.CJT Trojan

SillyDl.CJT malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing SillyDl.CJT:

An up-to-date copy of ExterminateIt should detect and prevent infection from SillyDl.CJT.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove SillyDl.CJT manually.

To completely manually remove SillyDl.CJT malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.CJT.

  1. Use Task Manager to terminate the SillyDl.CJT process.
  2. Delete the original SillyDl.CJT file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes SillyDl.CJT from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of SillyDl.CJT!


Also Be Aware of the Following Threats:
SearchCentrix.Mygeek.com BHO Removal
WebHancer Spyware Symptoms

Pigeon.EOF Trojan

Pigeon.EOF malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.EOF:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.EOF.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.EOF manually.

To completely manually remove Pigeon.EOF malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.EOF.

  1. Use Task Manager to terminate the Pigeon.EOF process.
  2. Delete the original Pigeon.EOF file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.EOF from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.EOF!


Also Be Aware of the Following Threats:
AdultChat Adware Cleaner
Remove Beastdoor.8qb Trojan
Removing Fakefmt Trojan
Elkong Trojan Removal

Pigeon.AVSV Trojan

Pigeon.AVSV malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.AVSV:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.AVSV.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.AVSV manually.

To completely manually remove Pigeon.AVSV malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVSV.

  1. Use Task Manager to terminate the Pigeon.AVSV process.
  2. Delete the original Pigeon.AVSV file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.AVSV from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.AVSV!


Also Be Aware of the Following Threats:
Backdoor.LegendMir Trojan Information
Flood Trojan Information
Removing IamBigBrother Spyware
Prevedl Downloader Cleaner

VB.km Backdoor

VB.km malware description and removal detail
Categories:Backdoor

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing VB.km:

An up-to-date copy of ExterminateIt should detect and prevent infection from VB.km.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove VB.km manually.

To completely manually remove VB.km malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with VB.km.

  1. Use Task Manager to terminate the VB.km process.
  2. Delete the original VB.km file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes VB.km from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of VB.km!


Also Be Aware of the Following Threats:
ShopForGood Adware Information
SillyDl.CCZ Trojan Removal

Pigeon.AVLU Trojan

Pigeon.AVLU malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Pigeon.AVLU:

An up-to-date copy of ExterminateIt should detect and prevent infection from Pigeon.AVLU.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Pigeon.AVLU manually.

To completely manually remove Pigeon.AVLU malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AVLU.

  1. Use Task Manager to terminate the Pigeon.AVLU process.
  2. Delete the original Pigeon.AVLU file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Pigeon.AVLU from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Pigeon.AVLU!


Also Be Aware of the Following Threats:
StartPage.zb Hijacker Removal instruction
Lifeform Trojan Information
Baiso Trojan Removal
SafeShare Worm Information

TrojanDownloader.Win32.Deepgal Downloader

TrojanDownloader.Win32.Deepgal malware description and removal detail
Categories:Downloader

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing TrojanDownloader.Win32.Deepgal:

An up-to-date copy of ExterminateIt should detect and prevent infection from TrojanDownloader.Win32.Deepgal.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Deepgal manually.

To completely manually remove TrojanDownloader.Win32.Deepgal malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Deepgal.

  1. Use Task Manager to terminate the TrojanDownloader.Win32.Deepgal process.
  2. Delete the original TrojanDownloader.Win32.Deepgal file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes TrojanDownloader.Win32.Deepgal from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of TrojanDownloader.Win32.Deepgal!


Also Be Aware of the Following Threats:
Penfur Trojan Symptoms
DelFin Adware Symptoms
VB.oe Backdoor Removal

WinAntiSpyware Adware

WinAntiSpyware malware description and removal detail
Categories:Adware,Ransomware
Visible Symptoms:
Files in system folders:
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml

In order to ensure that the WinAntiSpyware is launched automatically each time the system is booted, the WinAntiSpyware adds a link to its executable file in the system registry:
HKLM\Microsoft\Windows\CurrentVersion\Run
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting WinAntiSpyware:

Files:
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml
[%APPDATA%]\winantispyware2006freeinstall_it[1].exe
[%APPDATA%]\winantispyware2007freeinstall[1].exe
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Contact customer support.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\Uninstall WinAntiSpyware 2007.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 on the Web.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007 Online Manual.lnk
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007\WinAntiSpyware 2007.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%INTERNET_CACHE%]\Content.IE5\FV951H56\WinAntiSpyware2006FreeInstall[1].cab
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD1.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD10.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD13.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD14.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD15.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.exe
[%PROFILE_TEMP%]\ICD17.tmp\UWAS6_0001_N85M1306NetInstaller.inf
[%PROFILE_TEMP%]\NI.UWA6P_0001_N822M1605\settings.ini
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N91M2703\setup.exe
[%PROFILE_TEMP%]\NI.UWAS7_0001_N99M3108\setup.exe
[%PROFILE_TEMP%]\temp.fr????\database\knownfiles.dat
[%PROFILE_TEMP%]\temp.fr????\database\TEBase.dat
[%PROFILE_TEMP%]\temp.fr????\WAS7.url
[%PROFILE_TEMP%]\WinAntiSpyware 2007 FreeInstall.exe
[%PROFILE_TEMP%]\WinAntiSpyware2006Setup.exe
[%PROFILE_TEMP%]\WinAntiSpyware2007Setup.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\appupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\AutoProcess.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\enemies.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\knownfiles.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\TEBase.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\database\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\dbupdate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\fopnl.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\InstUp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.pdf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\monstate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\ps.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\quaratine.dat\#post_quarantine
[%PROGRAM_FILES%]\WinAntiSpyware 2007\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2007\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\settings.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2007\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Summary.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\tasks.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\threatnet.ini
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\uninstall.ico
[%PROGRAM_FILES%]\WinAntiSpyware 2007\UnWizard.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\unwizard.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2007\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2007\was7.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.url
[%PROGRAM_FILES%]\WinAntiSpyware 2007\wasffNT.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\err.log
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwas7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\WAS7Mon.exe
[%SYSTEM%]\drivers\ApiMon.sys
[%SYSTEM%]\drivers\FOPN.sys
[%SYSTEM%]\drivers\uwasfsd.sys
[%SYSTEM%]\drivers\vspf5.sys
[%SYSTEM%]\drivers\vspf_hk5.sys
[%SYSTEM%]\stera.exe
[%WINDOWS%]\TEMP\NI.UWAS6_0001_N68M2301\setup.exe
[%COMMON_STARTUP%]\autorun.exe
[%COMMON_STARTUP%]\autos.exe
[%COMMON_STARTUP%]\info.exe
[%PROFILE%]\cmd.exe
[%PROFILE_TEMP%]\winaspsnet.exe
[%PROGRAM_FILES%]\SystemDoctor 2006 Free\dcmon.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\Activate.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\AsAgents.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\atl71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\bnlink.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\err.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\errors.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\InstHelp.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\lapv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\license.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\manual.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\mfc71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcp71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\msvcr71.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\pv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\readme.rtf
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\scanlog.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\shellext.xml
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\sr.log
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\support.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\unins000.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\up.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\updater.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6chk.dll
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwas6cw.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\uwasffNT.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\vbpv.dat
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.dmp
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.exe
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\WAS6.url
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free\was6.xml
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasdc.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\uwasers.exe
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007\was7cw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\dc6_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\ers_startupmon.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2006\uwa6pcw.exe
[%PROGRAM_FILES_COMMON%]\WinAntiVirus Pro 2007\uwa7pcw.exe
[%STARTUP%]\findfast.exe
[%STARTUP%]\info.exe
[%STARTUP%]\infos.exe
[%STARTUP%]\system.exe
[%SYSTEM%]\hadjajr.ini
[%SYSTEM%]\hrum221.txt
[%SYSTEM%]\printer.exe
[%SYSTEM%]\proper.exe
[%SYSTEM%]\skuns.dat
[%SYSTEM%]\sulimo.dat
[%SYSTEM%]\systems.txt
[%SYSTEM%]\WinAvX.exe
[%SYSTEM%]\winavxx.exe
[%SYSTEM%]\winter.exe
[%WINDOWS%]\shell.exe
[%DESKTOP%]\Install WinAntiSpyware 2006 .lnk
[%DESKTOP%]\winantispyware 2006 scanner.lnk
[%DESKTOP%]\WinAntiSpyware 2006.lnk
[%DESKTOP%]\WinAntiSpyware 2007.lnk
[%PROGRAM_FILES%]\WinAntiSpyware 2007\WAS7.xml

Folders:
[%APPDATA%]\WinAntiSpyware 2007
[%COMMON_PROGRAMS%]\WinAntiSpyware 2006
[%PROGRAM_FILES%]\WinAntiSpyware 2006 Free
[%PROGRAM_FILES%]\winantispyware 2006 scanner
[%PROGRAM_FILES%]\WinAntiSpyware 2007\Download
[%PROGRAM_FILES%]\WinAntiSpyware 2007\RTMonitor.dat
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006 Free
[%APPDATA%]\WinAntiSpyware 2006
[%APPDATA%]\WinAntiSpyware 2007 Free
[%COMMON_APPDATA%]\WinAntiSpyware 2007
[%COMMON_PROGRAMS%]\WinAntiSpyware 2007
[%PROFILE_TEMP%]\NI.UWAS6V_0001_N91M2208
[%PROFILE_TEMP%]\NI.UWAS6_0001_N68M2301
[%PROFILE_TEMP%]\NI.UWAS6_0001_N69M0703
[%PROFILE_TEMP%]\NI.UWAS6_0001_N69M0903
[%PROFILE_TEMP%]\NI.UWAS6_0001_N73M1104
[%PROFILE_TEMP%]\NI.UWAS6_0001_N85M1306
[%PROFILE_TEMP%]\NI.UWAS6_0001_N91M1508
[%PROGRAMS%]\WinAntiSpyware 2006
[%PROGRAM_FILES%]\WinAntiSpyware 2005
[%PROGRAM_FILES%]\WinAntiSpyware 2007
[%PROGRAM_FILES%]\WinAntiSpyware 2007 Free
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2006
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware 2007 Free
[%PROGRAM_FILES_COMMON%]\WinAntiSpyware Pro 2007
[%APPDATA%]\SalesMonitor
[%PROGRAMS%]\winantispyware 2006 scanner

Registry Keys:
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\ExplorerUWAS
HKEY_CLASSES_ROOT\CLSID\{1230649B-B980-44A5-B259-9B09EBEA6331}
HKEY_CLASSES_ROOT\CLSID\{1236DE55-EDED-4675-AF10-BA15EDDB4D7A}
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}\programmable
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}\programmable
HKEY_CLASSES_ROOT\CLSID\{ABCD4567-76B5-4bc7-AAC5-396D70925B11}
HKEY_CLASSES_ROOT\CLSID\{_CLSID_WAShellExecuteCheck}
HKEY_CLASSES_ROOT\Directory\shellex\ContextMenuHandlers\ExplorerUWAS
HKEY_CLASSES_ROOT\Drive\shellex\ContextMenuHandlers\ExplorerUWAS
HKEY_CLASSES_ROOT\Interface\{4567AB12-A884-4CA6-B739-CEDB12FEF096}
HKEY_CLASSES_ROOT\Interface\{ABCD4567-4D73-43E9-85E5-53A2DBD95411}
HKEY_CLASSES_ROOT\Interface\{ABCD4567-D8E8-4DF1-A3EA-D0AA72F42611}
HKEY_CLASSES_ROOT\TypeLib\{12398A44-7DFC-4C46-BD8F-41259D169A0D}
HKEY_CLASSES_ROOT\typelib\{4567ab12-7dfc-4c46-bd8f-41259d169a0d}
HKEY_CLASSES_ROOT\TypeLib\{4567AB12-AE24-4FD6-B479-E2B464F32DA6}
HKEY_CLASSES_ROOT\TypeLib\{ABCD4567-7437-43EF-AB74-4AB1D3A37411}
HKEY_CLASSES_ROOT\UWAS6.UWAS6
HKEY_CLASSES_ROOT\uwasfsd.CreationNotifier
HKEY_CLASSES_ROOT\uwashellext.ShellHook
HKEY_CLASSES_ROOT\uwashellext.WASContextMenu
HKEY_CLASSES_ROOT\washellext.wascontextmenu
HKEY_CURRENT_USER\Software\WinAntiSpyware 2006 Free
HKEY_CURRENT_USER\Software\WinAntiSpyware 2007
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\was7_is1
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2006 Free
HKEY_LOCAL_MACHINE\software\winantispyware 2006 scanner
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\apimon
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FOPN
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\uwasfsd
HKEY_CLASSES_ROOT\uwasfsd.CreationNotifier.1
HKEY_CLASSES_ROOT\uwashellext.ShellHook.1
HKEY_CLASSES_ROOT\uwashellext.WASContextMenu.1
HKEY_CURRENT_USER\Software\qwqngoFMnMIouoBeleqownFIgewncwgolanwII
HKEY_CURRENT_USER\Software\WinAntiSpyware 2006
HKEY_CURRENT_USER\Software\WinAntiSpyware 2006 Scanner
HKEY_CURRENT_USER\Software\WinAntiSpyware 2007 Free
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinAntiSpyware 2006 Free_is1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinAntiSpyware 2007 Free_is1
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2006
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2007
HKEY_LOCAL_MACHINE\SOFTWARE\WinAntiSpyware 2007 Free
HKEY_CLASSES_ROOT\*\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\clsid\{1230649b-b980-44a5-b259-9b09ebea6331}
HKEY_CLASSES_ROOT\clsid\{1236de55-eded-4675-af10-ba15eddb4d7a}
HKEY_CLASSES_ROOT\clsid\{abcd4567-76b5-4bc7-aac5-396d70925b11}
HKEY_CLASSES_ROOT\clsid\{d7b4c168-2c12-40bc-8659-b6c81a6f0a40}
HKEY_CLASSES_ROOT\clsid\{f3ef3329-ccb1-433b-a3ed-6e763665d280}
HKEY_CLASSES_ROOT\clsid\{_clsid_washellexecutecheck}
HKEY_CLASSES_ROOT\directory\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\drive\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\interface\{4567ab12-a884-4ca6-b739-cedb12fef096}
HKEY_CLASSES_ROOT\interface\{abcd4567-4d73-43e9-85e5-53a2dbd95411}
HKEY_CLASSES_ROOT\interface\{abcd4567-d8e8-4df1-a3ea-d0aa72f42611}
HKEY_CLASSES_ROOT\typelib\{12398a44-7dfc-4c46-bd8f-41259d169a0d}
HKEY_CLASSES_ROOT\typelib\{4567ab12-ae24-4fd6-b479-e2b464f32da6}
HKEY_CLASSES_ROOT\typelib\{abcd4567-7437-43ef-ab74-4ab1d3a37411}
HKEY_CLASSES_ROOT\uwas6.uwas6
HKEY_CLASSES_ROOT\uwasfsd.creationnotifier
HKEY_CLASSES_ROOT\uwashellext.shellhook
HKEY_CLASSES_ROOT\uwashellext.wascontextmenu
HKEY_CURRENT_USER\software\winantispyware 2006 free
HKEY_CURRENT_USER\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\winantispyware 2006 free_is1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\winantispyware 2006 scanner_is1
HKEY_LOCAL_MACHINE\software\winantispyware 2006 free
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\fopn
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\uwasfsd

Registry Values:
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}\inprocserver32
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}\inprocserver32
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000\control
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_CLASSES_ROOT\clsid\{4567ab12-b980-44a5-b259-9b09ebea6331}\inprocserver32
HKEY_CLASSES_ROOT\clsid\{4567ab12-eded-4675-af10-ba15eddb4d7a}\inprocserver32
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\userassist\{75048700-ef1f-11d0-9888-006097deacf9}\count
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\software\winantispyware 2007
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000\control
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fopn\0000\control

Removing WinAntiSpyware:

An up-to-date copy of ExterminateIt should detect and prevent infection from WinAntiSpyware.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove WinAntiSpyware manually.

To completely manually remove WinAntiSpyware malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WinAntiSpyware.

  1. Use Task Manager to terminate the WinAntiSpyware process.
  2. Delete the original WinAntiSpyware file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes WinAntiSpyware from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of WinAntiSpyware!


Also Be Aware of the Following Threats:
Pigeon.AVGK Trojan Removal
Papwaste Trojan Removal
Win32.SocksProxy Trojan Removal instruction
WinHLP.generic Trojan Removal instruction