Wednesday, January 28, 2009

SingaRaja Hacker Tool

SingaRaja malware description and removal detail
Categories:Hacker Tool,DoS
Also known as:

[Kaspersky]Flooder.MailSpam.Singa;
[F-Prot]->sgr.exe

Visible Symptoms:
Files in system folders:
[%PROFILE_TEMP%]\pft1e.tmp\redist\wintdist.exe
[%PROGRAMS%]\123 wasp\help.lnk
[%PROGRAMS%]\123 wasp\license.lnk
[%PROGRAM_FILES%]\123wasp\123wasp.exe
[%PROGRAM_FILES%]\123wasp\help.htm
[%PROGRAM_FILES%]\ares lite edition\ares.exe
[%PROGRAM_FILES%]\ares\ares.exe
[%PROFILE_TEMP%]\pft1e.tmp\redist\wintdist.exe
[%PROGRAMS%]\123 wasp\help.lnk
[%PROGRAMS%]\123 wasp\license.lnk
[%PROGRAM_FILES%]\123wasp\123wasp.exe
[%PROGRAM_FILES%]\123wasp\help.htm
[%PROGRAM_FILES%]\ares lite edition\ares.exe
[%PROGRAM_FILES%]\ares\ares.exe

In order to ensure that the SingaRaja is launched automatically each time the system is booted, the SingaRaja adds a link to its executable file in the system registry:
HKLM\Microsoft\Windows\CurrentVersion\Run
[%PROFILE_TEMP%]\pft1e.tmp\redist\wintdist.exe
[%PROGRAM_FILES%]\123wasp\123wasp.exe
[%PROGRAM_FILES%]\ares lite edition\ares.exe
[%PROGRAM_FILES%]\ares\ares.exe

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Detecting SingaRaja:

Files:
[%PROFILE_TEMP%]\pft1e.tmp\redist\wintdist.exe
[%PROGRAMS%]\123 wasp\help.lnk
[%PROGRAMS%]\123 wasp\license.lnk
[%PROGRAM_FILES%]\123wasp\123wasp.exe
[%PROGRAM_FILES%]\123wasp\help.htm
[%PROGRAM_FILES%]\ares lite edition\ares.exe
[%PROGRAM_FILES%]\ares\ares.exe
[%PROFILE_TEMP%]\pft1e.tmp\redist\wintdist.exe
[%PROGRAMS%]\123 wasp\help.lnk
[%PROGRAMS%]\123 wasp\license.lnk
[%PROGRAM_FILES%]\123wasp\123wasp.exe
[%PROGRAM_FILES%]\123wasp\help.htm
[%PROGRAM_FILES%]\ares lite edition\ares.exe
[%PROGRAM_FILES%]\ares\ares.exe

Folders:
[%PROFILE%]\start menu\programs\123 wasp
[%PROGRAM_FILES%]\Ares Galaxy FasterDownload\Ares Galaxy FasterDownload.exe
[%PROGRAM_FILES%]\Ares Galaxy FasterDownload\NNGLZA638.EXE
[%PROGRAM_FILES%]\Ares Galaxy FasterDownload\packet.dll
[%PROGRAM_FILES%]\Ares Galaxy FasterDownload\Skin.bmp
[%PROGRAM_FILES%]\Ares Galaxy FasterDownload\SkinAbout.bmp
[%PROGRAM_FILES%]\Ares Galaxy FasterDownload\unins000.dat
[%PROGRAM_FILES%]\Ares Galaxy FasterDownload\unins000.exe
[%PROGRAM_FILES%]\Ares Lite Edition\data
[%PROGRAM_FILES%]\Ares Lite Edition\lang
[%PROGRAM_FILES%]\Ares\data
[%PROGRAM_FILES%]\Ares\lang
[%SYSTEM%]\sporder.dll
[%WINDOWS%]\NDNuninstall6_38.exe

Registry Keys:
HKEY_CLASSES_ROOT\ares.collectionlist
HKEY_CURRENT_USER\software\ares
HKEY_CURRENT_USER\software\areslite
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\123 write all stored passwords
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ares
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\areslite

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run

Removing SingaRaja:

An up-to-date copy of ExterminateIt should detect and prevent infection from SingaRaja.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove SingaRaja manually.

To completely manually remove SingaRaja malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SingaRaja.

  1. Use Task Manager to terminate the SingaRaja process.
  2. Delete the original SingaRaja file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes SingaRaja from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of SingaRaja!


Also Be Aware of the Following Threats:
ICQ.Tools Trojan Removal
Remove SJRC RAT

traderonline.com Tracking Cookie

traderonline.com malware description and removal detail
Categories:Tracking Cookie

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing traderonline.com:

An up-to-date copy of ExterminateIt should detect and prevent infection from traderonline.com.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove traderonline.com manually.

To completely manually remove traderonline.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with traderonline.com.

  1. Use Task Manager to terminate the traderonline.com process.
  2. Delete the original traderonline.com file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes traderonline.com from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of traderonline.com!


Also Be Aware of the Following Threats:
Network.Terrorist Backdoor Removal
Remove Elfrit Trojan
Removing BlueBoy Trojan
Win32.HackTool.Auha Trojan Removal

ForcedEntry Backdoor

ForcedEntry malware description and removal detail
Categories:Backdoor

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing ForcedEntry:

An up-to-date copy of ExterminateIt should detect and prevent infection from ForcedEntry.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove ForcedEntry manually.

To completely manually remove ForcedEntry malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ForcedEntry.

  1. Use Task Manager to terminate the ForcedEntry process.
  2. Delete the original ForcedEntry file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes ForcedEntry from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of ForcedEntry!


Also Be Aware of the Following Threats:
Removing RTB RAT
Borlander Downloader Information
Win.AOLPS.Bucop Trojan Cleaner
StartPage.bs Hijacker Symptoms
Vxidl.BAF Trojan Removal

Vxidl.ASD Trojan

Vxidl.ASD malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Vxidl.ASD:

An up-to-date copy of ExterminateIt should detect and prevent infection from Vxidl.ASD.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Vxidl.ASD manually.

To completely manually remove Vxidl.ASD malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Vxidl.ASD.

  1. Use Task Manager to terminate the Vxidl.ASD process.
  2. Delete the original Vxidl.ASD file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Vxidl.ASD from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Vxidl.ASD!


Also Be Aware of the Following Threats:
Buy.com Tracking Cookie Information
Removing Zlob.Fam.Internet Security Trojan
Pigeon.EPA Trojan Information
Ghetto DoS Information
Remove Pigeon.AAF Trojan

IGMP.Mososka.PackBuild.06b DoS

IGMP.Mososka.PackBuild.06b malware description and removal detail
Categories:DoS
Also known as:

[Kaspersky]DoS.IGMP.Misoska.PackBuild.06b;
[McAfee]Nuke-Miso;
[Panda]DoS/Misoska

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing IGMP.Mososka.PackBuild.06b:

An up-to-date copy of ExterminateIt should detect and prevent infection from IGMP.Mososka.PackBuild.06b.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove IGMP.Mososka.PackBuild.06b manually.

To completely manually remove IGMP.Mososka.PackBuild.06b malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with IGMP.Mososka.PackBuild.06b.

  1. Use Task Manager to terminate the IGMP.Mososka.PackBuild.06b process.
  2. Delete the original IGMP.Mososka.PackBuild.06b file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes IGMP.Mososka.PackBuild.06b from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of IGMP.Mososka.PackBuild.06b!


Also Be Aware of the Following Threats:
Smf Trojan Information
Crack Trojan Cleaner
Ipv4.ipv6.tcp.connection DoS Removal

Killpar Trojan

Killpar malware description and removal detail
Categories:Trojan

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Killpar:

An up-to-date copy of ExterminateIt should detect and prevent infection from Killpar.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Killpar manually.

To completely manually remove Killpar malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Killpar.

  1. Use Task Manager to terminate the Killpar process.
  2. Delete the original Killpar file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Killpar from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Killpar!


Also Be Aware of the Following Threats:
Bancos.FUT Trojan Cleaner
Small.oh Downloader Cleaner
ivwbox.de Tracking Cookie Symptoms
Badbot Trojan Symptoms

Sunset Trojan

Sunset malware description and removal detail
Categories:Trojan,Backdoor,Downloader,DoS
Also known as:

[Kaspersky]Trojan.Sunset;
[F-Prot]destructive program;
[Panda]Trj/Sunset

Platforms / OS: Windows 95, Windows 98, Windows 98 SE, Windows NT, Windows ME, Windows 2000, Windows XP, Windows 2003, Windows Vista

Removing Sunset:

An up-to-date copy of ExterminateIt should detect and prevent infection from Sunset.

If you do not have ExterminateIt and you are worried that you may have infected computer, you could run trial version of ExterminateIt, or remove Sunset manually.

To completely manually remove Sunset malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Sunset.

  1. Use Task Manager to terminate the Sunset process.
  2. Delete the original Sunset file and folders.
  3. Delete the system registry key parameters
  4. Update your antivirus databases or buy antivirus software and perform a full scan of the computer.

We recommends that all Internet users back up any important information on their computers, enable maximum protection from network attacks and malicious code on their computers, refrain from executing suspicious programs received from untrustworthy sources.


ExterminateIt effectively and automatically removes Sunset from you computer and is a good solution for those who are seeking easy and effective protection for their computer from Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware).

Download ExterminateIt! to instantly get rid of Sunset!


Also Be Aware of the Following Threats:
SillyDl.CFW Downloader Information