Wednesday, February 4, 2009

SillyDl.CJQ Trojan

Click here to remove SillyDl.CJQ malware
SillyDl.CJQ description:
SillyDl.CJQ Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing SillyDl.CJQ:

you can run trial version of ExterminateIt, or remove SillyDl.CJQ manually.


To completely manually remove SillyDl.CJQ malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.CJQ.


Read also:
Signs Trojan Removal instruction
Pigeon.AOR Trojan Cleaner
Pigeon.AWHX Trojan Removal instruction
Vxidl.ADX Trojan Removal instruction
Removing SillyDl.CSD Trojan

Nedky Trojan

Click here to remove Nedky malware
Nedky description:
Nedky Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Detection Nedky :

Nedky Files:
[%SYSTEM%]\moviemk.exe
[%SYSTEM%]\moviemk.exe

Removing Nedky:

you can run trial version of ExterminateIt, or remove Nedky manually.


To completely manually remove Nedky malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Nedky.


Read also:
Pigeon.ERZ Trojan Information
RMS RAT Cleaner

Pigeon.ASR Trojan

Click here to remove Pigeon.ASR malware
Pigeon.ASR description:
Pigeon.ASR Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.ASR:

you can run trial version of ExterminateIt, or remove Pigeon.ASR manually.


To completely manually remove Pigeon.ASR malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.ASR.


Read also:
Removing Level.One Backdoor
Delf.dy Backdoor Removal instruction
BAT.Eman Trojan Symptoms

CMD Backdoor

Click here to remove CMD malware
CMD description:
CMD Category:Backdoor,Hacker Tool
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Detection CMD :

CMD Files:
[%WINDOWS%]\passwd.txt
[%WINDOWS%]\passwd.txt

Removing CMD:

you can run trial version of ExterminateIt, or remove CMD manually.


To completely manually remove CMD malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with CMD.


Read also:
Removing Pigeon.AGT Trojan
Backdoor.TDS Trojan Removal
BillyPie.dam Trojan Removal instruction

Tuesday, February 3, 2009

CommonName.com Tracking Cookie

Click here to remove CommonName.com malware
CommonName.com description:
CommonName.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing CommonName.com:

you can run trial version of ExterminateIt, or remove CommonName.com manually.


To completely manually remove CommonName.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with CommonName.com.


Read also:
Remove Vxidl.AQV Trojan
Vxidl.AVH Trojan Cleaner
Backage.New.Age Trojan Cleaner

OptixPro Trojan

Click here to remove OptixPro malware
OptixPro description:
OptixPro Category:Trojan,Spyware,Backdoor
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Spyware is computer software that is installed surreptitiously on a personal computer
to with the computer, without the user's informed consent.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Removing OptixPro:

you can run trial version of ExterminateIt, or remove OptixPro manually.


To completely manually remove OptixPro malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with OptixPro.


Read also:
IRCFlood!downloader Trojan Removal instruction
TrojanDownloader.Win32.Small Trojan Cleaner
exitexchange.com Tracking Cookie Removal instruction
Skydance.29b Backdoor Removal instruction
Win32.SysCenter Trojan Symptoms

SearchNet Trojan

Click here to remove SearchNet malware
SearchNet description:
SearchNet Category:Trojan,Adware,Downloader
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Detection SearchNet :

SearchNet Files:
[%SYSTEM%]\drivers\FAD.sys
[%SYSTEM%]\ntsvrs.exe
[%PROFILE_TEMP%]\lokv.exe
[%PROFILE_TEMP%]\u4hq.exe
[%SYSTEM%]\drivers\Anfad.sys
[%SYSTEM%]\drivers\svq0hve.sys
[%SYSTEM%]\drivers\xcvmp7.sys
[%SYSTEM%]\ServeHost.dat
[%SYSTEM%]\ServeHost.exe
[%SYSTEM%]\drivers\FAD.sys
[%SYSTEM%]\ntsvrs.exe
[%PROFILE_TEMP%]\lokv.exe
[%PROFILE_TEMP%]\u4hq.exe
[%SYSTEM%]\drivers\Anfad.sys
[%SYSTEM%]\drivers\svq0hve.sys
[%SYSTEM%]\drivers\xcvmp7.sys
[%SYSTEM%]\ServeHost.dat
[%SYSTEM%]\ServeHost.exe

SearchNet Folders:
[%PROGRAM_FILES%]\SearchNet
[%PROGRAM_FILES%]\ZSXZ

SearchNet Registry Keys:
HKEY_CLASSES_ROOT\typelib\{690e010b-042a-4973-87a8-485deb8bdf68}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\ext\stats\{2a0176fe-008b-4706-90f5-bba532a49731}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\ext\stats\{3ce496d1-1746-41cd-9489-3c0b93df10e2}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\zsxz
HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\safer\codeidentifiers\0\hashes\{04152c5b-7ca9-4bb1-8077-5ea42f787eb8}
HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\safer\codeidentifiers\0\hashes\{515bafd0-86a0-4b2a-9dfe-4440bf60c355}
HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\safer\codeidentifiers\0\hashes\{5c20c0e0-9a22-424f-92c8-6f408563ce98}
HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\safer\codeidentifiers\0\hashes\{93506e82-31e9-47b4-901e-2d04d6aa3b86}
HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\safer\codeidentifiers\0\hashes\{b9b553a9-77ff-44de-8c24-fe88ccdc4e93}
HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\safer\codeidentifiers\0\hashes\{c8a82950-abe8-4b7d-a5de-19c249a9cfac}
HKEY_LOCAL_MACHINE\software\policies\microsoft\windows\safer\codeidentifiers\0\hashes\{cf3780c4-33ba-44bd-981f-e37940887d8b}
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_fad
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_remote_log
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\eventlog\application\remote log
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\fad
HKEY_CLASSES_ROOT\clsid\{3ce496d1-1746-41cd-9489-3c0b93df10e2}
HKEY_CLASSES_ROOT\iehpr.intercept
HKEY_CLASSES_ROOT\iehpr.intercept.1
HKEY_CLASSES_ROOT\interface\{52bea5f9-7e3f-490a-b7e8-9bd5dddee5df}
HKEY_CLASSES_ROOT\typelib\{158919d3-4cab-4109-9755-9ae794d5b2de}
HKEY_CLASSES_ROOT\typelib\{4a8976fe-144e-4742-8e49-d6cd3b140fd1}
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\image file execution options\cdnup.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{3ce496d1-1746-41cd-9489-3c0b93df10e2}
HKEY_LOCAL_MACHINE\software\searchnet
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_anfad
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\anfad
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\remote log

SearchNet Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing SearchNet:

you can run trial version of ExterminateIt, or remove SearchNet manually.


To completely manually remove SearchNet malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SearchNet.


Read also:
Pigeon.ASB Trojan Information
ZXSniffer Backdoor Information
Win32.Rask.zmail DoS Removal

BO2K.Plugin.Idea Trojan

Click here to remove BO2K.Plugin.Idea malware
BO2K.Plugin.Idea description:
BO2K.Plugin.Idea Category:Trojan,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing BO2K.Plugin.Idea:

you can run trial version of ExterminateIt, or remove BO2K.Plugin.Idea manually.


To completely manually remove BO2K.Plugin.Idea malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with BO2K.Plugin.Idea.


Read also:
Plateau Trojan Symptoms

Cellfree Trojan

Click here to remove Cellfree malware
Cellfree description:
Cellfree Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Cellfree:

you can run trial version of ExterminateIt, or remove Cellfree manually.


To completely manually remove Cellfree malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Cellfree.


Read also:
Removing Fight Trojan
Bancos.GZN Trojan Symptoms
PWS.Yahoo Trojan Information
Pigeon.AZJ Trojan Information

BootDr62 Trojan

Click here to remove BootDr62 malware
BootDr62 description:
BootDr62 Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing BootDr62:

you can run trial version of ExterminateIt, or remove BootDr62 manually.


To completely manually remove BootDr62 malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with BootDr62.


Read also:
Fblack Trojan Removal instruction

ThunderLock Spyware

Click here to remove ThunderLock malware
ThunderLock description:
ThunderLock Category:Spyware
Spyware is computer software that is installed surreptitiously on a personal computer
to with the computer, without the user's informed consent.

Removing ThunderLock:

you can run trial version of ExterminateIt, or remove ThunderLock manually.


To completely manually remove ThunderLock malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ThunderLock.


Read also:
OSW.QQfile Trojan Removal
nethit.free.nl Tracking Cookie Information
Bancos.HGX Trojan Removal

Batcompi Trojan

Click here to remove Batcompi malware
Batcompi description:
Batcompi Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Batcompi:

you can run trial version of ExterminateIt, or remove Batcompi manually.


To completely manually remove Batcompi malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Batcompi.


Read also:
Bancos.HUJ Trojan Symptoms
Dindang.Server Trojan Removal instruction
Keyboard.spectator Spyware Symptoms
QHA.exe Trojan Symptoms
Hack Hacker Tool Removal

PKZap Trojan

Click here to remove PKZap malware
PKZap description:
PKZap Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing PKZap:

you can run trial version of ExterminateIt, or remove PKZap manually.


To completely manually remove PKZap malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PKZap.


Read also:
Removing Tic Trojan
EZSearch.EZCybersearch.bar BHO Cleaner
Removing Pigeon.EJN Trojan
Remove SearchFast Trojan
Removing Noscid Trojan

Delf.xq Trojan

Click here to remove Delf.xq malware
Delf.xq description:
Delf.xq Category:Trojan,Downloader
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Removing Delf.xq:

you can run trial version of ExterminateIt, or remove Delf.xq manually.


To completely manually remove Delf.xq malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Delf.xq.


Read also:
Adware.SaveNow Adware Symptoms

Igmpsyn DoS

Click here to remove Igmpsyn malware
Igmpsyn description:
Igmpsyn Category:DoS
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing Igmpsyn:

you can run trial version of ExterminateIt, or remove Igmpsyn manually.


To completely manually remove Igmpsyn malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Igmpsyn.


Read also:
Pigeon.EAD Trojan Symptoms

Trojan.Dropper.Win32.VB.fz Trojan

Click here to remove Trojan.Dropper.Win32.VB.fz malware
Trojan.Dropper.Win32.VB.fz description:
Trojan.Dropper.Win32.VB.fz Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Trojan.Dropper.Win32.VB.fz:

you can run trial version of ExterminateIt, or remove Trojan.Dropper.Win32.VB.fz manually.


To completely manually remove Trojan.Dropper.Win32.VB.fz malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Trojan.Dropper.Win32.VB.fz.


Read also:
Ra1d RAT Removal
PSW.QQpass Trojan Information
Removing Catman Trojan

yadro.ru Tracking Cookie

Click here to remove yadro.ru malware
yadro.ru description:
yadro.ru Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing yadro.ru:

you can run trial version of ExterminateIt, or remove yadro.ru manually.


To completely manually remove yadro.ru malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with yadro.ru.


Read also:
Win32.VB.df Trojan Information
MultiDropper.DN.cfg Trojan Cleaner
Remove Inspiration Trojan
Remove Enliven.com Tracking Cookie
nrgyPlus Adware Information

Pigeon.AOE Trojan

Click here to remove Pigeon.AOE malware
Pigeon.AOE description:
Pigeon.AOE Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Pigeon.AOE:

you can run trial version of ExterminateIt, or remove Pigeon.AOE manually.


To completely manually remove Pigeon.AOE malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AOE.


Read also:
Remove necn.com Tracking Cookie

Absolute.Key.Logger Spyware

Click here to remove Absolute.Key.Logger malware
Absolute.Key.Logger description:
Absolute.Key.Logger Category:Spyware
Spyware is computer software that is installed surreptitiously on a personal computer
to intercept or take partial control over the user's interaction
with the computer, without the user's informed consent.

While the term spyware suggests software that secretly monitors the user's behavior,
the functions of spyware extend well beyond simple monitoring.

Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.

Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.

Detection Absolute.Key.Logger :

Absolute.Key.Logger Files:
[%PROFILE_TEMP%]\akl\SETUP.EXE
[%WINDOWS%]\absolute key logger.lnk
[%WINDOWS%]\akl.dll
[%WINDOWS%]\akl.exe
[%PROFILE_TEMP%]\akl\SETUP.EXE
[%WINDOWS%]\absolute key logger.lnk
[%WINDOWS%]\akl.dll
[%WINDOWS%]\akl.exe

Absolute.Key.Logger Folders:
[%PROGRAM_FILES%]\akl

Absolute.Key.Logger Registry Keys:
HKEY_CURRENT_USER\software\akl
HKEY_CURRENT_USER\software\t17

Absolute.Key.Logger Registry Values:
HKEY_LOCAL_MACHINE\software\classes\applications\accessdiver.exe\shell
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Absolute.Key.Logger:

you can run trial version of ExterminateIt, or remove Absolute.Key.Logger manually.


To completely manually remove Absolute.Key.Logger malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Absolute.Key.Logger.


Read also:
BAT.FormatC Trojan Information
jalan.net Tracking Cookie Symptoms

Monday, February 2, 2009

Loader Downloader

Click here to remove Loader malware
Loader description:
Loader Category:Downloader
This family of Trojans downloads and installs new malware or adware on the computer.
The downloader then either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

The names and locations of malware to be downloaded are either coded into the
Trojan or downloaded from a specified website.

Detection Loader :

Loader Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run

Removing Loader:

you can run trial version of ExterminateIt, or remove Loader manually.


To completely manually remove Loader malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Loader.


Read also:
MSN.Geef Trojan Symptoms
Pathhunt Trojan Removal
Removing BO2K.Sniper Trojan

Agobot.bi Trojan

Click here to remove Agobot.bi malware
Agobot.bi description:
Agobot.bi Category:Trojan,Backdoor
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.

Removing Agobot.bi:

you can run trial version of ExterminateIt, or remove Agobot.bi manually.


To completely manually remove Agobot.bi malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Agobot.bi.


Read also:
VBS.Edibara Trojan Cleaner
Recso Trojan Symptoms

Win32.Killlav.ap Trojan

Click here to remove Win32.Killlav.ap malware
Win32.Killlav.ap description:
Win32.Killlav.ap Category:Trojan,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.

Removing Win32.Killlav.ap:

you can run trial version of ExterminateIt, or remove Win32.Killlav.ap manually.


To completely manually remove Win32.Killlav.ap malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Win32.Killlav.ap.


Read also:
Remove Mepcod Trojan

PSW.Executant Trojan

Click here to remove PSW.Executant malware
PSW.Executant description:
PSW.Executant Category:Trojan,Backdoor,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
They function in the same way as legal remote administration programs used by system administrators.
This makes them difficult to detect.

Backdoors are installed and launched without the consent of the user of computer.
Often the backdoor will not be visible in the log of active programs.

Once a backdoor has been successfully launched, the computer is wide open.
Backdoor functions can include:


  • Launching/ deleting files

  • Sending/ receiving files

  • Deleting data

  • Displaying notification

  • Rebooting the machine

  • Executing files




Backdoors are used by virus writers to detect and download confidential information,
execute malicious code, destroy data, include the machine in bot networks and so forth.
Backdoors combine the functionality of most other types of in one package.

Backdoors have one especially dangerous sub-class: variants that can propagate like worms.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing PSW.Executant:

you can run trial version of ExterminateIt, or remove PSW.Executant manually.


To completely manually remove PSW.Executant malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with PSW.Executant.


Read also:
Pigeon.EHC Trojan Removal instruction
MBat Trojan Information
Spibe Trojan Removal instruction
Pigeon.AWB Trojan Information

Forbes Adware

Click here to remove Forbes malware
Forbes description:
Forbes Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.

Detection Forbes :

Forbes Files:
[%DESKTOP%]\forbes.com business news alerts.lnk
[%PROFILE%]\start menu\forbes.com business news alerts.lnk
[%PROGRAMS%]\forbes.com business news alerts.lnk
[%DESKTOP%]\forbes.com business news alerts.lnk
[%PROFILE%]\start menu\forbes.com business news alerts.lnk
[%PROGRAMS%]\forbes.com business news alerts.lnk

Forbes Folders:
[%PROGRAMS%]\forbes.com business news alerts
[%PROGRAM_FILES%]\forbes

Forbes Registry Keys:
HKEY_CLASSES_ROOT\typelib\{ee2589eb-7fc8-44db-a892-573f2c4b41e0}
HKEY_CLASSES_ROOT\clsid\{ee2589eb-7fc8-44db-a892-573f2c4b41e0}

Forbes Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\forbes.com business news alerts

Removing Forbes:

you can run trial version of ExterminateIt, or remove Forbes manually.


To completely manually remove Forbes malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Forbes.


Read also:
Pigeon.AUZH Trojan Removal instruction

NewtonKnows Adware

Click here to remove NewtonKnows malware
NewtonKnows description:
NewtonKnows Category:Adware,BHO,Hijacker,Toolbar
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
BHO (Browser Helper Object) Trojan.
The BHO waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.
The method of network transport used by the attacker makes this Trojan unique.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.
Instead, this Trojan encodes the data with a simple XOR algorithm before placing it into
the data section of an ICMP ping packet." explained the company.
A Search hijacker redirects search results to other pages and may
transmit search and browsing data to unknown servers. An error page hijacker directs
the browser to another page, usually an advertising page, instead of the usual error
page when the requested URL is not found.
Toolbar presents itself as a helpful add-on for Internet Explorer but it is a real pest.
It replaces your start page, continuosly open a number of pop up windows and so on.

Detection NewtonKnows :

NewtonKnows Files:
[%SYSTEM%]\bar.dll
[%WINDOWS%]\system\bar.dll
[%WINDOWS%]\system\inetadpt.dll
[%SYSTEM%]\bar.dll
[%WINDOWS%]\system\bar.dll
[%WINDOWS%]\system\inetadpt.dll

NewtonKnows Folders:
[%PROGRAM_FILES%]\newton knows
[%WINDOWS%]\temp\vupd

NewtonKnows Registry Keys:
HKEY_CLASSES_ROOT\clsid\{6600d22f-083f-11d6-99de-d172e92ebc2a}
HKEY_CLASSES_ROOT\clsid\{ee392a64-f30b-47c8-a363-cda1cec7dc1b}
HKEY_LOCAL_MACHINE\software\classes\clsid\{ee392a64-f30b-47c8-a363-cda1cec7dc1b}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{ee392a64-f30b-47c8-a363-cda1cec7dc1b}
HKEY_CLASSES_ROOT\clsid\{8ae10ee3-84be-4d3c-8106-7020bf3f0142}
HKEY_CLASSES_ROOT\clsid\{e9407738-a996-421a-a309-5c93c699e10a}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{ee392a64-f30b-47c8-a363-cda1cec7dc1b}
HKEY_CLASSES_ROOT\typelib\{6600d22f-083f-11d6-99de-d172e92ebc2a}
HKEY_CLASSES_ROOT\typelib\{8ae10ee3-84be-4d3c-8106-7020bf3f0142}
HKEY_CLASSES_ROOT\typelib\{ee392a64-f30b-47c8-a363-cda1cec7dc1b}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8ae10ee3-84be-4d3c-8106-7020bf3f0142}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\newton knows
HKEY_LOCAL_MACHINE\software\virtumundo\program\newton knows

NewtonKnows Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\search\searchassistant
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\search\searchassistant
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing NewtonKnows:

you can run trial version of ExterminateIt, or remove NewtonKnows manually.


To completely manually remove NewtonKnows malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with NewtonKnows.


Read also:
Spybot.NYT Worm Removal instruction

Prosiak Trojan

Click here to remove Prosiak malware
Prosiak description:
Prosiak Category:Trojan,Backdoor,RAT
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Some RAT trojans are pranks that are most likely being controlled by a friend or enemy on
April Fool's day or a holiday. Prank RATS are generally not harmful, and won't log keystrokes or hack.

Removing Prosiak:

you can run trial version of ExterminateIt, or remove Prosiak manually.


To completely manually remove Prosiak malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Prosiak.


Read also:
Grog.Il.Mostro Trojan Removal
Ssldump Trojan Removal instruction
Agent.dd Adware Cleaner

ixmuyqdcq.exe Trojan

Click here to remove ixmuyqdcq.exe malware
ixmuyqdcq.exe description:
ixmuyqdcq.exe Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing ixmuyqdcq.exe:

you can run trial version of ExterminateIt, or remove ixmuyqdcq.exe manually.


To completely manually remove ixmuyqdcq.exe malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with ixmuyqdcq.exe.


Read also:
Low.Kill Backdoor Removal
Fakefmt Trojan Removal
PWS.Dummy Trojan Cleaner

MailSpam.BotMailer Hacker Tool

Click here to remove MailSpam.BotMailer malware
MailSpam.BotMailer description:
MailSpam.BotMailer Category:Hacker Tool,DoS
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.
DoS trojans conduct attacks from a single computer with the consent of the user.

Removing MailSpam.BotMailer:

you can run trial version of ExterminateIt, or remove MailSpam.BotMailer manually.


To completely manually remove MailSpam.BotMailer malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with MailSpam.BotMailer.


Read also:
Netpipes Trojan Information
Removing Black.Jec Trojan
Pigeon.AVUH Trojan Cleaner
terra.com.br Tracking Cookie Cleaner
IRC.Inter Backdoor Removal instruction

AdServing.AutoTrader.com Tracking Cookie

Click here to remove AdServing.AutoTrader.com malware
AdServing.AutoTrader.com description:
AdServing.AutoTrader.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing AdServing.AutoTrader.com:

you can run trial version of ExterminateIt, or remove AdServing.AutoTrader.com manually.


To completely manually remove AdServing.AutoTrader.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with AdServing.AutoTrader.com.


Read also:
Bancos.HKM Trojan Symptoms
Removing RPCNuke Hacker Tool

AZVPWS Trojan

Click here to remove AZVPWS malware
AZVPWS description:
AZVPWS Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing AZVPWS:

you can run trial version of ExterminateIt, or remove AZVPWS manually.


To completely manually remove AZVPWS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with AZVPWS.


Read also:
Remove East Trojan
Morality Trojan Removal instruction

Benny Trojan

Click here to remove Benny malware
Benny description:
Benny Category:Trojan,Backdoor,Downloader,DoS
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Backdoors are the most dangerous type of Trojans and the most popular.
Backdoors open infected machines to external control via Internet.
Often the backdoor will not be visible in the log of active programs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Benny:

you can run trial version of ExterminateIt, or remove Benny manually.


To completely manually remove Benny malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Benny.


Read also:
Startpage.BU!downloader Trojan Cleaner
Pigeon.ALZ Trojan Symptoms
Vxidl.AKE Trojan Removal
Removing Pigeon.AKW Trojan
Remove Pigeon.AHR Trojan

Mass.IRC DoS

Click here to remove Mass.IRC malware
Mass.IRC description:
Mass.IRC Category:DoS
These programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.

DoS trojans conduct such attacks from a single computer with the consent of the user.

Worms can carry a DoS procedure as part of their payload.

Removing Mass.IRC:

you can run trial version of ExterminateIt, or remove Mass.IRC manually.


To completely manually remove Mass.IRC malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Mass.IRC.


Read also:
EraseFloppy Trojan Removal instruction
Bancos.GYI Trojan Cleaner

DigitalMafia'z.EXE.File Trojan

Click here to remove DigitalMafia'z.EXE.File malware
DigitalMafia'z.EXE.File description:
DigitalMafia'z.EXE.File Category:Trojan,Hacker Tool
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
Hacker Tools are designed to penetrate remote computers
in order to use them as zombies or to download other malicious programs to computer.

Removing DigitalMafia'z.EXE.File:

you can run trial version of ExterminateIt, or remove DigitalMafia'z.EXE.File manually.


To completely manually remove DigitalMafia'z.EXE.File malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with DigitalMafia'z.EXE.File.


Read also:
Remove MoM Spyware
Removing IROffer.b02 Backdoor
Vxidl.ACB Trojan Removal instruction
Remove Bancos.GNB Trojan
Removing IceZone DoS

Obfuscated Downloader

Click here to remove Obfuscated malware
Obfuscated description:
Obfuscated Category:Downloader,Trojan
Trojans-downloaders downloads and installs new malware or adware on the computer.

This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Obfuscated:

you can run trial version of ExterminateIt, or remove Obfuscated manually.


To completely manually remove Obfuscated malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Obfuscated.


Read also:
Removing SillyDl.CMV Trojan
Removing BO2K.Server Trojan
CleverIEHooker.Jeired Hijacker Removal
Bancos.HCV Trojan Information
Remove BagleDl.AH Trojan

FlashTrack Adware

Click here to remove FlashTrack malware
FlashTrack description:
FlashTrack Category:Adware,BHO
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
The BHO (Browser Helper Object) waits for the user to post personal information to a monitored website.
As this information is entered by the user, it is captured by the BHO and sent back to the attacker.

Detection FlashTrack :

FlashTrack Files:
[%WINDOWS%]\temp\r.exe
[%PROFILE_TEMP%]\8.exe\8.exe
[%SYSTEM%]\flcp.dll
[%SYSTEM%]\flt.dll
[%SYSTEM%]\ftapp.dll
[%WINDOWS%]\system\flcp.dll
[%WINDOWS%]\system\flt.dll
[%WINDOWS%]\system\ftapp.dll
[%WINDOWS%]\temp\r.exe
[%PROFILE_TEMP%]\8.exe\8.exe
[%SYSTEM%]\flcp.dll
[%SYSTEM%]\flt.dll
[%SYSTEM%]\ftapp.dll
[%WINDOWS%]\system\flcp.dll
[%WINDOWS%]\system\flt.dll
[%WINDOWS%]\system\ftapp.dll

FlashTrack Folders:
[%PROGRAM_FILES%]\flt
[%PROGRAM_FILES%]\ftk
[%PROGRAM_FILES%]\reg2
[%PROGRAM_FILES%]\xml
[%PROGRAM_FILES%]\xmod
[%PROGRAM_FILES%]\fla
[%PROGRAM_FILES%]\ftapp

FlashTrack Registry Keys:
HKEY_CLASSES_ROOT\interface\{6e83ae1c-f69c-4aed-af98-d23c24c6fa4b}
HKEY_CLASSES_ROOT\typelib\{7955ea20-e0d6-4a77-88b6-120674d979ea}
HKEY_LOCAL_MACHINE\software\classes\interface\{6e83ae1c-f69c-4aed-af98-d23c24c6fa4b}
HKEY_LOCAL_MACHINE\software\classes\typelib\{7955ea20-e0d6-4a77-88b6-120674d979ea}
HKEY_LOCAL_MACHINE\software\flt
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{665ACD90-4541-4836-9FE4-062386BB8F05}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\ftapp
HKEY_CLASSES_ROOT\bredobj.bredobj
HKEY_CLASSES_ROOT\bredobj.bredobj.1
HKEY_CLASSES_ROOT\clsid\{63cf97e8-4133-438a-a831-cc9c6d47d673}
HKEY_CLASSES_ROOT\clsid\{665acd90-4541-4836-9fe4-062386bb8f05}
HKEY_CLASSES_ROOT\clsid\{7371f073-ac0f-4b80-bb2f-96a488cefb32}
HKEY_CLASSES_ROOT\clsid\{7955ea20-e0d6-4a77-88b6-120674d979ea}
HKEY_CLASSES_ROOT\interface\{06542764-7bb2-412b-80d6-d103d1474c93}
HKEY_CLASSES_ROOT\interface\{baef4039-3c02-4c9e-a2f4-87b513ab0e87}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{63cf97e8-4133-438a-a831-cc9c6d47d673}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{665acd90-4541-4836-9fe4-062386bb8f05}
HKEY_CLASSES_ROOT\typelib\{db9f4c00-65e8-4fa1-917b-e4844ddf5909}
HKEY_CLASSES_ROOT\typelib\{e6c71e83-e02b-4bc4-958d-a9194916ec19}
HKEY_LOCAL_MACHINE\software\classes\clsid\{63cf97e8-4133-438a-a831-cc9c6d47d673}
HKEY_LOCAL_MACHINE\software\classes\clsid\{665acd90-4541-4836-9fe4-062386bb8f05}
HKEY_LOCAL_MACHINE\software\classes\clsid\{7371f073-ac0f-4b80-bb2f-96a488cefb32}
HKEY_LOCAL_MACHINE\software\classes\interface\{06542764-7bb2-412b-80d6-d103d1474c93}
HKEY_LOCAL_MACHINE\software\classes\interface\{baef4039-3c02-4c9e-a2f4-87b513ab0e87}
HKEY_LOCAL_MACHINE\software\classes\typelib\{db9f4c00-65e8-4fa1-917b-e4844ddf5909}
HKEY_LOCAL_MACHINE\software\classes\typelib\{e6c71e83-e02b-4bc4-958d-a9194916ec19}
HKEY_LOCAL_MACHINE\software\ftapp
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{63cf97e8-4133-438a-a831-cc9c6d47d673}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{665acd90-4541-4836-9fe4-062386bb8f05}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{7371f073-ac0f-4b80-bb2f-96a488cefb32}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{d7e588ab-a5d9-4422-b313-22a3470f9700}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\flt
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\rvp
HKEY_LOCAL_MACHINE\software\persistent bytes
HKEY_LOCAL_MACHINE\software\rvp

FlashTrack Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\reg2
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\reg2
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\xmod
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\xmod
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\netfilter
HKEY_LOCAL_MACHINE\software\xml
HKEY_LOCAL_MACHINE\software\xml
HKEY_LOCAL_MACHINE\software\xml
HKEY_LOCAL_MACHINE\software\xml
HKEY_LOCAL_MACHINE\software\xml

Removing FlashTrack:

you can run trial version of ExterminateIt, or remove FlashTrack manually.


To completely manually remove FlashTrack malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with FlashTrack.


Read also:
Removing Veloz.com Tracking Cookie
KeyEmulate Trojan Information

Pornu RAT

Click here to remove Pornu malware
Pornu description:
Pornu Category:RAT
Many trojans and backdoors now have remote administration capabilities
allowing an individual to control the victim's computer.
Many times a file called the server must be opened on the victim's computer before
the trojan can have access to it.

These are generally sent through email, P2P file sharing software,
and in internet downloads. They are usually disguised as a legitimate program or file.
Many server files will display a fake error message when opened, to make it seem like it didn't open.
Some will also kill antivirus and firewall software.

Removing Pornu:

you can run trial version of ExterminateIt, or remove Pornu manually.


To completely manually remove Pornu malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pornu.


Read also:
Vxidl.ANR Trojan Symptoms
Crucifix Trojan Removal instruction
Remove pdis.com.au Tracking Cookie
AUJ Trojan Symptoms

Probot.Logger Spyware

Click here to remove Probot.Logger malware
Probot.Logger description:
Probot.Logger Category:Spyware
Spyware programs can collect various types of personal information,
such as Internet surfing habit, sites that have been visited,
but can also interfere with user control of the computer in other ways,
such as installing additional software, redirecting Web browser activity,
accessing websites blindly that will cause more harmful viruses,
or diverting advertising revenue to a third party.

Removing Probot.Logger:

you can run trial version of ExterminateIt, or remove Probot.Logger manually.


To completely manually remove Probot.Logger malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Probot.Logger.


Read also:
Crazy.Num.Caps.Scroll Trojan Removal instruction
Lineage.ABP Trojan Removal
stat.su Tracking Cookie Cleaner
Auto Trojan Removal instruction

Pigeon.AJC Trojan

Click here to remove Pigeon.AJC malware
Pigeon.AJC description:
Pigeon.AJC Category:Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Removing Pigeon.AJC:

you can run trial version of ExterminateIt, or remove Pigeon.AJC manually.


To completely manually remove Pigeon.AJC malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Pigeon.AJC.


Read also:
Bancos.GLT Trojan Symptoms
Win32.Rpc Trojan Removal instruction
Remove Pmap.Tools Trojan

Sunday, February 1, 2009

RXToolbar Adware

Click here to remove RXToolbar malware
RXToolbar description:
RXToolbar Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Detection RXToolbar :

RXToolbar Files:
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume_sel.bmp
[%PROGRAM_FILES%]\rxtoolbar\CacheCatalog.rx
[%PROGRAM_FILES%]\rxtoolbar\CacheCatolog.rx
[%PROGRAM_FILES%]\rxtoolbar\graphics\additional.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\additional_active.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\background.jpg
[%PROGRAM_FILES%]\rxtoolbar\graphics\blue_hr_horz.GIF
[%PROGRAM_FILES%]\rxtoolbar\graphics\gray_hr_horz.GIF
[%PROGRAM_FILES%]\rxtoolbar\graphics\thumbtack.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\thumbtack_active.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\thumbtack_click.gif
[%PROGRAM_FILES%]\rxtoolbar\html\content.htm
[%PROGRAM_FILES%]\rxtoolbar\html\main.htm
[%PROGRAM_FILES%]\rxtoolbar\rx.xml
[%PROGRAM_FILES%]\rxtoolbar\rxtoolbar.cfg
[%PROGRAM_FILES%]\rxtoolbar\RXToolBar.dll
[%PROGRAM_FILES%]\rxtoolbar\rxwebsearches.xsl
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bLabels01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bLabels01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\CustomerSecret.Key
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\CustomerSecret.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\nLabels01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\nLabels01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\SemanticInsight.dat
[%PROGRAM_FILES%]\RXToolBar\Semantic Insight\SemanticInsight.exe
[%PROGRAM_FILES%]\rxtoolbar\sfcont.bin
[%PROGRAM_FILES%]\rxtoolbar\sfcont.dll
[%PROGRAM_FILES%]\rxtoolbar\yahoo.xsl
[%WINDOWS%]\temp\adware\RXToolbar.exe
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_closetabs_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_download_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_messageuser_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_newsearch_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_searchuser_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\searchbar_showsearch_sel.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume_dis.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume_over.bmp
[%PROGRAM_FILES%]\Kazaa\Skins\Black Glass\trafficbar_resume_sel.bmp
[%PROGRAM_FILES%]\rxtoolbar\CacheCatalog.rx
[%PROGRAM_FILES%]\rxtoolbar\CacheCatolog.rx
[%PROGRAM_FILES%]\rxtoolbar\graphics\additional.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\additional_active.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\background.jpg
[%PROGRAM_FILES%]\rxtoolbar\graphics\blue_hr_horz.GIF
[%PROGRAM_FILES%]\rxtoolbar\graphics\gray_hr_horz.GIF
[%PROGRAM_FILES%]\rxtoolbar\graphics\thumbtack.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\thumbtack_active.gif
[%PROGRAM_FILES%]\rxtoolbar\graphics\thumbtack_click.gif
[%PROGRAM_FILES%]\rxtoolbar\html\content.htm
[%PROGRAM_FILES%]\rxtoolbar\html\main.htm
[%PROGRAM_FILES%]\rxtoolbar\rx.xml
[%PROGRAM_FILES%]\rxtoolbar\rxtoolbar.cfg
[%PROGRAM_FILES%]\rxtoolbar\RXToolBar.dll
[%PROGRAM_FILES%]\rxtoolbar\rxwebsearches.xsl
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bKPack01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bLabels01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\bLabels01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\CustomerSecret.Key
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\CustomerSecret.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\nLabels01.dat
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\nLabels01.sig
[%PROGRAM_FILES%]\rxtoolbar\semantic insight\SemanticInsight.dat
[%PROGRAM_FILES%]\RXToolBar\Semantic Insight\SemanticInsight.exe
[%PROGRAM_FILES%]\rxtoolbar\sfcont.bin
[%PROGRAM_FILES%]\rxtoolbar\sfcont.dll
[%PROGRAM_FILES%]\rxtoolbar\yahoo.xsl
[%WINDOWS%]\temp\adware\RXToolbar.exe

RXToolbar Folders:
[%PROGRAM_FILES%]\rxtoolbar
[%PROGRAM_FILES%]\aaayoureweb

RXToolbar Registry Keys:
HKEY_CLASSES_ROOT\clsid\{25d8bacf-3de2-4b48-ae22-d659b8d835b0}
HKEY_CLASSES_ROOT\clsid\{2ab289ae-4b90-4281-b2ae-1f4bb034b647}
HKEY_CLASSES_ROOT\clsid\{59879fa4-4790-461c-a1cc-4ec4de4ca483}
HKEY_CLASSES_ROOT\rxresult.rxresultfilter
HKEY_CLASSES_ROOT\rxresult.rxresultfilter.1
HKEY_CLASSES_ROOT\rxresult.rxresulttracker
HKEY_CLASSES_ROOT\rxresult.rxresulttracker.1
HKEY_CLASSES_ROOT\rxtoolbar.tbinfo
HKEY_CLASSES_ROOT\rxtoolbar.tbinfo.1
HKEY_CLASSES_ROOT\typelib\{05563f82-69a7-40a6-8670-153b635a7ef6}
HKEY_CLASSES_ROOT\typelib\{66b20295-dc57-42b6-acdf-52d916e86464}
HKEY_CURRENT_USER\software\rx toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{59879fa4-4790-461c-a1cc-4ec4de4ca483}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\RXToolBar
HKEY_LOCAL_MACHINE\software\rxresults
HKEY_CLASSES_ROOT\rxtoolbar.tbinfo rx toolbar
HKEY_CLASSES_ROOT\rxtoolbar.tbinfo.1 rx toolbar
HKEY_CURRENT_USER\software\aaayoureweb
HKEY_LOCAL_MACHINE\software\aaayoureweb
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar {25d8bacf-3de2-4b48-ae22-d659b8d835b0}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\rxtoolbar
HKEY_LOCAL_MACHINE\software\rtrmin

RXToolbar Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\runonce
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\aaayoureweb toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\aaayoureweb toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\aaayoureweb toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\aaayoureweb toolbar
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\aaayoureweb toolbar

Removing RXToolbar:

you can run trial version of ExterminateIt, or remove RXToolbar manually.


To completely manually remove RXToolbar malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with RXToolbar.


Read also:
Pigeon.AGB Trojan Removal

Bancos.HVA Trojan

Click here to remove Bancos.HVA malware
Bancos.HVA description:
Bancos.HVA Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.HVA:

you can run trial version of ExterminateIt, or remove Bancos.HVA manually.


To completely manually remove Bancos.HVA malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.HVA.


Read also:
Removing Vxidl.ACW Trojan
Spam.UnaBomber Trojan Cleaner
Banload Downloader Removal
Tofger Trojan Information

SillyDl.CDR Trojan

Click here to remove SillyDl.CDR malware
SillyDl.CDR description:
SillyDl.CDR Category:Trojan,Downloader
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Removing SillyDl.CDR:

you can run trial version of ExterminateIt, or remove SillyDl.CDR manually.


To completely manually remove SillyDl.CDR malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDl.CDR.


Read also:
Super Trojan Information
Win32.Senna Trojan Removal

Bancos.GJQ Trojan

Click here to remove Bancos.GJQ malware
Bancos.GJQ description:
Bancos.GJQ Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Bancos.GJQ:

you can run trial version of ExterminateIt, or remove Bancos.GJQ manually.


To completely manually remove Bancos.GJQ malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Bancos.GJQ.


Read also:
Pigeon.AVDH Trojan Removal

TrojanDownloader.Win32.Delf.bp Trojan

Click here to remove TrojanDownloader.Win32.Delf.bp malware
TrojanDownloader.Win32.Delf.bp description:
TrojanDownloader.Win32.Delf.bp Category:Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
The downloader either launches the new malware or registers it to enable autorun
according to the local operating system requirements.

Removing TrojanDownloader.Win32.Delf.bp:

you can run trial version of ExterminateIt, or remove TrojanDownloader.Win32.Delf.bp manually.


To completely manually remove TrojanDownloader.Win32.Delf.bp malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with TrojanDownloader.Win32.Delf.bp.


Read also:
GB Downloader Cleaner

Agent.ad Adware

Click here to remove Agent.ad malware
Agent.ad description:
Agent.ad Category:Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits

Detection Agent.ad :

Agent.ad Files:
[%SYSTEM%]\usersvc.exe
[%SYSTEM%]\usersvc.exe

Removing Agent.ad:

you can run trial version of ExterminateIt, or remove Agent.ad manually.


To completely manually remove Agent.ad malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Agent.ad.


Read also:
Bancos.GBP Trojan Removal instruction
BAT.Filler Trojan Symptoms
Agent.ax Trojan Removal instruction
SillyDl.BZD Downloader Removal

SillyDL.DDW Trojan

Click here to remove SillyDL.DDW malware
SillyDL.DDW description:
SillyDL.DDW Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing SillyDL.DDW:

you can run trial version of ExterminateIt, or remove SillyDL.DDW manually.


To completely manually remove SillyDL.DDW malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with SillyDL.DDW.


Read also:
Zomby Backdoor Information

WMI Backdoor

Click here to remove WMI malware
WMI description:
WMI Category:Backdoor,Hacker Tool
Backdoors combine the functionality of most other types of in one package.
Backdoors have one especially dangerous sub-class: variants that can propagate like worms.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing WMI:

you can run trial version of ExterminateIt, or remove WMI manually.


To completely manually remove WMI malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with WMI.


Read also:
PCSentinel.SmokingGun Spyware Information
SysInfoMailer Trojan Information
Remove Mag Trojan
Removing Macro.Word97.Thus.based Trojan
Target.Server Adware Cleaner

top100bandsites.com Tracking Cookie

Click here to remove top100bandsites.com malware
top100bandsites.com description:
top100bandsites.com Category:Tracking Cookie
Tracking cookies, like regular cookies, are small files that get deposited
onto your computer's hard drive
as you browse the Internet.
Unlike harmless cookies that normally let you use certain websites more easily,
tracking cookies usually collect and report information about what websites you visit
and what you do at those websites.

If you fill out forms online with your real name and contact information,
click on banners and then purchase an item, or fill out sweepstakes or contests forms,
then it's possible that major online advertisers know your name and have associated it
with your IP address and other information.

Removing top100bandsites.com:

you can run trial version of ExterminateIt, or remove top100bandsites.com manually.


To completely manually remove top100bandsites.com malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with top100bandsites.com.


Read also:
Remove NetAdvance Trojan

Nabegod Trojan

Click here to remove Nabegod malware
Nabegod description:
Nabegod Category:Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Removing Nabegod:

you can run trial version of ExterminateIt, or remove Nabegod manually.


To completely manually remove Nabegod malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Nabegod.


Read also:
Remove VNC.Server RAT
Nunci Hijacker Removal
Pirchslap DoS Symptoms

Attack.against.CommuniGatePro.for.Windows DoS

Click here to remove Attack.against.CommuniGatePro.for.Windows malware
Attack.against.CommuniGatePro.for.Windows description:
Attack.against.CommuniGatePro.for.Windows Category:DoS
DoS programs attack web servers by sending numerous requests to the specified server,
often causing it to crash under an excessive volume of requests.


Removing Attack.against.CommuniGatePro.for.Windows:

you can run trial version of ExterminateIt, or remove Attack.against.CommuniGatePro.for.Windows manually.


To completely manually remove Attack.against.CommuniGatePro.for.Windows malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with Attack.against.CommuniGatePro.for.Windows.


Read also:
Win32.Sensode Trojan Removal
Advanced.Computer.Monitor Spyware Cleaner
Cbur.kick.mrc DoS Removal instruction
Remove VB.dj Downloader
Remove Delf.fv Trojan

CQTS Trojan

Click here to remove CQTS malware
CQTS description:
CQTS Category:Trojan,Spyware,Hacker Tool
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Spyware can even change computer settings, resulting in slow connection speeds,
different home pages, and loss of Internet or other programs.
In an attempt to increase the understanding of spyware, a more formal classification
of its included software types is captured under the term privacy-invasive software.
These utilities are designed to penetrate remote computers
in order to use them as zombies (by using backdoors) or to download other malicious programs to computer.

Exploits use vulnerabilities in operating systems and applications to achieve the same result.

Removing CQTS:

you can run trial version of ExterminateIt, or remove CQTS manually.


To completely manually remove CQTS malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with CQTS.


Read also:
Removing BitchAdRevService.com Tracking Cookie