Removed: C:\Documents and Settings\All Users\Application Data\BrEaK\Break.exe (trojan Bancos)
Malware: mobile5.exe Removed: C:\Documents and Settings\All Users\Application Data\BrEaK\Break.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: Break.exe Espanha Author: Home Basic Related File: C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\BREAK\BREAK.EXE Type: Registry Run Item Name: Break.exe Author: Home Basic Related File: C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\BREAK\BREAK.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to [...]
Removal Tool
Removed: C:\drixxxxxxx.exe\drixxxxxxx.exe (trojan SpyEyes)
Malware: C:\sand-box\W-2form.exe Removed: C:\drixxxxxxx.exe\drixxxxxxx.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: drixxxxxxx.exe Author: elite Related File: C:\DRIXXXXXXX.EXE\DRIXXXXXXX.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\drixxxxxxx.exe Value: “C:\drixxxxxxx.exe\drixxxxxxx.exe” Folders: C:\drixxxxxxx.exe\ Files: C:\drixxxxxxx.exe\config.bin C:\drixxxxxxx.exe\drixxxxxxx.exe —————————————————————————————————————————- Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.08.30 Trojan.Generic.KD.28784 Kaspersky 7.0.0.125 2010.08.30 [...]
Removal Tool
Removed: C:\WINDOWS\system32\msapps\comsrvr.exe (trojan Heur)
Malware: bro.jpg Removed: C:\WINDOWS\system32\msapps\comsrvr.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: COMServer Author: dncmc Related File: “C:\WINDOWS\system32\msapps\comsrvr.exe” s Type: Auto Services Item Name: comsrvr.exe Author: Related File: C:\WINDOWS\SYSTEM32\MSAPPS\COMSRVR.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\System\CurrentControlSet\Services\COMServer\ImagePath Value: “”C:\WINDOWS\system32\msapps\comsrvr.exe” s” Folders: C:\WINDOWS\system32\msapps\ Files: C:\WINDOWS\system32\msapps\comsrvr.exe —————————————————————————————————————————- Antivirus [...]
Removal Tool
Removed: asectool.exe, scan.dll (FakeAV – Advanced Security Tool 2010)
Malware: a32.exe Removed: C:\Documents and Settings\Administrator\Application Data\asectool.exe C:\Documents and Settings\Administrator\Application Data\scan.dll —————————————————————————————————————————- Detected by UnHackMe: Item Name: {80c10400-59cb-4c79-97ce-cc693103afca} Author: Microsoft Corporation Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\SCAN.DLL Type: Browser Helper Objects Item Name: shell Author: Unknown Related File: “C:\Documents and Settings\Administrator\Application Data\asectool.exe” /sn Type: User Shell Item Name: AdvSecTool Author: Unknown Related File: C:\DOCUMENTS AND [...]
Removal Tool
Removed: C:\WINDOWS\mstwain32.exe (trojan Turkojan)
Malware: svchosts.exe Removed: C:\WINDOWS\mstwain32.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: mstwain32.exe Author: Unknown Related File: C:\WINDOWS\MSTWAIN32.EXE Type: Running Processes After first reboot detected by UnHackMe: Item Name: mstwain32 Author: Related File: C:\WINDOWS\mstwain32.exe Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\mstwain32 Value: “C:\WINDOWS\mstwain32.exe” Files: C:\WINDOWS\cmsetac.dll [...]
Removal Tool



