safewin.exe - Useless


Manual removal instructions:

PWSteal.Focosenha is a Trojan horse program that attempts to steal user names, passwords, and other information from the infected computer.
Logs keystrokes and captures background images when the address bar in Internet Explorer contains predetermined URLs.
The keystrokes are saved in:
The captured images are saved in the directory:
Sends LogMedia.TXT and image files stored in %Windir%\MSN\DAT to a predetermined email address.

Manual removal:
Navigate to the key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
and delete the value: "Safe"="C:\Windows\MSN\SafeWin.exe"
Navigate to and delete the key: HKEY_CURRENT_USER\SafeMode

Remove safewin.exe now!

Dmitry Sokolov:

I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.

Since that time I work every day to fix the issues that antiviruses cannot.

If your antivirus have not helped you solve the problem, you should try UnHackMe.

We are a small company and you can ask me directly, if you have any questions.


You can read UnHackMe testimonials here.