Tuesday, October 14, 2008

Helpud Trojan

Removing Helpud
Categories: Trojan
This loose category includes a variety of Trojans that damage victim machines or threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers create multi-functional Trojans rather than Trojan packs.

Helpud Also known as:

[Kaspersky]Packed.Win32.NSAnti.r,Trojan-PSW.Win32.Magania.bkw,Trojan-PSW.Win32.Magania.bki;
[McAfee]New Malware.w;
[F-Prot]W32/PWStealer3!Generic;
[Other]Infostealer.Gampass,Mal/EncPk-AZ,PWS:Win32/Wowsteal.gen!A,Virus:Win32/Viking.IT

Visible Symptoms:
Files in system folders:
[%WINDOWS%]\Debug\BE8540978C80.dll
[%WINDOWS%]\Debug\BE8540978C80.exe
[%WINDOWS%]\Help\2ACE4CFBAF2C.dll
[%WINDOWS%]\Help\2ACE4CFBAF2C.exe
[%WINDOWS%]\Debug\BE8540978C80.dll
[%WINDOWS%]\Debug\BE8540978C80.exe
[%WINDOWS%]\Help\2ACE4CFBAF2C.dll
[%WINDOWS%]\Help\2ACE4CFBAF2C.exe

How to detect Helpud:

Files:
[%WINDOWS%]\Debug\BE8540978C80.dll
[%WINDOWS%]\Debug\BE8540978C80.exe
[%WINDOWS%]\Help\2ACE4CFBAF2C.dll
[%WINDOWS%]\Help\2ACE4CFBAF2C.exe
[%WINDOWS%]\Debug\BE8540978C80.dll
[%WINDOWS%]\Debug\BE8540978C80.exe
[%WINDOWS%]\Help\2ACE4CFBAF2C.dll
[%WINDOWS%]\Help\2ACE4CFBAF2C.exe

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{79fc744e-75ca-49b0-8f02-aeae4caacbe0}
HKEY_CLASSES_ROOT\clsid\{c5470a7f-bdf2-4d97-847b-6aa97adcf91a}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks

Removing Helpud:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Small.B Trojan Removal
Removing VividKeyLogger Spyware
Caiijing Trojan Removal
Other Downloader Information
Remove DlToon Trojan

No comments: