Thursday, November 13, 2008

BootMerlin Trojan

Removing BootMerlin
Categories: Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

BootMerlin Also known as:

[Kaspersky]Trojan.Win32.VB.awo;
[McAfee]W32/BootMerlin;
[Other]Win32/BootMerlin.A

Visible Symptoms:
Files in system folders:
[%WINDOWS%]\System\csrss.exe
[%SYSTEM%]\dllcache\G-Vulcan-III.exe
[%WINDOWS%]\System\csrss.exe
[%SYSTEM%]\dllcache\G-Vulcan-III.exe

How to detect BootMerlin:

Files:
[%WINDOWS%]\System\csrss.exe
[%SYSTEM%]\dllcache\G-Vulcan-III.exe
[%WINDOWS%]\System\csrss.exe
[%SYSTEM%]\dllcache\G-Vulcan-III.exe

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing BootMerlin:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:

No comments: