Monday, November 17, 2008

Claria.Weatherscope Adware

Removing Claria.Weatherscope
Categories: Adware,Spyware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer,
including information related to Internet browser usage or other computer habits
Spyware is computer software that is installed surreptitiously on a personal computer
to with the computer, without the user's informed consent.

Visible Symptoms:
Files in system folders:
[%PROFILE_TEMP%]\weatherscopesetup.exe
[%STARTUP%]\weatherscope.lnk
[%WINDOWS%]\downloaded program files\iegator4127.dll
[%PROFILE_TEMP%]\weatherscopesetup.exe
[%STARTUP%]\weatherscope.lnk
[%WINDOWS%]\downloaded program files\iegator4127.dll

How to detect Claria.Weatherscope:

Files:
[%PROFILE_TEMP%]\weatherscopesetup.exe
[%STARTUP%]\weatherscope.lnk
[%WINDOWS%]\downloaded program files\iegator4127.dll
[%PROFILE_TEMP%]\weatherscopesetup.exe
[%STARTUP%]\weatherscope.lnk
[%WINDOWS%]\downloaded program files\iegator4127.dll

Folders:
[%PROGRAMS%]\weatherscope
[%PROGRAM_FILES%]\weatherscope
[%PROGRAM_FILES_COMMON%]\prtdbfnn

Registry Keys:
HKEY_CLASSES_ROOT\appid\hungryhands.dll
HKEY_CLASSES_ROOT\appid\{03f8822f-8877-4002-8bcd-b532d53d8471}
HKEY_CLASSES_ROOT\clsid\{bcf96fb4-5f1b-497b-aecc-910304a55011}
HKEY_CLASSES_ROOT\hungryhands.hungrybho
HKEY_CLASSES_ROOT\hungryhands.hungrybho.1
HKEY_CLASSES_ROOT\interface\{f8fb4ea2-6c05-4de5-8cd0-625b03f48e22}
HKEY_CLASSES_ROOT\typelib\{03f8822f-8877-4002-8bcd-b532d53d8471}
HKEY_LOCAL_MACHINE\software\classes\clsid\{bcf96fb4-5f1b-497b-aecc-910304a55011}
HKEY_LOCAL_MACHINE\software\classes\interface\{f8fb4ea2-6c05-4de5-8cd0-625b03f48e22}
HKEY_LOCAL_MACHINE\software\classes\typelib\{03f8822f-8877-4002-8bcd-b532d53d8471}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\[%WINDOWS%]\downloaded program files\iegator4128.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\weatherscope

Registry Values:
HKEY_LOCAL_MACHINE\software\classes\appid\hungryhands.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\weatherscope
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app management\arpcache\weatherscope

Removing Claria.Weatherscope:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
TargetSaver Downloader Removal
Removing SpyAxe Trojan
WinxDefender Ransomware Removal instruction
PrivacyRedeemer Ransomware Removal instruction

No comments: