Tuesday, November 18, 2008

EnergyPlugin Adware

Removing EnergyPlugin
Categories: Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.


Visible Symptoms:
Files in system folders:
[%COMMON_PROGRAMS%]\E-nrgyPlus\E-nrgyPlus.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\homepage.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\UnInstall.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\E-nrgyPlus.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\homepage.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\UnInstall.lnk

How to detect EnergyPlugin:

Files:
[%COMMON_PROGRAMS%]\E-nrgyPlus\E-nrgyPlus.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\homepage.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\UnInstall.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\E-nrgyPlus.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\homepage.lnk
[%COMMON_PROGRAMS%]\E-nrgyPlus\UnInstall.lnk

Folders:
[%PROGRAM_FILES%]\E-nrgyPlus
[%PROGRAMS%]\energyplugin
[%PROGRAM_FILES%]\energyplugin

Registry Keys:
HKEY_CLASSES_ROOT\dial\defaulticon
HKEY_CLASSES_ROOT\dial\shell

Registry Values:
HKEY_CLASSES_ROOT\dial
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\user agent\post platform
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\user agent\post platform
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\user agent\post platform
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\user agent\post platform
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\internet settings\user agent\post platform
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing EnergyPlugin:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
SystemMD Adware Removal instruction
Vxidl.AWE Trojan Removal instruction
Toledorz Backdoor Information
Istbar.dr Downloader Symptoms
Zlob.Fam.Image ActiveX Access Trojan Symptoms

No comments: