Thursday, November 13, 2008

Rich.Video.Codec Trojan

Removing Rich.Video.Codec
Categories: Trojan
This category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

How to detect Rich.Video.Codec:

Folders:
[%PROGRAM_FILES%]\RichVideoCodec

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{05075a7c-3bda-48a8-b40f-c0f71b039263}
HKEY_CLASSES_ROOT\clsid\{31de3194-c748-48bb-b620-2d0156b5e1ad}
HKEY_CLASSES_ROOT\clsid\{382c8a97-bfef-47b5-9770-87c4de651e37}
HKEY_CLASSES_ROOT\clsid\{4ac96b80-a531-4590-b536-5dddb4d8ba28}
HKEY_CLASSES_ROOT\clsid\{5355303a-2042-4c2a-b86a-3c81184d2401}
HKEY_CLASSES_ROOT\clsid\{6537eff9-5372-40ca-8a1a-04283fb82e35}
HKEY_CLASSES_ROOT\clsid\{8eb24324-3394-4c5f-b69c-744a74797952}
HKEY_CLASSES_ROOT\clsid\{b1afaf0d-825a-4844-a7b0-bbbdbad35486}
HKEY_CLASSES_ROOT\clsid\{b1be4da0-f221-45f2-9f69-a0506030eaf9}
HKEY_CLASSES_ROOT\clsid\{e2abefc9-37a1-4183-90dc-b85184f48310}
HKEY_CLASSES_ROOT\clsid\{f02c37ac-f6dc-4c75-b61a-8f86bc5a9e9a}
HKEY_CLASSES_ROOT\clsid\{fceceb99-47cb-4be6-a79c-fc3e593288ac}
HKEY_CLASSES_ROOT\hdtip.bxdm
HKEY_CLASSES_ROOT\hdtip.toolbar.1
HKEY_CLASSES_ROOT\interface\{2694a3dc-3864-44a4-a100-fdd1e4e8f29c}
HKEY_CLASSES_ROOT\interface\{36009226-067d-47c0-a497-7b2e5d3faf03}
HKEY_CLASSES_ROOT\interface\{56ca185a-095a-4f87-a7ee-2448d112a222}
HKEY_CLASSES_ROOT\interface\{65881147-a683-4919-93fc-29eded378a18}
HKEY_CLASSES_ROOT\interface\{ce58e4d5-e8e1-4f59-ac3f-6315810a7889}
HKEY_CLASSES_ROOT\typelib\{0cf92b33-3032-4bd2-b7e1-5b993d0ab652}
HKEY_CLASSES_ROOT\typelib\{6a930694-495d-4c93-a483-d72fef0ef1ce}
HKEY_CLASSES_ROOT\typelib\{b3db780e-faa5-401b-aa41-fd50a7605c94}
HKEY_CLASSES_ROOT\typelib\{b4069f9d-db70-4166-8fb8-feb68e884876}
HKEY_CLASSES_ROOT\typelib\{e9db7c76-04a0-4f32-8b57-a24eec0f6db9}
HKEY_CLASSES_ROOT\typelib\{f7448446-022e-4d58-a356-038e7e110c6e}\1.0
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{31de3194-c748-48bb-b620-2d0156b5e1ad}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\richvideocodec
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\webvideo

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload

Removing Rich.Video.Codec:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:

No comments: