Friday, November 14, 2008

Virus.Ray Ransomware

Removing Virus.Ray
Categories: Ransomware
A cryptovirus, cryptotrojan or cryptoworm is a type of
malware that encrypts the data belonging to an individual on a computer,
demanding a ransom for its restoration.

The term ransomware is commonly used to describe software that encrypts the data
belonging to an individual on a computer, demanding a ransom for its restoration.
Although the field known as cryptovirology predates the term "ransomware".

Visible Symptoms:
Files in system folders:
[%DESKTOP%]\VirusRay 3.8.lnk
[%STARTMENU%]\VirusRay 3.8.lnk
[%DESKTOP%]\VirusRay 3.8.lnk
[%STARTMENU%]\VirusRay 3.8.lnk

How to detect Virus.Ray:

Files:
[%DESKTOP%]\VirusRay 3.8.lnk
[%STARTMENU%]\VirusRay 3.8.lnk
[%DESKTOP%]\VirusRay 3.8.lnk
[%STARTMENU%]\VirusRay 3.8.lnk

Folders:
[%PROGRAMS%]\VirusRay 3.8
[%PROGRAM_FILES%]\VirusRay 3.8

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{97c6e0e9-1d24-48ca-11e7-dc22c5308aba}
HKEY_CLASSES_ROOT\interface\{1d723c81-2c9f-44dd-8f94-a2d3a06845e9}
HKEY_CLASSES_ROOT\interface\{41fc2ebd-79f5-4fe0-8558-708dcb7fe255}
HKEY_CLASSES_ROOT\interface\{45db217b-965d-4917-a653-c2a871534b4c}
HKEY_CLASSES_ROOT\interface\{48a95844-a761-4d96-8191-0913d493823e}
HKEY_CLASSES_ROOT\interface\{60fd2747-818b-4242-a041-4c1209f3d3a6}
HKEY_CLASSES_ROOT\interface\{70f731fd-6c5f-4d46-a29c-6b97fabef0d0}
HKEY_CLASSES_ROOT\interface\{77f6abaa-c14b-4e0c-975e-0cffa568b0be}
HKEY_CLASSES_ROOT\interface\{78aa9209-ded5-4f37-93a0-89fbee57e4fc}
HKEY_CLASSES_ROOT\interface\{869b656b-142e-47e6-b4f6-973d17e80bbf}
HKEY_CLASSES_ROOT\interface\{89f84a04-f5ef-4f4a-af97-7da43dd0371f}
HKEY_CLASSES_ROOT\interface\{8f9c1393-41d7-4be1-8752-098bc97514d2}
HKEY_CLASSES_ROOT\interface\{9097fa96-8efd-4d04-8024-c920ab56bbea}
HKEY_CLASSES_ROOT\interface\{acd5d550-4481-4f05-b6d8-a78566bd81d3}
HKEY_CLASSES_ROOT\interface\{be096ecd-d62e-4b2d-bba5-cbf9bfa4ab23}
HKEY_CLASSES_ROOT\interface\{dda20808-84a0-48c3-902a-7e31ff47ea6b}
HKEY_CLASSES_ROOT\interface\{e9c4cbeb-7bdf-47ff-8edf-d72b50bb50ef}
HKEY_CLASSES_ROOT\typelib\{1ae427b0-e3b7-4d2e-a6b9-36605b0f214e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\virusray 3.8.exe 3.8
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\virusray 3.8
HKEY_LOCAL_MACHINE\software\virusray 3.8

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Virus.Ray:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Win32.ControlTotal Trojan Symptoms
Lineage Trojan Removal
Vxidl.AMP Trojan Removal
CommonName.Internet.Keyword BHO Symptoms
Real.Spy Spyware Cleaner

No comments: