Friday, November 28, 2008

YourEnhancement Downloader

Removing YourEnhancement
Categories: Downloader
Trojans-downloaders downloads and installs new malware or adware on the computer.


Visible Symptoms:
Files in system folders:
[%WINDOWS%]\Duce6.exe
[%WINDOWS%]\pf78.exe
[%WINDOWS%]\srvisixxhw.exe
[%WINDOWS%]\SYSC00.exe
[%WINDOWS%]\Taga96.exe
[%WINDOWS%]\unin101.exe
[%WINDOWS%]\uninst108.exe
[%WINDOWS%]\Uninst2.htm
[%WINDOWS%]\Unist1.htm
[%WINDOWS%]\uni_7eh.exe
[%WINDOWS%]\uni_e6h.exe
[%WINDOWS%]\uni_eh.exe
[%WINDOWS%]\uni_ehhh.exe
[%PROFILE_TEMP%]\Tagasuarus97.exe
[%WINDOWS%]\CCZoop05.exe
[%WINDOWS%]\gege15x.exe
[%WINDOWS%]\srvtgdjgym.exe
[%WINDOWS%]\sys03122656409.exe
[%WINDOWS%]\win32066564091222006.exe
[%WINDOWS%]\Duce6.exe
[%WINDOWS%]\pf78.exe
[%WINDOWS%]\srvisixxhw.exe
[%WINDOWS%]\SYSC00.exe
[%WINDOWS%]\Taga96.exe
[%WINDOWS%]\unin101.exe
[%WINDOWS%]\uninst108.exe
[%WINDOWS%]\Uninst2.htm
[%WINDOWS%]\Unist1.htm
[%WINDOWS%]\uni_7eh.exe
[%WINDOWS%]\uni_e6h.exe
[%WINDOWS%]\uni_eh.exe
[%WINDOWS%]\uni_ehhh.exe
[%PROFILE_TEMP%]\Tagasuarus97.exe
[%WINDOWS%]\CCZoop05.exe
[%WINDOWS%]\gege15x.exe
[%WINDOWS%]\srvtgdjgym.exe
[%WINDOWS%]\sys03122656409.exe
[%WINDOWS%]\win32066564091222006.exe

How to detect YourEnhancement:

Files:
[%WINDOWS%]\Duce6.exe
[%WINDOWS%]\pf78.exe
[%WINDOWS%]\srvisixxhw.exe
[%WINDOWS%]\SYSC00.exe
[%WINDOWS%]\Taga96.exe
[%WINDOWS%]\unin101.exe
[%WINDOWS%]\uninst108.exe
[%WINDOWS%]\Uninst2.htm
[%WINDOWS%]\Unist1.htm
[%WINDOWS%]\uni_7eh.exe
[%WINDOWS%]\uni_e6h.exe
[%WINDOWS%]\uni_eh.exe
[%WINDOWS%]\uni_ehhh.exe
[%PROFILE_TEMP%]\Tagasuarus97.exe
[%WINDOWS%]\CCZoop05.exe
[%WINDOWS%]\gege15x.exe
[%WINDOWS%]\srvtgdjgym.exe
[%WINDOWS%]\sys03122656409.exe
[%WINDOWS%]\win32066564091222006.exe
[%WINDOWS%]\Duce6.exe
[%WINDOWS%]\pf78.exe
[%WINDOWS%]\srvisixxhw.exe
[%WINDOWS%]\SYSC00.exe
[%WINDOWS%]\Taga96.exe
[%WINDOWS%]\unin101.exe
[%WINDOWS%]\uninst108.exe
[%WINDOWS%]\Uninst2.htm
[%WINDOWS%]\Unist1.htm
[%WINDOWS%]\uni_7eh.exe
[%WINDOWS%]\uni_e6h.exe
[%WINDOWS%]\uni_eh.exe
[%WINDOWS%]\uni_ehhh.exe
[%PROFILE_TEMP%]\Tagasuarus97.exe
[%WINDOWS%]\CCZoop05.exe
[%WINDOWS%]\gege15x.exe
[%WINDOWS%]\srvtgdjgym.exe
[%WINDOWS%]\sys03122656409.exe
[%WINDOWS%]\win32066564091222006.exe

Registry Keys:
HKEY_CURRENT_USER\software\system\sysuid

Registry Values:
HKEY_CURRENT_USER\software\system\sysuid
HKEY_CURRENT_USER\software\system\sysuid
HKEY_CURRENT_USER\software\system\sysuid
HKEY_CURRENT_USER\software\system\sysuid
HKEY_CURRENT_USER\software\system\sysuid
HKEY_CURRENT_USER\software\system\sysuid
HKEY_CURRENT_USER\software\system\sysuid
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing YourEnhancement:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Spy.Officer Trojan Removal
ExtraToolbar Toolbar Cleaner

No comments: