Monday, December 8, 2008

Chopenoz Trojan

Removing Chopenoz
Categories: Trojan,Downloader
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.
Trojans-downloaders downloads and installs new malware or adware on the computer.


Chopenoz Also known as:

[Kaspersky]Trojan-Downlaoder.Win32.CWS.at,Trojan-Downloader.Win32.CWS.al,Trojan-Downloader.Win32.CWS.s;
[McAfee]Downloader-ARQ;
[Panda]Trj/Downloader.FY,Trj/Legmir.D,Trj/Downloader.ON,Trj/Downloader.DJ;
[Computer Associates]Win32.Chopenoz.F,Win32.Chopenoz.G,Win32/Chopenoz.66048!Trojan,Win32.Chopenoz.B;
[Other]Win32/Chopenoz!generic,Trojan.KillAV,Win32/Chopenoz.BH,Win32/Chopenoz.AW,Trojan.Bookmarker

Visible Symptoms:
Files in system folders:
[%SYSTEM%]\services\msxmidi.exe
[%SYSTEM%]\services\wmplayer.exe
[%WINDOWS%]\inetm\1.00.04.dll
[%WINDOWS%]\inetm\crontab.ini
[%WINDOWS%]\inetm\id.ini
[%WINDOWS%]\inetm\keywords.ini
[%WINDOWS%]\inetm\services.exe
[%WINDOWS%]\inetm\sl.ini
[%WINDOWS%]\inetm\titles.ini
[%WINDOWS%]\system\services\msxmidi.exe
[%WINDOWS%]\system\services\y.exe
[%WINDOWS%]\t\services.exe
[%SYSTEM%]\services\msxmidi.exe
[%SYSTEM%]\services\wmplayer.exe
[%WINDOWS%]\inetm\1.00.04.dll
[%WINDOWS%]\inetm\crontab.ini
[%WINDOWS%]\inetm\id.ini
[%WINDOWS%]\inetm\keywords.ini
[%WINDOWS%]\inetm\services.exe
[%WINDOWS%]\inetm\sl.ini
[%WINDOWS%]\inetm\titles.ini
[%WINDOWS%]\system\services\msxmidi.exe
[%WINDOWS%]\system\services\y.exe
[%WINDOWS%]\t\services.exe

How to detect Chopenoz:

Files:
[%SYSTEM%]\services\msxmidi.exe
[%SYSTEM%]\services\wmplayer.exe
[%WINDOWS%]\inetm\1.00.04.dll
[%WINDOWS%]\inetm\crontab.ini
[%WINDOWS%]\inetm\id.ini
[%WINDOWS%]\inetm\keywords.ini
[%WINDOWS%]\inetm\services.exe
[%WINDOWS%]\inetm\sl.ini
[%WINDOWS%]\inetm\titles.ini
[%WINDOWS%]\system\services\msxmidi.exe
[%WINDOWS%]\system\services\y.exe
[%WINDOWS%]\t\services.exe
[%SYSTEM%]\services\msxmidi.exe
[%SYSTEM%]\services\wmplayer.exe
[%WINDOWS%]\inetm\1.00.04.dll
[%WINDOWS%]\inetm\crontab.ini
[%WINDOWS%]\inetm\id.ini
[%WINDOWS%]\inetm\keywords.ini
[%WINDOWS%]\inetm\services.exe
[%WINDOWS%]\inetm\sl.ini
[%WINDOWS%]\inetm\titles.ini
[%WINDOWS%]\system\services\msxmidi.exe
[%WINDOWS%]\system\services\y.exe
[%WINDOWS%]\t\services.exe

Registry Values:
HKEY_CURRENT_USER\software\microsoft\windows nt\currentversion\windows
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing Chopenoz:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Fizzle.Wizzle.Entertainment.Searchbar Toolbar Information
Close.UpDownloader RAT Symptoms
Vdrw.Class.Reg.Key BHO Cleaner
Avocado.ServerDLL Trojan Removal instruction

No comments: