Thursday, January 22, 2009

Aiesnap Adware

Removing Aiesnap
Categories: Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.


Visible Symptoms:
Files in system folders:
[%PROGRAM_FILES%]\iesnap\byq.gif
[%PROGRAM_FILES%]\iesnap\dict.lex
[%PROGRAM_FILES%]\iesnap\light.bmp
[%PROGRAM_FILES%]\iesnap\navneg.dll
[%PROGRAM_FILES%]\iesnap\navoct.dll
[%PROGRAM_FILES%]\iesnap\navplay.exe
[%PROGRAM_FILES%]\iesnap\navpref.dll
[%PROGRAM_FILES%]\iesnap\navseg.dll
[%PROGRAM_FILES%]\iesnap\navstub.dll
[%PROGRAM_FILES%]\iesnap\normal.html
[%PROGRAM_FILES%]\iesnap\octact.ini
[%PROGRAM_FILES%]\iesnap\octstate.ini
[%PROGRAM_FILES%]\iesnap\update.ini
[%PROGRAM_FILES%]\iesnap\updictini.ini
[%PROGRAM_FILES%]\iesnap\yq.gif
[%PROGRAM_FILES%]\iesnap\byq.gif
[%PROGRAM_FILES%]\iesnap\dict.lex
[%PROGRAM_FILES%]\iesnap\light.bmp
[%PROGRAM_FILES%]\iesnap\navneg.dll
[%PROGRAM_FILES%]\iesnap\navoct.dll
[%PROGRAM_FILES%]\iesnap\navplay.exe
[%PROGRAM_FILES%]\iesnap\navpref.dll
[%PROGRAM_FILES%]\iesnap\navseg.dll
[%PROGRAM_FILES%]\iesnap\navstub.dll
[%PROGRAM_FILES%]\iesnap\normal.html
[%PROGRAM_FILES%]\iesnap\octact.ini
[%PROGRAM_FILES%]\iesnap\octstate.ini
[%PROGRAM_FILES%]\iesnap\update.ini
[%PROGRAM_FILES%]\iesnap\updictini.ini
[%PROGRAM_FILES%]\iesnap\yq.gif

How to detect Aiesnap:

Files:
[%PROGRAM_FILES%]\iesnap\byq.gif
[%PROGRAM_FILES%]\iesnap\dict.lex
[%PROGRAM_FILES%]\iesnap\light.bmp
[%PROGRAM_FILES%]\iesnap\navneg.dll
[%PROGRAM_FILES%]\iesnap\navoct.dll
[%PROGRAM_FILES%]\iesnap\navplay.exe
[%PROGRAM_FILES%]\iesnap\navpref.dll
[%PROGRAM_FILES%]\iesnap\navseg.dll
[%PROGRAM_FILES%]\iesnap\navstub.dll
[%PROGRAM_FILES%]\iesnap\normal.html
[%PROGRAM_FILES%]\iesnap\octact.ini
[%PROGRAM_FILES%]\iesnap\octstate.ini
[%PROGRAM_FILES%]\iesnap\update.ini
[%PROGRAM_FILES%]\iesnap\updictini.ini
[%PROGRAM_FILES%]\iesnap\yq.gif
[%PROGRAM_FILES%]\iesnap\byq.gif
[%PROGRAM_FILES%]\iesnap\dict.lex
[%PROGRAM_FILES%]\iesnap\light.bmp
[%PROGRAM_FILES%]\iesnap\navneg.dll
[%PROGRAM_FILES%]\iesnap\navoct.dll
[%PROGRAM_FILES%]\iesnap\navplay.exe
[%PROGRAM_FILES%]\iesnap\navpref.dll
[%PROGRAM_FILES%]\iesnap\navseg.dll
[%PROGRAM_FILES%]\iesnap\navstub.dll
[%PROGRAM_FILES%]\iesnap\normal.html
[%PROGRAM_FILES%]\iesnap\octact.ini
[%PROGRAM_FILES%]\iesnap\octstate.ini
[%PROGRAM_FILES%]\iesnap\update.ini
[%PROGRAM_FILES%]\iesnap\updictini.ini
[%PROGRAM_FILES%]\iesnap\yq.gif

Folders:
[%PROGRAM_FILES%]\iesnap\updict
[%PROGRAM_FILES%]\iesnap\upoct
[%PROGRAM_FILES%]\iesnap\upoctex

Registry Keys:
HKEY_CLASSES_ROOT\atlbrwoserwnd.atlwebhost
HKEY_CLASSES_ROOT\atlbrwoserwnd.atlwebhost.1
HKEY_CLASSES_ROOT\clsid\{d804ef17-9395-4b09-9aee-09a3ba229407}
HKEY_CLASSES_ROOT\clsid\{fef08814-1c1a-4708-9fee-2f5ecc8bf9ac}
HKEY_CLASSES_ROOT\interface\{02c11476-ef2b-4a1d-ad2b-8136fd45e15e}
HKEY_CLASSES_ROOT\interface\{4c562af2-f327-410e-b1ee-9b9305e1d946}
HKEY_CLASSES_ROOT\interface\{5153aa97-aca2-4de1-a557-31127aaed272}
HKEY_CLASSES_ROOT\mimefilter.htmlfilter
HKEY_CLASSES_ROOT\mimefilter.htmlfilter.1
HKEY_CLASSES_ROOT\typelib\{5aa5bfd0-f2a3-4c58-bedb-613e592e088a}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\navoct
HKEY_LOCAL_MACHINE\software\navoct
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_navoct
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\navoct

Removing Aiesnap:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Removing Getit753.com Trojan
Remove Win32.Apeldorn Trojan

No comments: