Friday, January 30, 2009

Essgol Trojan

Removing Essgol
Categories: Trojan
This loose category includes a variety of Trojans that damage victim machines or
threaten data integrity, or impair the functioning of the victim machine.

Multi-purpose Trojans are also included in this group, as some virus writers
create multi-functional Trojans rather than Trojan packs.

Essgol Also known as:

[Kaspersky]Trojan-Dropper.Win32.Small.ard,Trojan-Spy.Win32.Goldun.s;
[McAfee]PWS-Goldun.dldr;
[Other]Troj/Goldun-DJ,Win32/Essgol.AN,Trojan.Goldin,Win32/Essgol.AO,TrojanSpy:Win32/Goldun.AE,Troj/Goldun-L,W32/Goldun.S

Visible Symptoms:
Files in system folders:
[%PROFILE_TEMP%]\check.bmp
[%SYSTEM%]\msmail.dll
[%SYSTEM%]\msqzwqz.dll
[%PROFILE_TEMP%]\check.bmp
[%SYSTEM%]\msmail.dll
[%SYSTEM%]\msqzwqz.dll

How to detect Essgol:

Files:
[%PROFILE_TEMP%]\check.bmp
[%SYSTEM%]\msmail.dll
[%SYSTEM%]\msqzwqz.dll
[%PROFILE_TEMP%]\check.bmp
[%SYSTEM%]\msmail.dll
[%SYSTEM%]\msqzwqz.dll

Registry Keys:
HKEY_CLASSES_ROOT\clsid\{bfd2af6e-4271-6572-6429-a63f26792311}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{bfd2af6e-4271-6572-6429-a63f26792311}

Removing Essgol:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
QQnukeall DoS Removal
Mem.format!Trojan Trojan Cleaner

No comments: