Saturday, January 31, 2009

ESyndicate Adware

Removing ESyndicate
Categories: Adware
Adware are programs that facilitate delivery for advertising content
to the user and in some cases gather information from the user's computer.


Visible Symptoms:
Files in system folders:
[%PROFILE_TEMP%]\eSyndicateInst.exe
[%PROGRAM_FILES%]\eSyndicate\esyn.dll
[%PROGRAMS%]\documents and settings\douglas\local settings\temp\esyndicateinst.exe
[%PROFILE_TEMP%]\eSyndicateInst.exe
[%PROGRAM_FILES%]\eSyndicate\esyn.dll
[%PROGRAMS%]\documents and settings\douglas\local settings\temp\esyndicateinst.exe

How to detect ESyndicate:

Files:
[%PROFILE_TEMP%]\eSyndicateInst.exe
[%PROGRAM_FILES%]\eSyndicate\esyn.dll
[%PROGRAMS%]\documents and settings\douglas\local settings\temp\esyndicateinst.exe
[%PROFILE_TEMP%]\eSyndicateInst.exe
[%PROGRAM_FILES%]\eSyndicate\esyn.dll
[%PROGRAMS%]\documents and settings\douglas\local settings\temp\esyndicateinst.exe

Registry Keys:
HKEY_CLASSES_ROOT\CLSID\{CC378B83-9577-44D0-B4F8-0DD965E176FC}
HKEY_CLASSES_ROOT\esyn.band.1
HKEY_CLASSES_ROOT\typelib\{4e627a1e-bc4b-4faf-8de8-1d9a54d37da3}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC378B83-9577-44D0-B4F8-0DD965E176FC}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\esyndicate
HKEY_CLASSES_ROOT\clsid\{cc378b83-9577-44d0-b4f8-0dd965e176fc}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{cc378b83-9577-44d0-b4f8-0dd965e176fc}

Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run

Removing ESyndicate:

You can download trial version of "Exterminate-It" antivirus software here, to check your computer instantly.

Or buy it to remove ALL viruses from your computer.

Also Be Aware of the Following Threats:
Pigeon.AVEI Trojan Information

No comments: