Kido worm is a polymorphic worm that is recently spreading through the Internet community since the end of 2008. This worm makes use of a critical vulnerability in Microsoft Windows to propagate via local network and removable disks. PCs with un-patched system or low network security are more likely to be infected. Once installed on the machine, this worm inhibits system restoration, prevents access to security websites, and even brings malware to the infected machines without user’s consent.
From a report researched by the most leading antivirus software vendors, a list of 100 top malware in 2009 is revealed, in which 26 variants of Kido worm are included. It can be easily seen that Kido worm takes up substantial proportion of the top most malicious programs.
PC users are strongly recommended to remove the Kido worm once found and keep the antivirus program up-to-date.
How to Get Rid of Kido Worm?
There are several ways to detect and remove Kido Worm. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Kido Worm Manual Removal Instructions.
Automatic Kido Worm removal:
remover for Kido Worm
Tags: Kido Worm, Latest Worm, Threat, Windows
Posted in Latest Adware Threats, Latest Spyware News, Latest Spyware Threats, Worm
Adware.Vapsup is an adware-related Windows Internet Explorer plugin that installed by the Troj/Zlob family. Based on user’s browsing habits, Adware.Vapsup will automatically display unsolicited advertisements, using means of popups, banners, and changes to the homepage or search page of browser, etc.
Once installed on system, this worm will immediately create several files into several system directories, and modify the Windows registry with the purpose to register itself as a browser add-on toolbar. As a result, Adware.Vapsup may secretly run on every Internet browser startup.
How to Get Rid of Adware.Vapsup?
There are several ways to detect and remove Adware.Vapsup. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Adware.Vapsup Manual Removal Instructions.
Automatic Adware.Vapsup removal:
remover for Adware.Vapsup
Tags: Adware.Vapsup, Remove Adware.Vapsup, Troj/Vapsup-Y, Trojans, Worm
Posted in Latest Spyware News, Latest Spyware Threats, Recent Articles, Top Spyware Threats, Trojans, Worm
Win32/Taterf.B is a hazardous worm designed to steal sensitive personal information such as passwords and usernames of online activities. Once this worm is installed on system, the account information of popular online games may be at high risk of being stolen. Apart from this, Win32/Taterf.B always maliciously attempts to disable anti-virus/anti-spyware programs, with the purpose of not to be removed by those system security tools.
Win32/Taterf.B is also known as Trojan.Lineage.Gen!Pac.3, PWS-Gamania.gen.a, and Mal/EncPk-CE. Therefore, it is highly recommended to remove this infection before it can do any harm to your system.
How to Get Rid of Win32/Taterf.B?
There are several ways to detect and remove Win32/Taterf.B. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Win32/Taterf.B Manual Removal Instructions.
Automatic Win32/Taterf.B removal:
remover for Win32/Taterf.B
Tags: Remove spyware, Remove Win32/Taterf.B, Threat, Win32/Taterf.B, Win32/Taterf.B Removal Instructions
Posted in Latest Spyware News, Latest Spyware Threats, Recent Articles, Top Spyware Threats, Worm
Win32.Zafi.b is a worm threat that spreads through e-mail and p2p network. If your PC system is infected with Perfect Defender 2009, you may see the Win32.Zafi.b in the false system security alert message. As it is known, Perfect Defender 2009 is a rogue anti-spyware program that lures PC users into purchasing its full version, by showing up fake security scanning results and system warnings.
Win32.Zafi.b is a destructive worm that may prevent anti-virus and other security products from working normally. It may even disable the RegEdit, MSconfig, Task Manager, or launch a DoS attack against certain Hungarian web sites.
How to Get Rid of Win32.Zafi.b?
There are several ways to detect and remove Win32.Zafi.b. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Win32.Zafi.b Manual Removal Instructions.
Automatic Win32.Zafi.b removal:
remover for Win32.Zafi.b
Tags: Remove, Threat, Win32.Zafi.B, Worm
Posted in Latest Spyware News, Latest Spyware Threats, Recent Articles, Top Spyware Threats, Worm
Worm.Win32.Mabezat.b is a polymorphic parasitic file infector of executable files that propagating itself by making use of removable media and shared folders in LAN. Meanwhile, Worm.Win32.Mabezat.b is a worm for the Windows platform that searches for executables on local drives and the network.
Worm.Win32.Mabezat.b usually copies itself into existing folders of removal drives. The used filenames are the followings:
Adjust Time.exe
AmericanOnLine.exe
Antenna2Net.exe
BrowseAllUsers.exe
CD Burner.exe
Crack_GoogleEarthPro.exe
Disk Defragmenter.exe
FaxSend.exe
FloppyDiskPartion.exe
GoogleToolbarNotifier.exe
HP_LaserJetAllInOneConfig.exe
IDE Conector P2P.exe
InstallMSN11Ar.exe
InstallMSN11En.exe
JetAudio dump.exe
KasperSky6.0 Key.doc.exe
Lock Folder.exe
LockWindowsPartition.exe
Make Windows Original.exe
MakeUrOwnFamilyTree.exe
Microsoft MSN.exe
Microsoft Windows Network.exe
msjavx86.exe
NokiaN73Tools.exe
Office2003 CD-Key.doc.exe
Office2007 Serial.txt.exe
PanasonicDVD_DigitalCam.exe
RadioTV.exe
Recycle Bin.exe
RecycleBinProtect.exe
ShowDesktop.exe
Sony Erikson DigitalCam.exe
Win98compatibleXP.exe
Windows Keys Secrets.exe
WindowsXp StartMenu Settings.exe
WinrRarSerialInstall.exe
How to Get Rid of Worm.Win32.Mabezat.b?
There are several ways to detect and remove Worm.Win32.Mabezat.b. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Worm.Win32.Mabezat.b Manual Removal Instructions.
Automatic Worm.Win32.Mabezat.b removal:
remover for Worm.Win32.Mabezat.b
Tags: Spyware, Threat, Windows, Worm, Worm.Win32.Mabezat.b
Posted in Latest Spyware News, Latest Spyware Threats, Recent Articles, Top Spyware Threats, Worm
Win32.Zafi.B is a threat that spreads via e-mail, infected video codec’s and P2P networks. It usually appears with Perfect Defender 2009, which is a rogue anti-spyware program that shows up fake system security alerts to lure users into purchasing its full version.
Win32.Zafi.B has the ability to disable the antivirus and other security programs on the infected machines. At the meanwhile, Win32.Zafi.B may also cause RegEdit, MSconfig and the Task Manager to stop working normally.
How to Get Rid of Win32.Zafi.B?
There are several ways to detect and remove Win32.Zafi.B. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Win32.Zafi.B Manual Removal Instructions.
Automatic Win32.Zafi.B removal:
remover for Win32.Zafi.B
Tags: Latest Worm, Spyware, Threat, Win32.Zafi.B, Worn
Posted in Latest Spyware News, Latest Spyware Threats, Recent Articles, Worm
W32.Mariofev.A is a worm that attempts to spread over the Network Shares by copying itself, usually using the passwords as following:!@#, 1212, 123, 123456, 1313, 666, 777, adm, admin, administrator, administrator, asa, pass, password, qaz, qazxsw, qqq, qwerty, test, zaq, zaqwsx and zzz. To report the infection notification and upload itself, W32.Mariofev.A may contact the remote websites [http://]66.36.241.45/sdb/gate/ and [http://]66.36.241.45/sdb/gate/data.
What is more, W32.Mariofev.A may terminate the registry subkeys that contain the following strings to lower system security configurations:
*\shellex\ContextMenuHandlers\NOD32 Context Menu Shell Extension
AllFilesystemObjects\shellex\ContextMenuHandlers\SpySweeper
ALWIL Software\Avast
Arovax AntiSpyware
Chilkat Software, Inc.
ComputerAssociates\eTrustPestPatrol
Doctor Web, Ltd.
FRISK Software International
Grisoft\AVGAntiSpyware
KasperskyLab
McAfee\McAfee AntiSpyware
McAfee\VirusScan
Panda Software
PepiMK Software\SpybotSnD
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ad-aware 6 Personal
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ad-Aware SE Personal
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntiVir PersonalEdition Classic
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClamAV
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpywareBlaster_is1
SOFTWIN\BitDefender Desktop\Maintenance\Install
Spyware Begone!
Symantec\Symantec AntiVirus
SYSTEM\ControlSet001\Services\avgntflt
SYSTEM\CurrentControlSet\Services\WinDefend
Ukranian Antivirus center
Vba32
VMware, Inc.
VMware, Inc.\VMware Tools
How to Get Rid of W32.Mariofev.A?
There are several ways to detect and remove W32.Mariofev.A. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on W32.Mariofev.A Manual Removal Instructions.
Automatic W32.Mariofev.A removal:
remover for W32.Mariofev.A
Tags: Spyware, Threat, W32.Mariofev.A, Worm
Posted in Latest Spyware News, Latest Spyware Threats, Recent Articles, Worm
Worm.Win32.Netbooster is a worm that appears in fake security alerts from rogue antispyware which usually gets installed onto your PC without your permission, through Trojan, malware and virus (or you could get it by installing a fake video codec). Worm.Win32.Netbooster popups could read “Your browser was hijacked by Worm.Win32.Netbooster” and is supposed to scare you into buying the fake antispyware, like Smitfraud. You’re not really infected with Worm.Win32.Netbooster — you’re infected with fake anti-spyware that you need to remove.
Worm.Win32.Netbooster Variants: Trojan.Win32, Worm.Win32 and Trojan.Win32.Obfuscated.gx
How to Get Rid of Worm.Win32.Netbooster?
There are several ways to detect and remove Worm.Win32.Netbooster. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Worm.Win32.Netbooster Manual Removal Instructions.
Automatic Worm.Win32.Netbooster removal:
remover for Worm.Win32.Netbooster
Tags: Remove, Worm, Worm.Win32.Netbooster
Posted in Latest Spyware Threats, Recent Articles, Top Spyware Threats, Worm
W32.Koobface.B is a Windows platform network worm that spreads via social network sites such as Facebook and MySpace, in order to send users a copy of itself. This threat usually targets Facebook users by creating spam messages and sending them to the E-mail addresses within the victim’s system via the Facebook web site.
When the threat firstly executes, it automatically creates the following registry entry so that it runs whenever Windows system starts up: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Current Version\Run\”systray” = “C:\Windows\fbtre6.exe” Then it will show up the error message saying: Error installing Codec. Please contact support. Moreover, W32.Koobface.B will check for social network cookies, and change your profile by adding links to hazardous sites that contain worms.
How to Get Rid of W32.Koobface.B?
There are several ways to detect and remove W32.Koobface.B. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on W32.Koobface.B Manual Removal Instructions.
Automatic W32.Koobface.B removal:
remover for W32.Koobface.B
Tags: Recect Article, Spyware, W32.Koobface.B, Worm
Posted in Latest Spyware Threats, Recent Articles, Worm
Worm/Mytob.AP is a mess-mailing network worm that infects computers running Windows. It propagates via the Internet as E-mail attachments to all E-mail addresses harvested from the infected system. This worm also propagates via LSASS vulnerability
After installing onto computer system, Worm/Mytob.AP will open a random TCP port so as to establish a connection to the IRC servers, including spm.slo-partija.info, spm.gobice.netand egwf.wegberobpk.info. As a result, it is possible for a hazardous remote user to have full access to the system, to collect information harvested from the infected machine, to download, execute and remove files through the IRC channels.
Worm/Mytob.AP is also known as: Net-Worm.Win32.Mytob.u [Kaspersky Lab] is also known as: W32/Mydoom.gen@MM [McAfee], W32.Mytob.AG@mm [Symantec], Win32.HLLM.MyDoom.37 [Doctor Web], W32/MyDoom-AJ [Sophos]
How to Get Rid of Worm/Mytob.AP?
There are several ways to detect and remove Worm/Mytob.AP. The method you choose should be based on your own comfort and computer skill level. You can evaluate the methods below and choose which suits you best. Learn more on Worm/Mytob.AP Manual Removal Instructions.
Automatic Worm/Mytob.AP removal:
remover for Worm/Mytob.AP
Tags: Recent Threats, Threat, Worm, Worm/Mytob.AP
Posted in Latest Spyware News, Latest Spyware Threats, Recent Articles, Top Spyware Threats, Worm