|
 |
Applications That Come Back After Un-installing
The Net-It Now printer driver utility would, after using the add/remove control panel to remove, come right back and re-install itself. |
Net-It Now Removal
The Net-It Now! printer driver was a product by Allegis Corp. that was incorporated into Lotus SmartSuite prior to Informative Graphics acquiring the Net-It product line. The Net-It Now! printer driver has been discontinued and is no longer included in SmartSuite. |
|
Applications That Leave Behind Registry Settings After Un-installation
The following tools were designed, by Symantec, to remove older versions of their software to allow a newer version to be installed. When troubleshooting a problem, they also come in handy when removing and re-installing the software results in the same error. You should use the tool after uninstalling your software to ensure all the registry keys are removed, and then you can reboot and re-install the software, without the corrupted registry keys. |
Norton Removal Tool
When you tried to uninstall a Norton product through Windows Programs list or Add/Remove Programs, the process failed. You can use the Norton Removal Tool for a variety of the products they have released since 2003.
|
|
Norton Anti-Virus Removal
This is a utility that automatically uninstalls the program files and registry entries that are installed by Norton Anti-Virus 5.0/2000/2001/2002/2003. |
|
Norton Internet Security 2003 Removal
When you uninstalled Norton Internet Security (NIS) or Norton Personal Firewall (NPF) 2003 through Windows Programs list or Add/Remove Programs, the process failed. You want to use the Symantec Rnis.exe removal tool to uninstall NIS or NPF. |
|
Norton SystemWorks 2003 Removal
You want to use the SYMClean utility. Because you encountered problems while installing Norton SystemWorks (NSW), a technician advised you to use SYMClean. Or, you see a message while installing Norton SystemWorks that indicates that a previous version was detected, even though you already uninstalled the previous version |
|
 |
| Adware and Spyware Removal Tools |
See Adware and Spyware Removal Process
Running only one spyware removal may not be enough to get rid of all spyware from a computer. Sometimes the spyware can be active in the computers memory and may refuse to remove. Other times the adware or spyware will appear to have been removed, but comes right back once you load Internet Explorer or some aspect of Internet Explorer. |
Ad-aware
With the ability to scan your RAM, registry, hard drives, and external storage devices for known data-mining, advertising, and tracking components, Ad-aware SE easily can clean your system, allowing you to maintain a higher degree of privacy while you surf the Web.
Ad-Aware SE Personal Edition boasts a number of improvements. Extended memory scanning now scans all modules loaded by a process. Scanning uses the all- new CSI (Code Sequence Identification) technology to identify new and unknown variants of known targets. Extended registry scanning now scans registry branches of multiple-user accounts and performs additional smart checks to detect dynamically created references. Scanning speed is noticeably faster, and this version offers an Extended Scanning mode for known and unknown/possible browser hijackers.
Lavasoft is well respected provider of anti Trackware solutions. The Personal Edition can be manually run to perform a scan of your computer for you to remove known adware and spyware, bit it does not include real-time protection through the Ad-Watch real-time monitor that allows you not only to detect privacy threats to your computer; but can also block them from integrating into your system in the first place, which is available in the Plus version (see the Developer link for purchasing information).
Note: Extracting the Definition Updates; they should be extracted to your "Program Files\Lavasoft\Ad-Aware SE Personal" folder. and choose "Yes" or "Yes to All" when asked if you should replace the exisiting file(s). |
|
BHO Demon
BHOs (Browser Help Objects) are software that put a toolbar on Internet Explorer or otherwise integrates other software into it. Many (Acrobat Reader, Google Toolbar, Spybot Search & Destroy's SDHelper) are desirable. However, spyware companies also install BHOs on your computer. These can be difficult to remove. BHO Demon allows you to view the ones installed on your computer, and you can then disable the ones you don't want. |
|
CWShredder
Warning: This program requires the Visual Basic 6 Runtime Libraries.. If the program gives you an error when you try to open it, then install the Visual Basic Version 6, and then the program will run properly.
A small utility for removing CoolWebSearch (aka CoolWwwSearch, YouFindAll, White-Pages.ws and a dozen other names). Spybot S&D and Ad-aware tend to forget essential parts of the hijack, so until they update, you can use this to completely remove the hijack. This program is updated to remove the new variants once they come out.
Note: Some variations of this particular spyware prevent you from: running CWShredder 1.59.1, reaching anti-spyware sites and keeps Spybot from working. In order to clean your system, you must first run the special cleaning tool RemoveCWSKiller. |
|
HijackThis
A general homepage hijackers detector and remover. Initially based on the article Hijacked!, but expanded with almost a dozen other checks against hijacker tricks. It is continually updated to detect and remove new hijacks. It does not target specific programs/URLs, just the methods used by hijackers to force you onto their sites. As a result, false positives are imminent and unless you are sure what you're doing, you should always consult with knowledgable folks (e.g. the forums) before deleting anything. |
|
PrcView
PrcView command line utility allows automating common task like figuring out if particular process is running or killing a running process on scheduler.. Launch Internet Explorer then unzip the PV.ZIP file. In there will be a batch file called “RUN ME.” Run that and a notepad window will launch with a list of open DLLs. You will have to do a little detective work here. One of the DLLs is likely a spyware component. Do a Google search on them and see what you come up with. You will use TheKillBox to remove the DLL by selecting the “Delete on Reboot” option, adding the file you want to delete, then the “Process and Reboot.” |
|
Process Explorer
Process Explorer is an advanced process management utility that picks up where Task Manager leaves off. It will show you detailed information about a process including its icon, command-line, full image path, memory statistics, user account, security attributes, and more. When you zoom in on a particular process you can list the DLLs it has loaded or the operating system resource handles it has open. A search capability enables you to track down a process that has a resource opened, such as a file, directory or Registry key, or to view the list of processes that have a DLL loaded.
Note: Sysinternals was purchased by Microsoft in 2006. |
|
SpyBot Search & Destory
SpyBot-S&D searches your hard drive for so-called spy- or adbots; little modules that are responsible for the ads many programs display. But many of these modules also transmit information about your surfing behaviour and more to the net.
If SpyBot-S&D finds such modules, it can remove them - or replace them with empty dummies in case their host software won't run with its bot removed. In most cases, the host still runs fine after removing the bot.
The Spybot-SD interface is so easy, that updates are available from inside the programs update section.
For those who are not connected to the Internet the most recent manually downloadable Detection Updates are provided here. The Library Update, is only needed if you are not connected to the Internet (or if your Internet connection is broken by spyware) during the time that you install this software, because it is automaticcaly installed, if your connected to the Internet during the installation.
Another feature of Spybot S&D is the removal of usage tracks, which makes it more complicated for unknown spybots to transmit useful data. The list of last visited websites, opened files, started programs, cookies, all that and more can be cleaned. Supported are the three major browsers Internet Explorer, Netscape Communicator and Opera.
Last but not least Spybot-S&D contains some routines to find and correct invalid entries into the registry.
|
|
SmitFraudFix Tool
SmitFraudFix is a tool created to remove the Trojan-Spy.HTML.Smitfraud.c malware infection and it’s variants, AntivirusGold, PSGuard Spyware Remover, SpySheriff, Spy Trooper, SpyAxe, Security Toolbar, WinHound and SpywareStrike, Vista Antivirus 2008, XP Antivirus 2008 etc...
- Extract all the archive content.
- Search:
- Double-click smitfraudfix.cmd
- Select 1 and hit Enter to create a report of the infected files. The report can be found at the root of the system drive, usually at C:\rapport.txt
- Clean:
- Reboot your computer in Safe Mode (before the Windows icon appears, tap the F8 key continually)
- Double-click smitfraudfix.cmd
- Select 2 and hit Enter to delete infect files.
- You will be prompted: Do you want to clean the registry ? answer Y (yes) and hit Enter in order to remove the Desktop background and clean registry keys associated with the infection.
- The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found): Replace infected file ? answer Y (yes) and hit Enter to restore a clean file.
- A reboot may be needed to finish the cleaning process. The report can be found at the root of the system drive, usually at C:\rapport.txt
- Optional:
- To restore Trusted and Restricted site zone, select 3 and hit Enter.
- You will be prompted: Restore Trusted Zone ? answer Y (yes) and hit Enter to delete trusted zone.
- Note:
- To restore Trusted and Restricted site zone, select 3 and hit Enter.
- You will be prompted: Restore Trusted Zone ? answer Y (yes) and hit Enter to delete trusted zone.
|
|
smitRem Fix Tool
SmitRem is a tool created to remove the Trojan-Spy.HTML.Smitfraud.c malware infection and it’s variants, AntivirusGold, PSGuard Spyware Remover, SpySheriff, Spy Trooper, SpyAxe, Security Toolbar, WinHound and SpywareStrike, Vista Antivirus 2008, XP Antivirus 2008 etc...
Note: You should only use the the newest update of this software downloaded directly from the developers site.
- Download smitRem.exe and save the file to your desktop.
- Double click on smitRem.exe and then click on Start. When it is done, click on the OK button. You should now have a folder called smitRem on your desktop.
- Next, please reboot your computer in SafeMode by doing the following:
- Restart your computer
- After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
- Instead of Windows loading as normal, a menu should appear
- Select the first option, to run Windows in Safe Mode.
- When your computer has started in safe mode and you see the desktop, close all open Windows.
- Open the smitRem folder on your desktop and double click the RunThis.bat file to start the tool.
- Follow the prompts on screen and wait for the tool to complete and disk cleanup to finish.
- When the tool is finished, it will will create a log named smitfiles.txt in the root of your drive, eg; Local Disk C: or the partition where your operating system is installed. Examining that log should show that the infection was cleaned.
- Reboot your computer back to normal mode.
|
|
TheKillBox
KillBox is a application that can be used to kill the loading at startup of a particular dll that you have found to be able to revive itself after you have used every other method of atrtempting to disable it.
1) Paste in the dir (path and name of dll as found in the appinit value box) i.e C:\Windows\System32\nameofdll.dll
2) Menu Select Action - Delete on Reboot
3) Select File - Add file (It should add the path automatically)
4) (Same Window) Select Action -> Process and Reboot |
|
| Backdoor.AQJ |
|
Removal Tool(s):
Stinger
AKAs:
|
| Backdoor.Agent.B |
|
Removal Tool(s):
FxAgentB.exe
Stinger
Symantec Definitions: Backdoor.Agent.B
McAfee Definitions: Backdoor.CFB
AKAs: TROJ_AGENT.AC[Trend], Troj/Agent-AC[Sophos], Agent.E [Panda], Backdoor.Agent.ac[Kaspersky], Win32.Mersting.B (CA)
|
| W32.HLLW.Anig |
|
Removal Tool(s):
FixAnig.exe
Stinger
Symantec Definitions: W32.HLLW.Anig
McAfee Definitions: W32/Anig.Worm
AKAs: WORM_ANIG.A [Trend], Win32.Dfcsvc.A [Computer Associates], Worm.Win32.Anig [Kaspersky]
|
| Backdoor.IRC.Aladinz.B |
|
Removal Tool(s):
Stinger
Symantec Definitions: Backdoor.IRC.Aladinz.B
McAfee Definitions: W32/Randon.Worm
AKAs: W32/Randon.Worm [KAV], Randon [F-Secure], Q8Hell, W32.Rondon
|
| W32.HLLW.Autoupder |
|
Removal Tool(s):
FixAutoupder.exe
Symantec Definitions: Backdoor.Autoupder
McAfee Definitions: Downloader-W
|
| W32.Badtrans.B@mm |
|
Removal Tool(s):
FixBadtr.exe
Symantec Definitions: W32.Badtrans.B@mm
McAfee Definitions: W32/BadTrans@MM
AKAs: I-Worm.BadtransII [KAV], Badtrans.B@mm [Norman], W32/Badtrans.B [Panda], WORM_BADTRANS.B [Trend], W32/Badtrans-B [Sophos], W32/Badtrans.B@mm [F-Secure], Win32.Badtrans.29020 [CA], Worm/Badtrans.B [Vexira]
|
| W32.Beagle@mm |
|
Removal Tool(s):
FxBeagle.exe
Stinger
Symantec Definitions of Viruses Removed By FxBeagle.exe Tool:
W32.Beagle.A@mm
W32.Beagle.B@mm
W32.Beagle.C@mm
W32.Beagle.E@mm
W32.Beagle.F@mm
W32.Beagle.G@mm
W32.Beagle.H@mm
W32.Beagle.I@mm
W32.Beagle.J@mm
W32.Beagle.K@mm
W32.Beagle.U@mm
W32.Beagle.W@mm
W32.Beagle.X@mm
W32.Beagle.Y@mm
W32.Beagle.Z@mm
W32.Beagle.AB@mm
W32.Beagle.AC@mm
W32.Beagle.AG@mm
W32.Beagle.AO@mm
W32.Beagle.AR@mm
W32.Beagle.AU@mm
W32.Beagle.AV@mm
W32.Beagle.AW@mm
W32.Beagle.AY@mm
W32.Beagle.AZ@mm
W32.Beagle.BA@mm
W32.Beagle.CK@mm
W32.Beagle.CL@mm
Trojan.Tooso
Trojan.Tooso.B
Trojan.Tooso.C
Trojan.Tooso.D
Trojan.Tooso.E
Trojan.Tooso.F
Trojan.Tooso.H
Trojan.Tooso.J
Trojan.Tooso.Q
Symantec Definitions of Viruses Removed By FxBgleMO.exe Tool
W32.Beagle.M@mm
W32.Beagle.N@mm
W32.Beagle.O@mm
McAfee Definitions of Viruses Removed By FxBeagle.exe Tool:
W32/Bagle@MM
W32/Bagle.b@MM
W32/Bagle.c@MM
W32/Bagle.e@MM
W32/Bagle.f@MM
W32/Bagle.g@MM
W32/Bagle.h@MM
W32/Bagle.i@MM
W32/Bagle.j@MM
W32/Bagle.k@MM
W32/Bagle.u@MM
W32/Bagle.z@MM
W32/Bagle.aa@MM
W32/Bagle.ad@MM
W32/Bagle.ae@MM
W32/Bagle.af@MM
W32/Bagle.ag@MM
W32/Bagle.ai@MM
W32/Bagle.aq@MM
W32/Bagle.ar@MM
W32/Bagle.aq@MM
W32/Bagle.az@MM
W32/Bagle.bc@MM
W32/Bagle.bb@MM
W32/Bagle.bd@MM
W32/Bagle.bj@MM
W32/Bagle.bk@MM
W32/Bagle.bl@MM
W32/Bagle.dll.dr
W32/Bagle.br
W32/Bagle.df@MM
W32/Bagle.dll.gen
McAfee Definitions of Viruses Removed By FxBgleMO.exe Tool:
W32/Bagle.n@MM
W32/Bagle.p@MM
W32/Bagle.q@MM
AKAs: I-Worm.Bagle [Kaspersky], WORM_BAGLE [Trend], W32/Bagle [Sophos], Win32.Bagle [Computer Associates]
|
| W32.Blackmal.B@mm |
|
Removal Tool(s):
FxBkmalB.exe
Symantec Definitions: W32.Blackmal.B@mm
McAfee Definitions: W32/MyWife.a@MM
AKAs: I-Worm.Nyxem [Kaspersky], W32/Nyxem-A [Sophos], WORM_BLUEWORM.A [Trend]
|
| W32.Blackmal.E@mm |
|
Removal Tool(s):
FixBmalE.exe
Symantec Definitions: W32.Blackmal.E@mm
McAfee Definitions: W32/MyWife.d@MM & W32/MyWife.d@MM!M24
AKAs: CME-24, Win32.Blackmal.F [Computer Associates], Email-Worm.Win32.Nyxem.e [F-Secure], Email-Worm.Win32.Nyxem.e [Kaspersky], Win32/Mywife.E@mm [Microsoft], W32/Small.KI@mm [Norman], Tearec.A [Panda Software], W32/Nyxem-D [Sophos], WORM_GREW.{A, B} [Trend Micro]
|
| W32.Blaster@mm |
|
Removal Tool(s):
FixBlast.exe
Stinger
Symantec Definitions:
W32.Blaster@mm
W32.Blaster.B@mm
W32.Blaster.C@mm
W32.Beagle.D@mm
W32.Beagle.E@mm
W32.Beagle.F@mm
McAfee Definitions:
W32/Lovsan.Worm.a
W32/Lovsan.Worm.b
W32/Lovsan.Worm.c
W32/Lovsan.Worm.d
W32/Lovsan.Worm.e
W32/Lovsan.Worm.f
AKAs: Win32.Poza.A [CA], Lovsan [F-Secure], WORM_MSBLAST.A [Trend], W32/Blaster-A [Sophos], W32/Blaster [Panda], Worm.Win32.Lovesan [KAV]
|
| W32.Bobax |
|
Removal Tool(s):
FixBobax.exe
Symantec Definitions:
W32.Bobax.AH@mm
W32.Bobax.Z@mm
|
| W32.Bofra@mm |
|
Removal Tool(s):
FixBlast.exe
Stinger
Symantec Definitions:
W32.Bofra.A@mm
W32.Bofra.B@mm
W32.Bofra.C@mm
W32.Bofra.D@mm
McAfee Definitions:
W32/Mydoom.ag@MM
W32/Mydoom.ah@MM
AKAs: W32.Mydoom.AI@mm, Win32.Bofra.B [Computer Associates], Win32.Bofra.C [Computer Associates], Bofra.A [F-Secure], Bofra.C [F-Secure], I-Worm.Bofra.a [Kaspersky], I-Worm.Bofra.b [Kaspersky], I-Worm.Bofra.c [Kaspersky], W32/Bofra.C.worm [Panda], W32/Bofra-A [Sophos], W32/Bofra-C [Sophos], W32/Bofra-E [Sophos], WORM_BOFRA.A [Trend Micro], WORM_BOFRA.C [Trend Micro]
|
| W32.Brid.A@mm |
|
Removal Tool(s):
Fixbrid.com
Stinger
Symantec Definitions: W32.Brid.A@mm
McAfee Definitions: W32/Braid.a@MM
AKAs: PE_BRID.A [Trend], W32/Braid-A [Sophos], Win32.Braid.A [CA], I-Worm.Bridex.a [KAV], W32/Bride [Panda], W32/Bridex.A@mm [F-Prot]
|
| W32.Bropia |
|
Removal Tool(s):
FxBropia.exe
Symantec Definitions:
W32.Bropia
W32.Bropia.J
W32.Bropia.N
W32.Bropia.P
McAfee Definitions:
W32/Bropia.worm.gen
W32/Bropia.worm.j
AKAs: Win32.Bropia [Computer Associates], Bropia [F-Secure], IM-Worm.Win32.VB [Kaspersky Lab], W32/Bropia [Sophos], WORM_BROPIA [Trend Micro]
|
| AOL.Buddylist |
|
Removal Tool(s):
fixbuddy.exe
Symantec Definitions: AOL.PWSteal.32512
McAfee Definitions: APStrojan.ob
AKAs: BuddyList Trojan, Trojan.PSW.Noter, TROJ_BUDDY.D, AOL.Trojan.32512
|
| W32.Bugbear@mm |
|
Removal Tool(s):
FxBgbear.exe
Stinger
Symantec Definitions: W32.Bugbear@mm
McAfee Definitions: W32/Bugbear@MM
AKAs: W32/Bugbear-A [Sophos], WORM_BUGBEAR.A [Trend], Win32.Bugbear [CA], I-Worm.Tanatos [AVP], W32/Bugbear [Panda], Tanatos [F-Secure]
|
| W32.Bugbear.B@mm |
|
Removal Tool(s):
FixBugb.exe
McAfee
Symantec Definitions: W32.Bugbear.B@mm
McAfee Definitions: W32/Bugbear.b@MM
AKAs: W32/Bugbear-A [Sophos], WORM_BUGBEAR.A [Trend], Win32.Bugbear [CA], I-Worm.Tanatos [AVP], W32/Bugbear [Panda], Tanatos [F-Secure]
|
| W95.CIH (Chernobyl) |
|
Removal Tool(s):
kill_cih.exe
Symantec Definitions: W95.CIH (Chernobyl)
McAfee Definitions: W95/CIH.1003
AKAs: Chernobyl, PE_CIH, Win95.CIH, Win32.CIH, CIH.Spacefiller
|
| CodeRed |
|
Removal Tool(s):
FixCRed.exe
Symantec Definitions:
CodeRed I
CodeRed II
CodeRed.F
McAfee Definitions:
W32/CodeRed.a.Worm
W32/CodeRed.c.Worm
W32/CodeRed.f.Worm
AKAs: W32/Bady, I-Worm.Bady, Code Red, CodeRed, W32/Bady.Worm
|
| W32.Donk.Q |
|
Removal Tool(s):
FixDonk.exe
Stinger
Symantec Definitions: W32.Donk.Q@mm
McAfee Definitions: W32/Sdbot.Worm.gen.b
|
| W32.Dumaru@mm |
|
Removal Tool(s):
FxDumaru.com
Stinger
Symantec Definitions:
W32.Dumaru@mm
W32.Dumaru.B@mm
W32.Dumaru.M@mm
W32.Dumaru.Y@mm
W32.Dumaru.Z@mm
McAfee Definitions:
W32/Dumaru.a@MM
W32/Dumaru.y@MM
AKAs: PE_DUMARU [Trend], Win32.Dumaru [CA], W32/Dumaru [Sophos], I-Worm.Dumaru [KAV]
|
| W32.Elkern |
|
Removal Tool(s):
FixKlez.com
Stinger
Symantec Definitions:
W32.ElKern.3587
W32.ElKern.4926
McAfee Definitions:
W32/Elkern.cav
AKAs: Win32.Elkern [AVP], W32/Elkern [Sophos], Win32/WQK [CA], PE_ELKERN [Trend]
|
| W32.Envid@mm |
|
Removal Tool(s):
FixEnvid.exe
Symantec Definitions:
W32.Envid.B@mm
W32.Envid.C@mm
AKAs: None
|
| W32.Erkez@mm |
|
Removal Tool(s):
FxErkez.exe
Stinger
Symantec Definitions:
W32.Erkez.A@mm
W32.Erkez.D@mm
Note: Removal of W32.Erkez.C@mm by the FxErkez.exe tool is not known.
See the next tool for removal of W32.Erkez.B@mm
McAfee Definitions:
W32/Zafi@MM
W32/Zafi.c@MM
W32/Zafi.d@MM
Note: The Stinger tool is documented to remove these 3 variants of Zafi.
See the next tool for removal of W32/Zafi.b@MM
AKAs: Zafi [Computer Associates], W32/Zafi [Sophos], PE_ZAFI [Trend], I-Worm.Zafi [Kaspersky], W32/Zafi.worm [Panda]
|
| W32.Erkez.B@mm |
|
Removal Tool(s):
FxErkezB.exe
Stinger
Symantec Definitions:
W32.Erkez.B@mm
McAfee Definitions:
W32/Zafi.b@MM
AKAs: Zafi.B [Computer Associates], W32/Zafi-B [Sophos], PE_ZAFI.B [Trend]
|
| W32.Esbot |
|
Removal Tool(s):
FixEsbot.exe
Symantec Definitions:
W32.Esbot.A
W32.Esbot.B
W32.Esbot.C
W32.Esbot.D
McAfee Definitions:
W32/IRCbot.worm
AKAs: Win32.Esbot [Computer Associates], IRCBot [F-Secure], Backdoor.Win32.IRCBot [Kaspersky Lab], W32/Hwbot [Sophos], WORM_ESBOT [Trend Micro]
|
| W32.Evaman.C |
|
Removal Tool(s):
FxEvaman.exe
Symantec Definitions: W32.Evaman.C
McAfee Definitions: W32/Evaman.c@MM
AKAs: WORM_MYDOOM.O [Trend Micro], W32/MyDoom-Q [Sophos], I-Worm.Mydoom.o [Kaspersky], W32/Mydoom.P.Worm [Panda]
|
| W32.ExploreZip.Worm |
|
Removal Tool(s):
FixExzip.exe
Symantec Definitions:
W32.ExploreZip.Worm
W32.ExploreZip.L.Worm
McAfee Definitions:
W32/ExploreZip.Worm@MM
AKAs: W32/ExploreZip.Worm@M [McAfee], I-Worm.ZippedFiles.h [KAV], WORM_EXPLORZIP.M [Trend], Win32/ExploreZip.Worm [CA], W32/ExploreZip.E [F-Secure], W32/ExploreZip.Worm.210432 [F-Secure], W32/ExploreZi-N [Sophos]
|
| W32.Femot.Worm |
|
Removal Tool(s):
FixFemot.exe
Stinger
Symantec Definitions: W32.Femot.Worm
McAfee Definitions: W32/MoFei.Worm
AKAs: WORM_MOFEI.A [Trend], WORM_MOFEI.B [Trend], W32/Mofei-A [Sophos], Backdoor.Mofeir.101 [KAV], Worm.Win32.Mofeir.b [KAV], Win32.Mofei.A [CA], Win32.Mofei.B [CA]
|
| Backdoor.IRC.Flood.E |
|
Removal Tool(s):
Stinger
Symantec Definitions: Backdoor.IRC.Flood.E
McAfee Definitions: IRC/Flood.cd
AKAs: Backdoor.IRC.Flood.E [Kaspersky]
|
| W32.HLLW.Fizzer@mm |
|
Removal Tool(s):
FixFiz.exe
Stinger
Symantec Definitions: W32.HLLW.Fizzer@mm
McAfee Definitions: W32/Fizzer@MM
AKAs: Win32.Fizzer [CA], W32/Fizzer-A [Sophos], WORM_FIZZER.A [Trend], Fizzer [F-Secure], Win32/Fizzer.A@mm [RAV], I-Worm.Fizzer [KAV]
|
| W32.Frethem@mm |
|
Removal Tool(s):
FixFreth.exe
Stinger
Symantec Definitions
W32.Frethem.A@mm
W32.Frethem.B@mm
W32.Frethem.C@mm
W32.Frethem.D@mm
W32.Frethem.E@mm
W32.Frethem.F@mm
W32.Frethem.G@mm
W32.Frethem.H@mm
W32.Frethem.I@mm
W32.Frethem.J@mm
W32.Frethem.K@mm
W32.Frethem.L@mm
W32.Frethem.M@mm
W32.Frethem.N@mm
W32.Frethem.O@mm
McAfee Definitions:
W32/Frethem.f@MM
W32/Frethem.k@MM
W32/Frethem.l@MM
AKAs: I-Worm.Frethem [AVP], WORM_FRETHEM [Trend], W32/Frethem-Fam [Sophos]
|
| W32.Funlove.4099 |
|
Removal Tool(s):
Fixbrid.com
FixWEvar.com
Stinger
Symantec Definitions: W32.Funlove.4099
McAfee Definitions: W32/FunLove.4099
AKAs: Win32.FunLove.4070 [KAV], PE_FUNLOVE.4099 [Trend], W32/Flcss [Sophos], Win32.Funlove.4099 [CA]
|
| W32.HLLW.Gaobot |
|
Removal Tool(s):
FxGaobot.exe
FxGaobotUJ.exe
Symantec Definitions of Viruses Removed By FxGaobot.exe Tool:
W32.HLLW.Gaobot.AG
W32.HLLW.Gaobot.AO
W32.HLLW.Gaobot.SA
W32.HLLW.Gaobot.SY
W32.HLLW.Gaobot.ZX
W32.Gaobot.ADX
W32.Gaobot.AFJ
W32.Gaobot.AJD
W32.HLLW.Gaobot.Gen
W32.Gaobot.BOW
W32.Gaobot.BUU
W32.Gaobot.CEZ
Symantec Definitions of Viruses Removed By FxGaobotUJ.exe Tool:
W32.Gaobot.UJ
McAfee Definitions of Viruses Removed By FxGaobot.exe Tool:
W32/Gaobot.Worm.gen
W32/Gaobot.Worm.gen.q
W32/Gaobot.Worm.gen.t
AKAs: Backdoor.Agobot [Kaspersky], WORM_AGOBOT [Trend], Win32.Agobot [Computer Associates], W32/Agobot [Sophos]
|
| W32.Gibe@mm |
|
Removal Tool(s):
FixGibe.exe
Symantec Definitions: W32.Gibe@mm
McAfee Definitions: W32/Gibe@MM
AKAs: WORM_GIBE.A, W32/Gibe-A, I-Worm.Gibe, W32/Gibe.A@mm, Win32.Gibe.A, W32/Gibe@MM
|
| W32.Goner.A@mm |
|
Removal Tool(s):
FixGoner.exe
Symantec Definitions: W32.Goner.A@mm
McAfee Definitions: W32/Goner@MM
AKAs: I-Worm.Goner [Kaspersky], WORM_GONER.A [Trend], W32/Goner-A [Sophos], Win32.Goner.A [CA]
|
| Hacktool.Hacline |
|
Removal Tool(s):
FixMumuB.exe
Stinger
Symantec Definitions:
Hacktool.Hacline - Reference File Missing from Symantec Site
McAfee Definitions:
PWS-RedNeck
AKAs: Trojan.Spy.Keyl (AVP)
|
| W32.Happy99.Worm |
|
Removal Tool(s):
fixhappy.exe
Symantec Definitions: Happy99.Worm
McAfee Definitions: W32/Ska@MM
AKAs: Trojan.Happy99, I-Worm.Happy, W32.Ska, Happy00
|
| VBS.Haptime@mm |
|
Removal Tool(s):
fixhaptime.exe
Symantec Definitions:
VBS.Haptime.A@mm
VBS.Haptime.B@mm
McAfee Definitions: VBS/Haptime@MM
AKAs: Happy Time, VBS.Happytime.A (CA), VBS/Haptime.gen@MM, VBS/Help (Panda), VBS_Haptime.A (Trend)
|
| W95.HybrisF |
|
Removal Tool(s):
Fixhybf.exe
Symantec Definitions: W95.HybrisF
McAfee Definitions: W32/Hybris.gen@MM
AKAs: Trojan.Happy99, I-Worm.Happy, W32.Ska, Happy00
|
| Trojan.Jasbom |
|
Removal Tool(s):
FxJasbom.exe
Symantec Definitions: Trojan.Jasbom
|
| Wscript.Kakworm |
|
Removal Tool(s):
fixkak.exe
Symantec Definitions: Wscript.Kakworm
McAfee Definitions: JS/Kak@MM
AKAs: VBS.Kak.Worm, VBS.Kak.Worm.dr, Kagou-Anti-Krosoft, VBS/Kakworm, Wscript.Kak.A, JS/Kak, JS/Kak.Worm, Mid/Kakworm, JS.Kakworm, VBS_Kakworm.A
|
| Wscript.Kakworm.B |
|
Removal Tool(s):
fixkakb.exe
Symantec Definitions: Wscript.Kakworm.B
McAfee Definitions: JS/Kak.Worm.b
AKAs: VBS.Kak.Worm, VBS.Kak.Worm.dr, Kagou-Anti-Krosoft, VBS/Kakworm, Wscript.Kak.A, JS/Kak, JS/Kak.Worm, Mid/Kakworm, JS.Kakworm, VBS_Kakworm.A
|
| W32.Kelvir |
|
Removal Tool(s):
FxKelvir.exe
Symantec Definitions:
W32.Kelvir.D
W32.Kelvir.D
W32.Kelvir.R
W32.Kelvir.S
W32.Kelvir.T
W32.Kelvir.W
W32.Kelvir.AC
W32.Kelvir.AE
W32.Kelvir.AF
McAfee Definitions:
W32/Kelvir.worm.f
AKAs: IM-Worm.Win32.Bropia.n [Kaspersky Lab], W32/Bropia-G [Sophos]
|
| W32.Klez |
|
Removal Tool(s):
FixKlez.com
Stinger
Symantec Definitions:
W32.Klez.E@mm
W32.Klez.H@mm
McAfee Definitions:
W32/Klez.e@MM
W32/Klez.h@MM
AKAs: WORM_KLEZ [Trend], Klez [F-Secure], W32/Klez [Sophos], Win32.Klez [CA], I-Worm.Klez [AVP]
|
| W32.Korgo |
|
Removal Tool(s):
FixKorgo.exe
Stinger
Symantec Definitions
W32.Korgo.F
W32.Korgo.I
W32.Korgo.L
W32.Korgo.P
W32.Korgo.R
W32.Korgo.S
W32.Korgo.T
W32.Korgo.U
W32.Korgo.V
W32.Korgo.Z
McAfee Definitions:
W32/Korgo.Worm.e
W32/Korgo.Worm.g
W32/Korgo.Worm.p
W32/Korgo.Worm.s
AKAs: Worm.Win32.Padobot [Kaspersky], WORM_KORGO [Trend], W32/Korgo [Sophos], Win32.Korgo [Computer Associates]
|
| W32.Kriz |
|
Removal Tool(s):
fixkriz.exe
Symantec Definitions: W32.Kriz
McAfee Definitions: W32/Kriz.3863
AKAs: Trojan.Happy99, I-Worm.Happy, W32.Ska, Happy00
|
| W32.Lirva@mm |
|
Removal Tool(s):
FixLirva.exe
Stinger
Symantec Definitions:
W32.Lirva.A@mm
W32.Lirva.C@mm
McAfee Definitions:
W32/Lirva.a@MM
W32/Lirva.c@MM
AKAs: W32/Avril [Sophos], WORM_LIRVA [Trend], Win32.Lirva [CA], I-Worm.Avron [KAV], Lirva [F-Secure]
|
| Trojan.Lodear |
|
Removal Tool(s):
FxLodear.exe
Stinger
Symantec Definitions:
Trojan.Lodear.B
Trojan.Lodear.C
Trojan.Lodear.D
Trojan.Lodav.A
Trojan.Lodav.B
McAfee Definitions:
W32/Bagle.gen!7B14EBCA
AKAs: Bagle.{EB, EI, EK} [F-Secure], Email-Worm.Win32.Bagle.{eb, ei} [Kaspersky Lab], Troj/Bagle{Dl-Y, Dl-AB} [Sophos], Win32.Glieder.{CC, CD} [Computer Associates], Mitglieder.FL [Panda Software]
|
| W32.HLLW.Lovgate |
|
Removal Tool(s):
FixLGate.exe
Stinger
Symantec Definitions
W32.HLLW.Lovgate@mm
W32.HLLW.Lovgate.B@mm
W32.HLLW.Lovgate.C@mm
W32.HLLW.Lovgate.D@mm
W32.HLLW.Lovgate.E@mm
W32.HLLW.Lovgate.F@mm
W32.HLLW.Lovgate.G@mm
W32.HLLW.Lovgate.H@mm
W32.HLLW.Lovgate.I@mm
W32.HLLW.Lovgate.J@mm
W32.HLLW.Lovgate.K@mm
W32.HLLW.Lovgate.L@mm
W32.HLLW.Lovgate.R@mm
W32.HLLW.Lovgate.W@mm
W32.HLLW.Lovgate.X@mm
W32.HLLW.Lovgate.Y@mm
W32.HLLW.Lovgate.Z@mm
W32.HLLW.Lovgate.AD@mm
McAfee Definitions:
W32/Lovgate.a@MM
W32/Lovgate.c@MM
W32/Lovgate.d@MM
W32/Lovgate.f@MM
W32/Lovgate.j@MM
W32/Lovgate.l@MM
W32/Lovgate.x@MM
W32/Lovgate.ab@MM
W32/Lovgate.ad@MM
W32/Lovgate.af@MM
W32/Lovgate.ah@MM
AKAs: WORM_LOVGATE [Trend], Win32/Lovgate@mm [RAV], I-Worm.Supnot [KAV], W32/Lovgate [Sophos], Win32.Lovgate [CA]
|
| VBS.LoveLetter |
|
Removal Tool(s):
fixlove.exe
Symantec Definitions:
VBS.LoveLetter
McAfee Definitions: VBS/LoveLetter@MM
AKAs: Lovebug, I-Worm.LoveLetter, VBS/LoveLetter.A, VBS/LoveLet-A
|
| W32.Magistr |
|
Removal Tool(s):
Fixmagi.com
Symantec Definitions:
W32.Magistr.24876@mm
W32.Magistr.39921@mm
McAfee Definitions:
W32/Magistr.a@MM
W32/Magistr.b@MM
AKAs: W32.Magistr.24876.int, W32.Magistr.24876.corrupt, I-Worm.Magistr [KAV], PE_MAGISTR [Trend], W32/Disemboweler [Panda], W32/Magistr [Sophos], Win32.Magistr.24876 [CA], Magistr.32768@mm, W95/Magistr.28672@mm
|
| W32.HLLW.MiMail |
|
Removal Tool(s):
FxMimail.exe
Stinger
Symantec Definitions
W32.Mimail.A@mm
W32.Mimail.C@mm
W32.Mimail.D@mm
W32.Mimail.E@mm
W32.Mimail.F@mm
W32.Mimail.G@mm
W32.Mimail.I@mm
W32.Mimail.L@mm
W32.Mimail.M@mm
McAfee Definitions:
W32/Mimail@MM
W32/Mimail.c@MM
W32/Mimail.e@MM
W32/Mimail.gen@MM
W32/Mimail.i@MM
W32/Mimail.j@MM
W32/Mimail.l@MM
AKAs: I-Worm.Mimail [Kaspersky], W32/Mimail [Sophos], WORM_MIMAIL [Trend], Win32.Mimail [Computer Associates], Mimail [F-Secure]
|
| W95.MTX |
|
Removal Tool(s):
fixmtx.exe
Symantec Definitions:
W95.MTX
McAfee Definitions: W95/MTX.gen@MM
AKAs: W95.Oisdbo, W95.MTX.dr, W95.MTX (.dll), W32/Apology-B [Sophos], I-Worm.MTX [AVP], PE_Mtx.A [Trend], Win95.Mtx [CA]
|
| Bat.Mumu.A.Worm |
|
Removal Tool(s):
FixMumu.exe
Stinger
Symantec Definitions:
Bat.Mumu.A.Worm
McAfee Definitions:
W32.BAT/Mumu.Worm
AKAs: W32/Bat/Mumu-A [Sophos], BAT.Mumu [CA], Worm.Win32.Muma [KAV], BAT_SPYBOT.A [Trend]
|
| Bat.Mumu.B.Worm |
|
Removal Tool(s):
FixMumuB.exe
Stinger
Symantec Definitions:
Bat.Mumu.B.Worm
McAfee Definitions:
W32/Mumu.b.Worm
PWS-RedNeck
AKAs: WORM_MUMU.A [Trend], W32/Mumu-C [Sophos], Win32.Mumu.B [CA], Worm.Win32.Muma.c [KAV]
|
| Trojan.Mumuboy |
|
Removal Tool(s):
FixMumuB.exe
Stinger
Symantec Definitions:
Trojan.Mumuboy
McAfee Definitions:
PWS-Sincom
AKAs: PWS-Sincom.dr
|
| W32.MyDoom@mm |
|
Removal Tool(s):
FxMydoom.exe
Stinger
Symantec Definitions
W32.Mydoom.A@mm
W32.Mydoom.B@mm
W32.Mydoom.F@mm
W32.Mydoom.G@mm
W32.Mydoom.H@mm
W32.Mydoom.L@mm
W32.Mydoom.M@mm
W32.Mydoom.Q@mm
W32.Mydoom.AM@mm
W32.Mydoom.AX@mm
W32.Mydoom.AZ@mm
W32.Mydoom.BA@mm
Backdoor.Zincite.A
W32.Zindos.A
Backdoor.Nemog
Backdoor.Nemog.D
McAfee Definitions:
W32/MyDoom@MM
W32/MyDoom.b@MM
W32/MyDoom.g@MM
W32/MyDoom.h@MM
W32/MyDoom.n@MM
W32/MyDoom.o@MM
W32/MyDoom.s@MM
W32/MyDoom.av@MM
W32/MyDoom.bb@MM
W32/MyDoom.bc@MM
W32/Zindos.worm
AKAs: Win32.Mydoom [Computer Associates], W32/Mydoom [Sophos], I-Worm.Novarg [Kaspersky], W32.Novarg@mm
|
| W32.MyLife@mm |
|
Removal Tool(s):
FixMLife.exe
Symantec Definitions
W32.MyLife@mm
W32.MyLife.B@mm
W32.MyLife.C@mm
W32.MyLife.D@mm
W32.MyLife.E@mm
W32.MyLife.F@mm
W32.MyLife.G@mm
W32.MyLife.H@mm
W32.MyLife.I@mm
W32.MyLife.J@mm
McAfee Definitions:
W32/MyLife.a@MM
W32/MyLife.b@MM
W32/MyLife.c@MM
W32/MyLife.d@MM
W32/MyLife.e@MM
W32/MyLife.f@MM
W32/MyLife.g@MM
W32/MyLife.h@MM
W32/MyLife.i@MM
W32/MyLife.j@MM
AKAs: WORM_MYLIFE [Trend], Win32.MyLife [CA], W32/Mylife [Panda], W32/MyLife [Sophos]
|
| W32.Mytob@mm |
|
Removal Tool(s):
FixMytob.exe
Symantec Definitions:
W32.Mytob@mm
W32.Mytob.B@mm
W32.Mytob.L@mm
W32.Mytob.M@mm
W32.Mytob.R@mm
W32.Mytob.U@mm
W32.Mytob.V@mm
W32.Mytob.AG@mm
W32.Mytob.AH@mm
W32.Mytob.AS@mm
W32.Mytob.BV@mm
W32.Mytob.CF@mm
W32.Mytob.CH@mm
W32.Mytob.CH@mm
W32.Mytob.CH@mm
W32.Mytob.CH@mm
W32.Mytob.CU@mm
W32.Mytob.CY@mm
W32.Mytob.DA@mm
W32.Mytob.DB@mm
W32.Mytob.DF@mm
W32.Mytob.DJ@mm
W32.Mytob.DL@mm
W32.Mytob.DP@mm
W32.Mytob.DV@mm
W32.Mytob.EB@mm
W32.Mytob.EC@mm
W32.Mytob.ED@mm
W32.Mytob.EE@mm
W32.Mytob.EG@mm
W32.Mytob.IE@mm
W32.Mytob.KE@mm
W32.Mytob.KP@mm
W32.Mytob.KU@mm
W32.Mytob.LE@mm
W32.Mytob.LO@mm
W32.Mytob.MC@mm
McAfee Definitions:
W32/Mydoom.bg@MM
W32/Mytob.gen@MM
W32/Mytob.c@MM
W32/Mytob.aw@MM
W32/Mytob.bh@MM
W32/Mytob.bi@MM
W32/Mytob.bj@MM
W32/Mytob.bk@MM
W32/Mytob.bl@MM
W32/Mytob.bn@MM
W32/Mytob.bn@MM
W32/Mytob.bv@MM
W32/Mytob.cc@MM
W32/Mytob.cg@MM
W32/Mytob.ch@MM
W32/Mytob.eu@MM
AKAs: Win32.Mytob [Computer Associates], Mytob [F-Secure], Net-Worm.Win32.Mytob [Kaspersky Lab], W32/Mytob [Sophos], WORM_MYTOB [Trend Micro]
|
| W32.Mytob.AR@mm |
|
Removal Tool(s):
fxmytbar.exe
Symantec Definitions:
W32.Mytob.AR@mm
McAfee Definitions:
W32/Mydoom.r@MM
AKAs: Win32.Mytob.AS [Computer Associates], Win32.Mytob.BF [Computer Associates], Net-Worm.Win32.Mytob.r [Kaspersky Lab], W32/Mytob-AV [Sophos], W32/Mytob-AW [Sophos], WORM_MYTOB.AP [Trend Micro], WORM_MYTOB.BD [Trend Micro]
|
| W32.Navidad |
|
Removal Tool(s):
fixnavid.com
Symantec Definitions:
W32.Navidad
W32.Navidad.16896
McAfee Definitions:
W32/Navidad@MM
AKAs: I-Worm.Navidad [AVP], Win32.Navidad [CA], W32/Navidad [Sophos], WORM_NAVIDAD [Trend]
|
| W32.HLLW.Nebiwo |
|
Removal Tool(s):
FixNebiw.exe
Symantec Definitions:
W32.HLLW.Nebiwo
McAfee Definitions: W32/Deborm.Worm.gen
AKAs: Worm.Win32.Deborm.q [KAV], Worm.Win32.Deborm.r [KAV], TROJ_DROPPERFL.A [Trend], W32/Deborm-Q [Sophos], W32/Deborm-R [Sophos], Win32.Deborm.Q [CA], Win32.Deborm.R [Sophos], Win32.Deborm.S [Sophos]
|
| Backdoor.Nemog |
|
Removal Tool(s):
FxMydoom.exe
Stinger
Symantec Definitions
Backdoor.Nemog
McAfee Definitions:
BackDoor-CFB
AKAs: BackDoor-CEB.b, BackDoor-CHR.sys
|
| W32.Netsky@mm |
|
Removal Tool(s):
FxNetsky.exe
Stinger
Symantec Definitions
W32.Netsky.A@mm
W32.Netsky.B@mm
W32.Netsky.C@mm
W32.Netsky.D@mm
W32.Netsky.E@mm
W32.Netsky.K@mm
W32.Netsky.P@mm
W32.Netsky.Q@mm
W32.Netsky.S@mm
W32.Netsky.T@mm
W32.Netsky.X@mm
W32.Netsky.Y@mm
W32.Netsky.Z@mm
W32.Netsky.AB@mm
McAfee Definitions:
W32/Netsky.a@MM
W32/Netsky.b@MM
W32/Netsky.c@MM
W32/Netsky.d@MM
W32/Netsky.e@MM
W32/Netsky.j@MM
W32/Netsky.p@MM
W32/Netsky.q@MM
W32/Netsky.s@MM
W32/Netsky.t@MM
W32/Netsky.x@MM
W32/Netsky.y@MM
W32/Netsky.Z@MM
W32/Netsky.ab@MM
AKAs: W32/Netsky.Worm [Panda], WORM_NETSKY [Trend Micro], Moodown [F-Secure], I-Worm.Moodown [Kaspersky]
|
| W32.Nimba.A@mm |
|
Removal Tool(s):
Fixnimda.exe
Stinger
Symantec Definitions:
W32.Nimba.A@mm
McAfee Definitions: W32/Nimda.gen@MM
AKAs: W32/Nimda@mm, PE_NIMDA.A, I-Worm.Nimda, W32/Nimda-A, Win32.Nimda.A
|
| W32.Nimba.E@mm |
|
Removal Tool(s):
FxNimdaE.exe
Stinger
Symantec Definitions:
W32.Nimba.e@mm
McAfee Definitions: W32/Nimda.gen@MM
AKAs: I-Worm.Nimda.e [KAV], PE_NIMDA.E [Trend], Win32.Nimda.E [CA], W32/Nimda-D [Sophos], W32/Nimda.E@mm [Frisk], Win32/Nimda.E worm [ESET]
|
| W32.Opasa@mm |
|
Removal Tool(s):
FixOpasa.exe
Symantec Definitions:
W32.Opasa@mm
AKAs: WORM_MIMAIL.V [Trend], W32/Mimail-V [Sophos], JS.Mimail.V [Computer Associates]
|
| W32.Opaserv.Worm |
|
Removal Tool(s):
FixOpsrv.exe
Symantec Definitions:
W32.Opaserv.Worm
McAfee Definitions:
W32/Opaserv.Worm
AKAs: W32/Opaserv-A [Sophos], Win32.Opaserv [CA], WORM_OPASOFT.A [Trend], Worm.Win32.Opasoft [AVP]
|
| W32.W32.Pexmor@mm |
|
Removal Tool(s):
fxpexmor.exe
Symantec Definitions: W32.Pexmor@mm
|
| VBS.Potok@mm |
|
Removal Tool(s):
FixPotok.exe
Symantec Definitions:
VBS.Potok@mm
McAfee Definitions:
VBS/Potok@MM
AKAs: Bloodhound.VBS.Worm, VBS.Potok.A, VBS.Stream.A, VBS/Stream, VBS/Vdrive@MM
|
| W32.PrettyPark.Worm |
|
Removal Tool(s):
FixPPark.com
Symantec Definitions:
W32.PrettyPark.Worm
McAfee Definitions:
W32/Pretty.Worm
AKAs: Trojan Horse, W32.PrettyPark, Trojan.PSW.CHV, CHV, W32/Pretty.Worm.unp
|
| W32.QAZ.A@mm |
|
Removal Tool(s):
fixqaz.exe
Symantec Definitions:
W32.HLLW.Qaz.A
McAfee Definitions:
W32/QAZ.Worm
AKAs: Qaz.Trojan, Qaz.Worm, W32.HLLW.Qaz (gen)
|
| Trojan.QHosts |
|
Removal Tool(s):
FixQhost.exe
Symantec Definitions:
Trojan.Qhosts
McAfee Definitions:
QHosts-1
AKAs: VBS.QHOSTS [CA]
|
| W32.Reatle@mm |
|
Removal Tool(s):
FixReatle.exe
Symantec Definitions:
W32.Reatle.C@mm
W32.Reatle.C@mm
McAfee Definitions:
W32/Reatle.gen@MM
|
| Backdoor.Ryknos |
|
Removal Tool(s):
FixRyknos.exe
Symantec Definitions:
Backdoor.Ryknos
Backdoor.Ryknos.B
SecurityRisk.First4DRM
|
| W32.Sasser@mm |
|
Removal Tool(s):
FxSasser.exe
Stinger
Symantec Definitions
W32.Sasser.Worm
W32.Sasser.B.Worm
W32.Sasser.C.Worm
W32.Sasser.D.Worm
W32.Sasser.E.Worm
W32.Sasser.G.Worm - Reference File Missing from Symantec Site
McAfee Definitions:
W32/Sasser.Worm.a@MM
W32/Sasser.Worm.b@MM
W32/Sasser.Worm.c@MM
W32/Sasser.Worm.d@MM
W32/Sasser.Worm.e@MM
AKAs: WORM_SASSER [Trend], Worm.Win32.Sasser [Kaspersky], W32/Sasser [Sophos]
|
| W32.Secefa |
|
Removal Tool(s):
FxSecefa.exe
Symantec Definitions:
W32.Secefa.A
W32.Secefa.B
W32.Secefa.C
Trojan.Gamqowi
AKAs: W32/Ritdoor-D [Sophos], Win32.Qweasy.F [Computer Associates] W32/Ritdoor-F [Sophos]
|
| W32.Serflog |
|
Removal Tool(s):
FixSflog.exe
Symantec Definitions:
W32.Serflog.A
W32.Serflog.C
McAfee Definitions:
W32/Crog.worm
AKAs: Win32.Bropia.U [Computer Associates], Sumom [F-Secure], IM-Worm.Win32.Sumom [Kaspersky Lab], W32/Sumom [Sophos], WORM_FATSO [Trend Micro]
|
| W32.Sircam.Worm@mm |
|
Removal Tool(s):
FixSirc.exe
Symantec Definitions:
W32.Sircam.Worm@mm
McAfee Definitions:
W32/SirCam@MM
AKAs: Backdoor.SirCam, I-Worm.Sircam.a [AVP], WORM_SIRCAM.A [Trend], W32/Sircam-A [Sophos], W32/Sircam [Panda], Win32.Sircam.137216 [CA], W32/Sircam.worm@mm [F-Secure], Win32.HLLW.SirCam [DrWeb]
|
| W32.Sober@mm |
|
Removal Tool(s):
FixSbr.exe
Stinger
Symantec Definitions
W32.Sober@mm
W32.Sober.B@mm
W32.Sober.C@mm
W32.Sober.D@mm
W32.Sober@mm.enc
W32.Sober.gen
W32.Sober.E@mm
W32.Sober.F@mm
W32.Sober.G@mm
W32.Sober.J@mm
W32.Sober.N@mm
W32.Sober.O@mm
W32.Sober.Q@mm
W32.Sober.V@mm
W32.Sober.W@mm
W32.Sober.X@mm
McAfee Definitions:
W32/Sober.a@MM
W32/Sober.b@MM
W32/Sober.c@MM
W32/Sober.d@MM
W32/Sober.e@MM
W32/Sober.f@MM
W32/Sober.g@MM
W32/Sober.j@MM
W32/Sober.o@MM!M414
W32/Sober.p@MM
W32/Sober.r@MM
W32/Sober.t@MM
W32/Sober@MM!M681
AKAs: I-Worm.Sober [Kaspersky], W32/Sober [Sophos], WORM_SOBER [Trend]. Sober [F-Secure], W32/Sober@mm [Frisk], W32/Sober [Norman], Win32/Sober [Eset], Win32.Sober [Computer Associates]
|
| W32.Sobig.A@mm |
|
Removal Tool(s):
FixSobig.exe
Stinger
Symantec Definitions
W32.Sobig.A@mm
McAfee Definitions:
W32/Sobig.a@MM
AKAs: WORM_SOBIG.A [Trend], W32/Sobig-A [Sophos], I-Worm.Sobig [KAV], Win32.Sobig [CA]
|
| W32.Sobig.B@mm |
|
Removal Tool(s):
FxSobigb.exe
Stinger
Symantec Definitions
W32.Sobig.B@mm
McAfee Definitions:
W32/Sobig.b@MM
AKAs: W32.HLLW.Mankx@mm, W32/Palyh-A [Sophos], I-Worm.Palyh [KAV], WORM_PALYH.A [Trend], Win32.Palyh.A [CA]
|
| W32.Sobig.C@mm |
|
Removal Tool(s):
FixSbigc.exe
Stinger
Symantec Definitions
W32.Sobig.C@mm
McAfee Definitions:
W32/Sobig.c@MM
AKAs: Win32/Sobig.C [ESET], Sobig.C [F-Secure], I-Worm.Sobig.c [KAV], WORM_SOBIG.C [Trend], Win32.Sobig.C [CA], W32/Sobig-C [Sophos]
|
| W32.Sobig.E@mm |
|
Removal Tool(s):
FixSbigE.exe
Stinger
Symantec Definitions
W32.Sobig.E@mm
McAfee Definitions:
W32/Sobig.e@MM
AKAs: Win32.Sobig.E [CA], W32/Sobig-E [Sophos], WORM_SOBIG.E [Trend], I-Worm.Sobig.e [KAV]
|
| W32.Sobig.F@mm |
|
Removal Tool(s):
FixSbigF.exe
Stinger
Symantec Definitions
W32.Sobig.E@mm
McAfee Definitions:
W32/Sobig.e@MM
AKAs: Sobig.F [F-Secure], WORM SOBIG.F [Trend], W32/Sobig-F [Sophos], Win32.Sobig.F [CA], I-Worm.Sobig.f [KAV]
|
| W32.SQLExp.Worm |
|
Removal Tool(s):
FixSQLex.exe
Stinger
Symantec Definitions
W32.SQLExp.Worm
McAfee Definitions:
W32/SQLSlammer.worm
AKAs: SQL Slammer Worm [ISS], DDOS.SQLP1434.A [Trend], Slammer [F-Secure], Sapphire [eEye], W32/SQLSlam-A [Sophos]
|
| VBS.Stages.A |
|
Removal Tool(s):
fixlife.exe
Symantec Definitions
VBS.Stages.A
McAfee Definitions:
IRC/Stages.worm
AKAs: Life_Stages Worm, VBS_Stages.A, Bloodhound.VBS.Worm
|
| Trojan.Stealther.B |
|
Removal Tool(s):
FixWinSh.exe
Symantec Definitions
Trojan.Stealther.B
McAfee Definitions:
Stealther
AKAs: Trojan.Stealther, Trojan.Win32.Stealther [KAV]
|
| W2K.Stream |
|
Removal Tool(s):
fixstrm.exe
Symantec Definitions
W2K.Stream
McAfee Definitions:
W2K/Stream
AKAs: PE_STREAM.A
|
| W32.Swen.A@mm |
|
Removal Tool(s):
FixSwen.exe
Stinger
Symantec Definitions
W32.Swen.A@mm
McAfee Definitions:
W2K/Swen@MM
AKAs: Swen [F-Secure], W32/Gibe-F [Sophos], Worm Swen.A
|
| AOL.Trojan.32512 |
|
Removal Tool(s):
fixbuddy.exe
Symantec Definitions: AOL.PWSteal.32512
McAfee Definitions: APStrojan.ob
AKAs: BuddyList Trojan, Trojan.PSW.Noter, TROJ_BUDDY.D, AOL.Trojan.32512
|
| Trojan.Vundo |
|
Removal Tool(s):
FixVundo.exe
Symantec Definitions: Trojan.Vundo
McAfee Definitions:
Vundo
Vundo.dldr
|
| Trojan.Vundo.B |
|
Removal Tool(s):
FxVundoB.exe
Symantec Definitions: Trojan.Vundo.B
|
| W32.Welchia.Worm |
|
Removal Tool(s):
FixWelch.exe
Stinger
Symantec Definitions
W32.Welchia.Worm
W32.Welchia.B.Worm
W32.Welchia.C.Worm
W32.Welchia.D.Worm
McAfee Definitions:
W32/Nachi.Worm
W32/Nachi.Worm.b
W32/Nachi.Worm.c
AKAs: W32/Welchia.worm10240 [AhnLab], WORM_MSBLAST.D [Trend], Lovsan.D [F-Secure], W32/Nachi [Sophos], Win32.Nachi [CA], Worm.Win32.Welchia [KAV]
|
| Backdoor.Winshell.50 |
|
Removal Tool(s):
FixWinSh.exe
Symantec Definitions
Backdoor.Winshell.50
McAfee Definitions:
BackDoor-TC.gen
AKAs: Backdoor.Winshell.50 [KAV]
|
| W32.HLLW.Winevar |
|
Removal Tool(s):
FixWEvar.com
Symantec Definitions: W32.HLLW.Winevar
McAfee Definitions: W32/Korvar
AKAs: WORM_WINEVAR.A [Trend], I-Worm.Winevar [KAV]
|
| W32.Yaha@mm |
|
Removal Tool(s):
FixYaha.com
Stinger
Symantec Definitions
W32.Yaha.E@mm
W32.Yaha.E@mm
W32.Yaha.H@mm
W32.Yaha.K@mm
W32.Yaha.L@mm
W32.Yaha.M@mm
W32.Yaha.P@mm
W32.Yaha.Q@mm
W32.Yaha.S@mm
W32.Yaha.T@mm
McAfee Definitions:
W32/Yaha@mm
W32/Yaha.g@mm
W32/Yaha.k@mm
W32/Yaha.m@mm
W32/Yaha.p@mm
W32/Yaha.gen@mm
W32/Yaha.t@mm
AKAs: I-Worm.Lentin [AVP], W32/Yaha-D [Sophos], WORM_YAHA.D [Trend], Win32.Yaha.D [CA]
|
| Backdoor.IRC.Zcrew |
|
Removal Tool(s):
Stinger
Symantec Definitions: Backdoor.IRC.Zcrew
McAfee Definitions: IRC/Flood.bi
AKAs: IRC/Flood.bi [McAfee], Backdoor.IRC.Zcrew [Kaspersky]
|
| Backdoor.Zincite.A |
|
Removal Tool(s):
FxMydoom.exe
Stinger
Symantec Definitions
Backdoor.Zincite.A
McAfee Definitions:
W32/MyDoom.O@mm
|
| W32.Zindos.A |
|
Removal Tool(s):
FxMydoom.exe
Stinger
Symantec Definitions
W32.Zindos.A
McAfee Definitions:
W32/Zindos.Worm
AKAs: WORM_ZINDOS.A [Trend Micro], W32/Zindos-A [Sophos], Win32.Zindos.A [Computer Associates], Worm.Win32.Zindos.A [Kaspersky]
|
| W32.Zotob |
|
Removal Tool(s):
FixZotob.exe
Symantec Definitions:
W32.Zotob.A
W32.Zotob.B
W32.Zotob.C@mm
W32.Zotob.D
W32.Zotob.E
W32.Zotob.F
W32.Zotob.G
W32.Zotob.I
W32.Mytob.J@mm
McAfee Definitions:
W32/Zotob.worm
W32/Zotob.worm.b
W32/Bozori.worm.b
AKAs: Zotob [F-Secure], W32/Zotob [Sophos], WORM_ZOTOB [Trend]
|
 |
| Virus Removal Tools |
 |
| Virus Removal Tools |
Microsoft's Malicious Software Removal Tool
The Microsoft Windows Malicious Software Removal Tool checks computers running Windows XP, Windows 2000, and Windows Server 2003 for infections by specific, prevalent malicious software—including Blaster, Sasser, and Mydoom—and helps remove any infection found. When the detection and removal process is complete, the tool displays a report describing the outcome, including which, if any, malicious software was detected and removed. |
|
|
 |
|