Category:Trojan,Adware,BHO,Toolbar
[Kaspersky]Trojan.Win32.VB.ex;
[Eset]Win32/VB.EX trojan;
[Panda]Adware/AdLogix
AdLogix Detection :
Files:
[%PROFILE_TEMP%]adlinstallwin32.exe
[%SYSTEM%]eplspc.exe_
[%SYSTEM%]eplspd.exe_
[%SYSTEM%]eplspf.exe
[%SYSTEM%]hgiuygj.dll
[%SYSTEM%]hiwinnager.dat
[%SYSTEM%]nkhsof.exe
[%SYSTEM%]phpfvb.xml
[%SYSTEM%]phpfvf.exe
[%SYSTEM%]qpsjka.xml
[%SYSTEM%]wlbmta.xml
[%SYSTEM%]wlbmtb.xml
[%SYSTEM%]wlbmte.xml
[%WINDOWS%]downloaded program filestest.ocx
[%SYSTEM%]rundll32.exe
[%SYSTEM%]adupdater.exe
[%SYSTEM%]phelper.dll
[%WINDOWS%]systemphelper.dll
[%PROFILE_TEMP%]adlinstallwin32.exe
[%SYSTEM%]eplspc.exe_
[%SYSTEM%]eplspd.exe_
[%SYSTEM%]eplspf.exe
[%SYSTEM%]hgiuygj.dll
[%SYSTEM%]hiwinnager.dat
[%SYSTEM%]nkhsof.exe
[%SYSTEM%]phpfvb.xml
[%SYSTEM%]phpfvf.exe
[%SYSTEM%]qpsjka.xml
[%SYSTEM%]wlbmta.xml
[%SYSTEM%]wlbmtb.xml
[%SYSTEM%]wlbmte.xml
[%WINDOWS%]downloaded program filestest.ocx
[%SYSTEM%]rundll32.exe
[%SYSTEM%]adupdater.exe
[%SYSTEM%]phelper.dll
[%WINDOWS%]systemphelper.dll
Registry Keys:
HKEY_CLASSES_ROOTinterface{1cfb8b32-4053-4144-af6f-1540eec7f101}typelib
HKEY_CLASSES_ROOTclsid{024de5eb-3649-445e-8d57-c09a9a33d479}
HKEY_CLASSES_ROOTclsid{68bbe559-5b06-4d82-90ca-62243e343033}
HKEY_CLASSES_ROOTclsid{f5192746-22d6-41bd-9d2d-1e75d14fbd3c}
HKEY_CLASSES_ROOTddm_download.ddm_control
HKEY_CLASSES_ROOTsoftwaremicrosoftwindowscurrentversionexplorerbrowser helper objects{024de5eb-3649-445e-8d57-c09a9a33d479}
HKEY_CLASSES_ROOTtypelib{7d49a157-a1eb-4538-8b0d-6ac430c92d0b}
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorerbrowser helper objects{024de5eb-3649-445e-8d57-c09a9a33d479}
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionmoduleusage[%WINDOWS%]downloaded program filestest.ocx
Registry Values:
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionrun
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionshareddlls
Removing AdLogix:
you can run trial version of ExterminateIt, or remove AdLogix manually..ExterminateIt effectively and automatically removes Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware) from you computer.
Download ExterminateIt! to instantly get rid of AdLogix!
Also Be Aware of the Following Threats:
Remove adhostingsolutions.com Tracking Cookie
Remove AdBreak.FHFMM BHO
Remove 1stAntiVirus Trojan
Remove 2020Search Adware
Remove 180Solutions ZangoSearch Adware