完美解决 Trojan-PSW.Win32.Mike的方法

所属分类: 实用技巧 / 病毒查杀 阅读数: 1268
收藏 0 赞 0 分享

This Trojan program is designed to steal user passwords. It is a Windows PE EXE file. The file is 23,040 bytes in size. It is written in Visual Basic. Payload

The Trojan will steal passwords to modem connections. The Trojan sends the harvested passwords by email to the remote malicious user's at:

**chno@mail.ru
The Trojan also creates the following registry key, and save its configuration to this key:

[HKCU\Software\VB and VBA Program Settings\THDetect]
The Trojan also displays the following message:

Removal instructions

If your computer does not have an up-to-date antivirus, or does not have an antivirus solution at all, follow the instructions below to delete the malicious program:

Use Task Manager to terminate the Trojan process.
Delete the original Trojan file (the location will depend on how the program originally penetrated the victim machine).
Delete the following parameters from the system registry (see What is a system registry and how do I use it for details on how to edit the registry): 
[HKCU\Software\VB and VBA Program Settings\THDetect]

更多精彩内容其他人还在看

一个不错的清除winsmd.exe木马的方法

一个不错的清除winsmd.exe木马的方法
收藏 0 赞 0 分享

各分区根目录释放shell.exe,autorun.inf 的病毒清除方法

各分区根目录释放shell.exe,autorun.inf 的病毒清除方法
收藏 0 赞 0 分享

手工查杀SMSS.exe hook.dll fOxkb.sys的方法

手工查杀SMSS.exe hook.dll fOxkb.sys的方法
收藏 0 赞 0 分享

遭遇 mssvc.exe svcUpdate.exe IESeven.dll DBSeven.dll病毒第1/3页

遭遇 mssvc.exe svcUpdate.exe IESeven.dll DBSeven.dll病毒
收藏 0 赞 0 分享

电脑中cmd.exe ftp.exe偷偷运行的解决方法

电脑中cmd.exe ftp.exe偷偷运行的解决方法
收藏 0 赞 0 分享

使用仙剑奇侠传四算号器不小心中了广告插件的解决办法

使用仙剑奇侠传四算号器不小心中了广告插件的解决办法
收藏 0 赞 0 分享

MSN传播病毒Backdoor.Win32.IRCBot.acd清除方法

MSN传播病毒Backdoor.Win32.IRCBot.acd清除方法
收藏 0 赞 0 分享

解决无法删除病毒文件的处理方法

解决无法删除病毒文件的处理方法
收藏 0 赞 0 分享

发现一篇不错的DLL后门完全清除技巧

发现一篇不错的DLL后门完全清除技巧
收藏 0 赞 0 分享

文件夹runauto..的删除方法 附批处理专杀工具

文件夹runauto..的删除方法 附批处理专杀工具
收藏 0 赞 0 分享
查看更多