Trojan Risk: icthis.exe Behavior Analysis

Windows Prompts:   Processes: Running as administrator: rmsink.exe, rundll32.exe(#2), googletalk.exe, DVDLAu~1.exe, dmremote.exe, cvpnd.exe, CnxDslTb.exe, Apoint.exe, ApntEx.exe, ISUSPM.exe Local service: scardsvr.exe, wdfmgr.exe   Registry Keys Modified: New Run keys: HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorerRun + C:Program FilesVideo Add-onicthis.exe HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun + C:Program FilesApointApoint.exe HKCUSoftwareMicrosoftWindowsCurrentVersionRun + "C:Program FilesCommon FilesInstallShieldUpdateServiceISUSPM.exe" –scheduler   Machine Level Run Keys: C:>reg query HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun /s ! REG.EXE VERSION 3.0 HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun Apoint REG_SZ C:Program FilesApointApoint.exe DellTouch REG_SZ C:WINNTMMKeybd.exe BluetoothAuthenticationAgent REG_SZ rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent ccApp REG_SZ "C:Program FilesCommon FilesSymantec SharedccApp.exe" vptray REG_SZ C:PROGRA~1SYMANT~1VPTray.exe QuickTime Task REG_SZ "C:PROGRA~1QUICKT~1qttask.exe" -atboottime CnxDslTaskBar REG_SZ "C:Program FilesBIPAC-7000 ADSL USB ModemCnxDslTb.exe" SigmatelSysTrayApp REG_SZ stsystra.exe NvCplDaemon REG_SZ RUNDLL32.EXE C:WINNTsystem32NvCpl.dll,NvStartup nwiz REG_SZ nwiz.exe /installquiet […]

Read more

How can I configure my Internet Explorer browser settings after I have removed malicious software from my computer?

You used the Microsoft Windows Malicious Software Removal Tool to scan for malicious software that changed Internet browser settings. As part of the repair process, the tool reset your Microsoft Internet Explorer settings to point to a specific Microsoft Web site that includes instructions for reconfiguring the settings. This article helps you reset your home page and search option settings for Internet Explorer 6 and Internet Explorer 5. If you are a business and need expert help with IT assistance for Hertfordshire, as well as other areas, you may want to check out companies such as sphereit.uk for that technical […]

Read more

System Tools: ESET SysInspector

Download Link:  ESET SysInspector: Microsoft Windows XP/Vista/7 (64bit) Read through:    FAQ   ESET SysInspector is an easy to use diagnostic tool that helps troubleshoot a wide range of system issues. Coming either as a free, standalone application, as well as, integrated into ESET NOD32 Antivirus 4 and ESET Smart Security 4, it captures critical and detailed information about your computer. While best used to track down the presence of malicious code, ESET SysInspector also comes in handy when resolving issues related to: Running processes and services Presence of suspicious and unsigned files Software issues Hardware incompatibility Outdated or malfunctioning drivers […]

Read more