How to remove Yelloader

February 15, 2016 on 4:04 pm | In Malware analysis | No Comments

After noticing a certain vbs file being dropped as one of the first during an infection cycle, I decided to go hunting for the file.
Name and location: C:\Windows\TEMPcoral.vbs
With some help from my online friends I found two different copies.

Both files were obfuscated in the same way.
obfuscation
About the simplest way I’ve ever seen, but it may have discouraged some people.

The result of the infection was a set of Clickers, Droppers and Downloaders. Most of which we detect as PUP.Optional.Yelloader.

How do I remove Yelloader?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove Quicksearch

February 12, 2016 on 11:02 am | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called Quicksearch.

How do I know if I am infected with Quicksearch?

This is how the main screen of the installer for the potentially unwanted application looks:
main screen

How do I remove Quicksearch?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove Free Youtube Downloader

February 11, 2016 on 2:37 pm | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called Free Youtube Downloader.

How do I know if I am infected with Free Youtube Downloader?

This is how the entry in your list of installed programs for the potentially unwanted application looks:
main screen

How do I remove Free Youtube Downloader?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove Native Info

February 11, 2016 on 11:13 am | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called Native Info.

How do I know if I am infected with Native Info?

This is how the main screen of the installer for the potentially unwanted application looks:
main screen

How do I remove Native Info?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove AnyFlix

February 10, 2016 on 12:27 pm | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called AnyFlix.

How do I know if I am infected with AnyFlix?

This is how the Scheduled Tasks for the potentially unwanted application look:
main screen

How do I remove AnyFlix?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove Search My Window

February 9, 2016 on 10:52 am | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called Search My Window.

How do I know if I am infected with Search My Window?

This is how the main screen of the installer for the potentially unwanted application looks:
main screen

How do I remove Search My Window?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove Pro PC Cleaner

February 8, 2016 on 11:05 am | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called Pro PC Cleaner.

How do I know if I am infected with Pro PC Cleaner?

This is how the main screen of the potentially unwanted application looks:
main screen

How do I remove Pro PC Cleaner?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove Donation Reminder

February 6, 2016 on 2:11 pm | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called Donation Reminder.

How do I know if I am infected with Donation Reminder?

This is how the main screen of the installer for the potentially unwanted application looks:
main screen

How do I remove Donation Reminder?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove Pass and Play

February 5, 2016 on 5:34 pm | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called Pass and Play.

How do I know if I am infected with Pass and Play?

This is how the main screen of the installer for the potentially unwanted application looks:
main screen

How do I remove Pass and Play?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

How to remove EasyPhotoEdit

February 4, 2016 on 11:43 am | In Malware analysis | No Comments

Malwarebytes Anti-Malware detects and removes a new application called EasyPhotoEdit.

How do I know if I am infected with EasyPhotoEdit?

This is how the main screen of the installer for Internet Explorer of the potentially unwanted application looks:
main screen

How do I remove EasyPhotoEdit?

Visit our forums for detailed instructions. You can also get help there should you need it.

And note that the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Pieter Arntz

« Previous PageNext Page »

Powered by WordPress with Pool theme design by Borja Fernandez.
Entries and comments feeds. Valid XHTML and CSS. ^Top^