How to remove o8tf6l.exe

 -------------------------------------------------------------------------------------
CRC32: 56A22226
MD5: CD05471B703831B5D28C4E1A00081F54
SHA-1: A1DDC5A002E05D1BD484235379C96AD480372109
------------------------------------------------------------------------
Aliases:
a-squared 4.5.0.24 2009.09.16 Worm.Win32.Taterf!IK
AhnLab-V3 5.0.0.2 2009.09.16 -
AntiVir 7.9.1.18 2009.09.16 TR/Crypt.ZPACK.Gen
Antiy-AVL 2.0.3.7 2009.09.16 -
Authentium 5.1.2.4 2009.09.16 -
Avast 4.8.1351.0 2009.09.15 -
AVG 8.5.0.412 2009.09.16 PSW.Generic7.AADK
BitDefender 7.2 2009.09.16 -
CAT-QuickHeal 10.00 2009.09.16 Worm.AutoRun.gen
ClamAV 0.94.1 2009.09.16 -
Comodo 2335 2009.09.16 -
DrWeb 5.0.0.12182 2009.09.16 -
eTrust-Vet 31.6.6740 2009.09.16 -
F-Prot 4.5.1.85 2009.09.15 -
F-Secure 8.0.14470.0 2009.09.16 -
Fortinet 3.120.0.0 2009.09.16 -
GData 19 2009.09.16 -
Ikarus T3.1.1.72.0 2009.09.16 Worm.Win32.Taterf
Jiangmin 11.0.800 2009.09.16 -
K7AntiVirus 7.10.845 2009.09.15 -
Kaspersky 7.0.0.125 2009.09.16 -
McAfee 5742 2009.09.15 -
McAfee+Artemis 5742 2009.09.15 Artemis!CD05471B7038
McAfee-GW-Edition 6.8.5 2009.09.16 -  Heuristic.LooksLike.Win32.SuspiciousPE.B
Microsoft 1.5005 2009.09.16 Worm:Win32/Taterf.B
NOD32 4429 2009.09.16 -  Win32/PSW.OnlineGame.NNU (4431)
Norman 6.01.09 2009.09.16 OnLineGames.KGCC
nProtect 2009.1.8.0 2009.09.16 -
Panda 10.0.2.2 2009.09.16 W32/Lineage.LBU
PCTools 4.4.2.0 2009.09.14 -
Prevx 3.0 2009.09.16 High Risk Cloaked Malware
Rising 21.47.22.00 2009.09.16 -
Sophos 4.45.0 2009.09.16 Mal/Generic-A
Sunbelt 3.2.1858.2 2009.09.16 Worm.Win32.AutoRun
Symantec 1.4.4.12 2009.09.16 Infostealer.Gampass
TheHacker 6.3.4.4.404 2009.09.15 -
TrendMicro 8.950.0.1094 2009.09.16 Cryp_Krap
VBA32 3.12.10.10 2009.09.15 -
ViRobot 2009.9.16.1939 2009.09.16 -
VirusBuster 4.6.5.0 2009.09.15 -
----------------------------------------------------------------------------

C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\herss.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\cvasds0.dll (0-9)
X:\o8tf6l.exe ( C:\........ Z:\)
X:\autorun.inf

C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\am1.rar
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\am.exe

Registry 


Keys added:
HKLM\SOFTWARE\Classes\CLSID\MADOWN
Values added:
HKLM\SOFTWARE\Classes\CLSID\MADOWN\urlinfo: "dsa21ss.t"
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
cdoosoft: "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\herss.exe"
Values modified:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\
CheckedValue: 0x00000000
HKCSoftware\Microsoft\Windows\CurrentVersion\Explorer\Advanced\
Hidden: 0x00000002
HKCUSoftware\Microsoft\Windows\CurrentVersion\Policies\Explorer\
NoDriveTypeAutoRun: 0x00000091
-------------------------------------------------------------------------

Related Posts Plugin for WordPress, Blogger...
Disclaimer
All the contents posted here are found from various Search Engines blogs and forums. The Webmaster of this blog takes no responsibility what so ever for any of the content (image/audio/video). If you find some content inappropriate or if there is any violation of copyright, kindly contact the host of the content (image/audio/video) to remove it from their server.
 
✖ SedutMediaLink ✖ - Templates Novo Blogger 2008
This template is brought to you by : allblogtools.com Blogger Templates