
Articles
Testmonials
|
Cutwail
Cutwail falls to the following categories: Trojan
Aliases
[Kaspersky]Rootkit.Win32.Agent.dp,Trojan-Dropper.Win32.Small.avu,Trojan-Downloader.Win32.Agent.boy,Trojan-Downloader.Win32.Agent.brk,Trojan-Downloader.Win32.Agent.crz,Trojan-Downloader.Win32.Agent.czl,Trojan-Downloader.Win32.Agent.deu,Trojan-Downloader.Win32.Agent.djt,Trojan-Downloader.Win32.Agent.dpe,Trojan.Win32.Pakes.sx,Trojan-Spy.Win32.KeyLogger.rp,Trojan.Win32.Pakes.bqb,Trojan.Win32.Agent.der,Trojan.Win32.Agent.dcc,Trojan.Win32.Agent.cnt,Trojan.Win32.Pakes.btf,Trojan-Dropper.Win32.Agent.dgf;[McAfee]Spy-Agent.bv,Spy-Agent.bv.dldr;[F-Prot]W32/Downldr2.AOUA;[Other]Win32/Cutwail!generic,Trojan.Pandex,Trojan-Dropper.Win32.Agent.bie,Win32/Cutwail.S,W32/Agent.BNQJ,Troj/Agent-ELV,Win32/Cutwail.T,Win32/Cutwail.AB,Win32/Cutwail.AN,Win32/Cutwail.AQ,Trojan.Goldun,W32/Agent.COSM,Win32/Cutwail.BF,TrojanDropper:Win32/Cutwail.A,Troj/Pushdo-Gen,Win32/Cutwail.BI,TrojanDropper:Win32.Cutwail.H,Win32/Cutwail.CA,TrojanDropper:Win32/Cutwail.R,W32/Agent.DLNS,Trojan.Kobcka.BG,Win32/Cutwail.CC,Troj/Agent-GIS
How to remove Cutwail
To safely remove the harmful files and clean Windows register list from Cutwail - we recommend to use "Exterminate It!" software.
As a rule, if your computer has been infected with Cutwail it has been surely infected with a number of other viruses. Make a complete scanning of your computer, including the register, to know if it has been infected with Spyware and Adware viruses right now. Scanning is absolutely free.
Removing Cutwail files manually
You can try to remove all the infected files manually.
!!! Attention
We are not in any way responsible for the correct work of your computer and your operating system after removing every Cutwail file from your system. We strongly recommend you to use "Exterminate It!" and entrust your computer's safety and efficiency to the team of professionals
To remove all the Cutwail files from your computer manually you need to clean the specified logs in the register and remove the following files:
[%SYSTEM%]\drivers\ip6fw.sys [%SYSTEM%]\drivers\runtime.sys [%SYSTEM%]\drivers\secdrv.sys [%SYSTEM%]\plugin1.dat [%WINDOWS%]\plugin1.dat [%WINDOWS%]\SysPr.prx [%WINDOWS%]\Temp\startdrv.exe [%SYSTEM%]\ksys.sys HKEY_CURRENT_USER\software\wget HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9b71d88c-c598-4935-c5d1-43aa4db90836} HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\xvid HKEY_LOCAL_MACHINE\software\wget HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_ndnet1 HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_runtime HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_runtime2 HKEY_LOCAL_MACHINE\system\currentcontrolset\services\ndnet1 HKEY_LOCAL_MACHINE\system\currentcontrolset\services\runtime HKEY_CURRENT_USER\software\dimaware HKEY_LOCAL_MACHINE\software\dimaware HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{c4de5b15-4ffe-4c02-8cb3-cad24a33562b} HKEY_LOCAL_MACHINE\system\currentcontrolset001\control\safeboot\minimal\ctl_w32.sys HKEY_LOCAL_MACHINE\system\currentcontrolset001\control\safeboot\network\ctl_w32.sys HKEY_LOCAL_MACHINE\system\currentcontrolset001\services\ctl_w32 HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_ctl_w32 HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
Latest viruses: [ Bancos.GCB ] [ Messiah ] [ Rorex ] [ SillyDl.DMU ] [ Win32.PSW.Delf ] |