Spyware Striker
Spyware Striker is a trojan that shows an icon in the computer tray. This icons shows a message, which says that the compromised PC is infected with dangerous malware spywares and asks the user to download and install an anti-malware application, which actually is SpywareStrike, corrupt illegaly distributed malware remover . Once the user clicks on such message, the trojan opens the official web site of SpywareStrike. It may also try to download the software. The trojan is able to change the Internet Explorer default home page and send the web browser to malicious web sites. SpywareStrike automatically runs on every Windows startup.
The SpywareStrike malware remover is a clone of the infamous SpyAxe, another corrupt illegaly distributed product.
File System Modifications
- The following files were created in the system:
# File Name 1 hp[X].tmp 2 mssearchnet.exe 3 netwrap.dll 4 nvctrl.exe 5 replmap.dll 6 spywarestrike.exe 7 ss_setup.exe 8 wiatwain.dll
Registry Modifications
- The following newly produced Registry Values are:
HKEY..\..\..\..{RegistryKeys}0A4AF3E9A644EE5C8HKEY_CLASSES_ROOTAppIDspywarestrike.exeHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionAppPathsspywarestrike.exeHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunSpywareStrikeHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallSpywareStrikeHKEY_LOCAL_MACHINESOFTWARESpywareStrikeIA4AF3E9A644EE5C8K7C0DB872A3F777C0 - The following CLSID's were detected:
HKEY..\..\{CLSID Path}70F17C8C-1744-41B6-9D07-575DB448DCC5C1A4C0C9-DBD0-493A-93F8-0B05EDC96224F23AA637-31D5-4526-B5C6-9FF89E16202CED39CB7C-1BF6-429B-A275-F183B4A3EFCBE0105E7C-D0C4-4DEA-AA21-B02F2960ECAFC4E953E6-770E-4F59-A5E3-43E9F0D682E2BDF00F24-A571-4392-95EC-04FDFF82A82CBC74C336-FF2C-40C9-AD4E-3772C208406BBA9CC151-4581-438E-94AF-4C703201B7CAAFEB8519-0B8B-4023-8C15-FFB17D5225F98B7AFBFD-631C-45BA-9145-F059EB58DD73849E056A-D67A-431E-9370-2275F26D39B566F0AC1C-DED5-4965-9E31-39788DF1B2645E7BF614-960B-4A1F-9236-9EC01AC4C5E25CCC8D01-9F75-4F07-9ACF-DEB314176C7951FEFA9C-1D5A-41C4-81FE-8C0FBE9254F03115A433-3FA0-483B-AB01-2A61C951FE582C15CDEA-3EF4-4405-90B0-19A1389B36ED27150F81-0877-42E9-AF13-55E5A3439A26
Leave a Reply
Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter . If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.