Trojan.FakeInit |
|
|
Danger level:
8
8
Type: Trojan
Common infection symptoms:
- Connects to the internet without permision
- Shows commercial adverts
- Slow internet connection
- System crashes
- Annoying pop-up's
- Slow Computer
How to manually remove Trojan.FakeInit
Files associated with Trojan.FakeInit infection:
ntdll64.exe
Userinit.exe
mousehook.dll
PAVRM.exe
Userinit.exe
mousehook.dll
PAVRM.exe
Trojan.FakeInit DLL's to remove:
mousehook.dll
Trojan.FakeInit processes to kill:
ntdll64.exe
Userinit.exe
PAVRM.exe
Userinit.exe
PAVRM.exe
Remove Trojan.FakeInit registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINDOWS\APPINIT_DLLS\ AppInit_DLLs
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catal
RUNNING PROGRAM\Explorer.EXE
RUNNING PROGRAM\ntdll64.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Advanced Virus Remover
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catal
RUNNING PROGRAM\Explorer.EXE
RUNNING PROGRAM\ntdll64.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Advanced Virus Remover

Post comment — WE NEED YOUR OPINION!