Worm.EmerleoxWorms are similar to viruses in that they self-replicate. As a worm infection, Worm.Emerleox tends to be a virus-like malware application, with destructive codes. Unlike viruses, however, worms spread without attaching to or infecting other programs and files. Worms are highly capable of mutating, replacing their own code by themselves, and are extremely difficult to find and remove from any infected system. Worm.Emerleox is no exception – it will hide itself and may further propagate itself onto a network of systems, if given half the chance. Worm.Emerleox will not copy itself into the file attachment to infect the emails; instead it is accompanied by a component which is able to download other malicious programs via the Internet. Once embed within a computer system, Worm.Emerleox will continue to send infected messages to all the email addresses harvested from the victims’ machine. Worm.Emerleox tends to install itself onto a computer system, employing Rootkit tactics, this way ensuring it remains hidden from all spyware detectors (legitimate ones). Possible properties of Worm.Emerleox are as follows: - Worm.Emerleox is able to terminate a range of processes, and to delete services related to antivirus solutions and firewalls. - Worm.Emerleox\'s main executable file will download other malicious programs from the remote malicious user’s site and install them to the victim machine. - Worm.Emerleox will search all files on the hard disk for email addresses, and send them to the remote malicious user\'s site. The best way to ensure your computer system is not compromised by the presence of this dangerous worm application, Worm.Emerleox, is to delete any of its affiliated components from your system as soon as it has been detected. |
|
|
Danger level:
6
How to manually remove Worm.Emerleox
Files associated with Worm.Emerleox infection:
SVOHOST.exe
rkrjvhl.exe
rkudobn.exe
nluoyvq.exe
wshmrye.exe
sybqnub.exe
winscok.dll
bggmixl.exe
jvjowcr.exe
jiejgvo.exe
rkrjvhl.exe
rkudobn.exe
nluoyvq.exe
wshmrye.exe
sybqnub.exe
winscok.dll
bggmixl.exe
jvjowcr.exe
jiejgvo.exe
Worm.Emerleox DLL's to remove:
winscok.dll
Worm.Emerleox processes to kill:
SVOHOST.exe
rkrjvhl.exe
rkudobn.exe
nluoyvq.exe
wshmrye.exe
sybqnub.exe
bggmixl.exe
jvjowcr.exe
jiejgvo.exe
rkrjvhl.exe
rkudobn.exe
nluoyvq.exe
wshmrye.exe
sybqnub.exe
bggmixl.exe
jvjowcr.exe
jiejgvo.exe
Remove Worm.Emerleox registry entries:
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN SoundMam
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN cscuqgp
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN lxtqlep
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN gsvlnlo
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN xvxpfgk
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN udjudwq
RUNNING PROGRAMEXPLORER.EXE
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN ltvcrhv
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN pversey
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN npsliqr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SoundMam
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ cscuqgp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lxtqlep
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ gsvlnlo
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xvxpfgk
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ udjudwq
RUNNING PROGRAM\EXPLORER.EXE
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ltvcrhv
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ pversey
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ npsliqr
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN cscuqgp
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN lxtqlep
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN gsvlnlo
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN xvxpfgk
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN udjudwq
RUNNING PROGRAMEXPLORER.EXE
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN ltvcrhv
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN pversey
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN npsliqr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SoundMam
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ cscuqgp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lxtqlep
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ gsvlnlo
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xvxpfgk
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ udjudwq
RUNNING PROGRAM\EXPLORER.EXE
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ltvcrhv
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ pversey
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ npsliqr

Post comment — WE NEED YOUR OPINION!