Results 1 to 6 of 6

Thread: Want to remove Trojan.Spyeye

  1. #1
    Join Date
    Nov 2009
    Posts
    3,331

    Want to remove Trojan.Spyeye

    Hi friends, I frustrated here. I am trying hard to remove Trojan.Spyeye trojan from my computer. It came in my system when I was transferring a few songs through Mp3 player. I got a popup from MSE but I ignored the same. And then the virus spread. I am quiet annoyed here. I am not able to find any option to remove this completely. I had tried a lot. But this does not looks like a easy way to wipe this thing. What should I do.

  2. #2
    Join Date
    Feb 2008
    Posts
    2,635

    re: Want to remove Trojan.Spyeye

    At the time this Trojan is runs, this malware creates the given configuration file, which is a password-protected ZIP archive:
    • %SystemDrive%\cleansweep.exe\config.bin

    This malware also makes the given file, which includes a hard-coded password to decrypt the above given configuration file:
    • %SystemDrive%\cleansweep.exe\cleansweep.exe

  3. #3
    Join Date
    May 2008
    Posts
    2,945

    re: Want to remove Trojan.Spyeye

    After, Trojan.Spyeye Trojan generates the given registry entry so which is it runs whenever Windows starts:
    • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\"cleansweep.exe" = "%SystemDrive%\cleansweep.exe\cleansweep.exe"

  4. #4
    Join Date
    Apr 2008
    Posts
    3,424

    re: Want to remove Trojan.Spyeye

    This virus also gives a specific rootkit capabilities, for instance it can:
    • This malware hides its own process on inserted processes
    • This malware hide and protect access to its own binary code
    • This malware hide and protect access to its startup registry entry

  5. #5
    Join Date
    May 2008
    Posts
    3,516

    re: Want to remove Trojan.Spyeye

    The given instructions pertain to every present and newly Symantec antivirus products, which is having the Symantec AntiVirus and Norton AntiVirus product lines.
    • Disable System Restore.
    • Update the virus definitions.
    • Run a full system scan.
    • Delete any values added to the registry.

  6. #6
    Join Date
    Apr 2008
    Posts
    3,339

    re: Want to remove Trojan.Spyeye

    Search to and remove the given registry entry:

    • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\"cleansweep.exe" = "%SystemDrive%\cleansweep.exe\cleansweep.exe"

Similar Threads

  1. How to remove Trojan: win32/fakesysdef and trojan@winnt/alureon.s.
    By Barnard in forum Networking & Security
    Replies: 8
    Last Post: 28-08-2011, 09:50 AM
  2. How to remove Trojan.PWS.YOX?
    By Kaufman in forum Networking & Security
    Replies: 4
    Last Post: 27-03-2010, 12:15 AM
  3. BackDoor-Spyeye Virus Infection
    By D_chapple in forum Networking & Security
    Replies: 5
    Last Post: 15-02-2010, 09:55 PM
  4. How to remove Trojan-Downloader.Dadobra.CP trojan?
    By Harper 21 in forum Networking & Security
    Replies: 5
    Last Post: 13-01-2010, 02:25 PM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,713,487,200.34583 seconds with 16 queries