Cobfinn Backdoor Removal: Remove Cobfinn Backdoor Forever
Let our support team solve your problem with Cobfinn Backdoor and repair Cobfinn Backdoor right now!
Leave the detailed description of your Cobfinn Backdoor problem in the form below. Our support team will contact you in several minutes and give a step-by-step instruction on how to fix Cobfinn Backdoor problem. Please be specific. Do your best describing the problem. This will help us recommend right and complete Cobfinn Backdoor problem removal solution.
Describe your problem here and we'll contact you in several minutes:
Warning:
1) We hate spam as much as you do. We will not share your email with any third party or publish it anywhere. Your email is used only to contact you and give you Cobfinn Backdoor removal solution.
2) All fields of this form are obligatory.
Threat's profile
|
Name of the threat: Cobfinn Backdoor |
| Command or file name: 15_Minutes_Free_Access.exe |
| Threat type: Spyware\trojan |
| Affected OS: Win32 (Windows 9x, Windows XP, Windows Vista) |
Cobfinn Backdoor intrusion method
Cobfinn Backdoor copies its file(s) to your hard disk. Its typical file name is 15_Minutes_Free_Access.exe. Then it creates new startup key with name Cobfinn Backdoor and value 15_Minutes_Free_Access.exe. You can also find it in your processes list with name 15_Minutes_Free_Access.exe or Cobfinn Backdoor.
If you have further questions about Cobfinn Backdoor, please fill in the form above and we'll contact you shortly.
» Download program to remove Cobfinn Backdoor (Cobfinn Backdoor Removal Tool)
Recommended Solution
If you are not sure what to delete, use our award winning program - Cobfinn Backdoor Removal Tool.
Cobfinn Backdoor Removal Tool will find and fully remove Cobfinn Backdoor and all problems associated with Cobfinn Backdoor virus.
Fast, easy, and handy, Cobfinn Backdoor Removal Tool protects your computer against Cobfinn Backdoor that does harm to your computer and breaks your privacy. Cobfinn Backdoor Removal Tool scans your hard disks and registry and destroys any manifestation of Cobfinn Backdoor. Standard anti-virus software can do nothing against malicious programs like Cobfinn Backdoor. Remove Cobfinn Backdoor straight away!
» Download Cobfinn Backdoor Removal Tool now for free
How to fix Cobfinn Backdoor
This problem can be solved manually by deleting all registry keys and files connected with Cobfinn Backdoor, removing it from starup list and unregistering all corresponding DLLs. Additionally missing DLL's should be restored from distribution in case they are corrupted by Cobfinn Backdoor.
To get rid of Cobfinn Backdoor, you should:
1. Kill the following processes and delete the appropriate files:
• bot1.22628.exe
• bot1.30247.exe
• bot1[1].exe
• bot2[1].exe
• bush.jpg
• cftmonw.exe
• copy of me.jpg
• copy of ournewcar.jpg
• copy of seduction secrets.jpg
• copy of wallpaper.pif
• down1.exe
• firefoxw.exe
• l.19225.exe
• l.28492.exe
• l.32276.exe
• lb.exe
• lb[1].exe
• lsasswin.exe
• l[1].exe
• my passwords.jpg
• my passwords.txt .exe
• mysexpicture.jpg
• ptw.exe
• ptw[1].exe
• p[1].exe
• regserv.dll
• seduction secrets.doc .exe
• seduction secrets.doc .pif
• seduction secrets.txt .exe
• servicesw.exe
• svchctrl.dll
• svchctrl.exe
• svchostw.dll
• svchostw.exe
• t.16591.exe
• t.24718.exe
• t.exe
• t[1].exe
• w.exe
• windows serial number.doc .exe
• windows serial number.doc .pif
• windows serial number.txt .exe
• w[1].exe
Warning: you should delete only those files which checksums are listed as malicious. There may be valid files with the same names in your system. We recommend you to use Cobfinn Backdoor Removal Tool for safe problem solution.
2. Delete the following malicious folders:
• C:\Documents and Settings\User\local settings\temporary internet files\content.ie5\2d65wt87\
• C:\Documents and Settings\User\local settings\temporary internet files\content.ie5\y56p8fyt\
• C:\Documents and Settings\User\local settings\application data\microsoft\wintools\new_video\
• C:\Documents and Settings\User\Desktop\crap\
• C:\Documents and Settings\User\local settings\application data\microsoft\wintools\h_core\
• C:\Documents and Settings\User\local settings\application data\microsoft\wintools\dvd_info\
• C:\Documents and Settings\User\local settings\application data\microsoft\wintools\new_mp3\
3. Delete the following malicious registry entries and\or values:
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: version
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: controller
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: controller_backup
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: delay
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: conn_limit
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: white_ip_id
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: id
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: adrress
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: id_loader
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: id_connect
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: connect_list
• Key: Software\Microsoft\Windows NT\CurrentVersion\Windows Value: load
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: version
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: controller
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: controller_backup
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: delay
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: conn_limit
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: adrress
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: white_ip_id
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_loader
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_connect
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: connect_list
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_loader
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_connect
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBot Value: id
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id
• Key: software\unker\l.19225\main Value: cid
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_loader
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_connect
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_loader
• Key: Software\Microsoft\Windows\CurrentVersion\ShellBotR Value: id_connect
• Key: software\unker\l.28492\main Value: cid
• Key: SOFTWARE\WinUpload Value: l.exe
• Key: SOFTWARE\WinUpload Value: t.exe
• Key: software\unker\l[1]\main Value: cid
Warning: If value is listed for some registry entries, you should only clear these values and leave keys with such values untouched. We recommend you to use Cobfinn Backdoor Removal Tool for safe problem solution.
Next threat: Codbot.Ad »
Learn more about Cobfinn Backdoor and 15_Minutes_Free_Access.exe »
« Back to catalog
Solution: 1839
|