Ezula TopText Removal: Remove Ezula TopText Forever
Let our support team solve your problem with Ezula TopText and repair Ezula TopText right now!
Leave the detailed description of your Ezula TopText problem in the form below. Our support team will contact you in several minutes and give a step-by-step instruction on how to fix Ezula TopText problem. Please be specific. Do your best describing the problem. This will help us recommend right and complete Ezula TopText problem removal solution.
Describe your problem here and we'll contact you in several minutes:
Warning:
1) We hate spam as much as you do. We will not share your email with any third party or publish it anywhere. Your email is used only to contact you and give you Ezula TopText removal solution.
2) All fields of this form are obligatory.
Threat's profile
|
Name of the threat: Ezula TopText |
| Command or file name: alarm.exe |
| Threat type: Adware |
| Affected OS: Win32 (Windows 9x, Windows XP, Windows Vista) |
Ezula TopText intrusion method
Ezula TopText copies its file(s) to your hard disk. Its typical file name is alarm.exe. Then it creates new startup key with name Ezula TopText and value alarm.exe. You can also find it in your processes list with name alarm.exe or Ezula TopText.
If you have further questions about Ezula TopText, please fill in the form above and we'll contact you shortly.
» Download program to remove Ezula TopText (Ezula TopText Removal Tool)
Recommended Solution
If you are not sure what to delete, use our award winning program - Ezula TopText Removal Tool.
Ezula TopText Removal Tool will find and fully remove Ezula TopText and all problems associated with Ezula TopText virus.
Fast, easy, and handy, Ezula TopText Removal Tool protects your computer against Ezula TopText that does harm to your computer and breaks your privacy. Ezula TopText Removal Tool scans your hard disks and registry and destroys any manifestation of Ezula TopText. Standard anti-virus software can do nothing against malicious programs like Ezula TopText. Remove Ezula TopText straight away!
» Download Ezula TopText Removal Tool now for free
How to fix Ezula TopText
This problem can be solved manually by deleting all registry keys and files connected with Ezula TopText, removing it from starup list and unregistering all corresponding DLLs. Additionally missing DLL's should be restored from distribution in case they are corrupted by Ezula TopText.
To get rid of Ezula TopText, you should:
1. Kill the following processes and delete the appropriate files:
• arrow1.gif
• arrow2.gif
• aud-acx1.exe
• auto-quarantine- 31-07-2003 16-13-34.bck
• bundles.exe
• bundles118.exe
• bundles53.exe
• button_small.gif
• easy mp3 alarm clock.lnk
• engines.dat
• exactsetup.exe
• ezinstall.exe
• ezinstall[1].exe
• ezsb.exe
• ezstttub.exe
• ezstub.dll
• ezstub.inf
• ezstubtt.exe
• ezsys.exe
• ezug.dll
• ezula.wif
• ezulaboot.dll
• ezulaboot.inf
• ezulains.exe
• ezulains[1].exe
• ezulastb.exe
• ezula[1].css
• genun.ez
• hwjt.exe
• inst3.exe
• install adaysdreamss.zip.lnk
• layer_bottom.gif
• layer_center.gif
• layer_top.gif
• legend.lgn
• misc 2.txt
• new.gif
• nnezta388.exe
• oleacc.dll
• param.ez
• popup_follow_divider.gif
• popup_follow_left.gif
• popup_follow_off.gif
• popup_follow_on.gif
• popup_follow_right.gif
• popup_top.gif
• popup_top_bottom.gif
• rwds.rst
• search.src
• side_b.gif
• side_l.gif
• side_r.gif
• side_top.gif
• spacer.gif
• tbeza127q.exe
• toptextilookup.exe
• twister.exe
• uninstall adaysdreamss.zip.lnk
• upgrade.vrn
• version.vrn
• whcc-elida.exe
Warning: you should delete only those files which checksums are listed as malicious. There may be valid files with the same names in your system. We recommend you to use Ezula TopText Removal Tool for safe problem solution.
2. Delete the following malicious folders:
• C:\Program Files\Common Files\easy mp3 alarm clock\
• C:\Program Files\Common Files\toptext ilookup\
• C:\Documents and Settings\User\start menu\programs\toptext ilookup\
• C:\Program Files\easy mp3 alarm clock\
• C:\Program Files\ezula\
• C:\Program Files\filesubmit\adaysdreamss.zip\
• C:\Program Files\go!zilla\ezula\
• C:\Program Files\twister\partner\ezstttub.exe\
• C:\Windows\start menu\programs\toptext ilookup\
• C:\Documents and Settings\User\local settings\temporary internet files\content.ie5\08jaajmj\
• C:\Documents and Settings\User\local settings\temporary internet files\content.ie5\yse2nxbu\
• C:\Program Files\Common Files\filesubmit\
3. Delete the following malicious registry entries and\or values:
• Key: appid\{8a044397-5da2-11d4-b185-0050dab79376} Value: @
• Key: appid\{c0335198-6755-11d4-8a73-0050da2ee1be} Value: @
• Key: appid\ezulabootexe.exe Value: @
• Key: appid\ezulabootexe.exe\appid Value: @
• Key: appid\ezulamain.exe Value: @
• Key: appid\ezulamain.exe\appid Value: @
• Key: clsid\{07f0a536-47ba-11d4-8a6d-0050da2ee1be} Value: @
• Key: clsid\{07f0a542-47ba-11d4-8a6d-0050da2ee1be} Value: @
• Key: clsid\{07f0a544-47ba-11d4-8a6d-0050da2ee1be} Value: @
• Key: clsid\{083fa8f4-84f4-11d4-8a77-0050da2ee1be} Value: @
• Key: clsid\{1823bc4b-a253-4767-9cfc-9aca62a6b136} Value: @
• Key: clsid\{3d7247f1-5db8-11d4-8a72-0050da2ee1be} Value: @
• Key: clsid\{4fd8645f-9b3e-46c1-9727-9837842a84ab} Value: @
• Key: clsid\{58359011-bf36-11d3-99a2-0050da2ee1be} Value: @
• Key: clsid\{58359012-bf36-11d3-99a2-0050da2ee1be} Value: @
• Key: clsid\{7edc96e1-5dd3-11d4-b185-0050dab79376} Value: @
• Key: clsid\{8a044396-5da2-11d4-b185-0050dab79376} Value: @
• Key: clsid\{8a044397-5da2-11d4-b185-0050dab79376} Value: @
• Key: clsid\{8ebb1743-9a2f-11d4-8a7e-0050da2ee1be} Value: @
• Key: clsid\{a041b850-57ad-493f-8fdc-4f1b15c0d16f} Value: @
• Key: clsid\{c0335197-6755-11d4-8a73-0050da2ee1be} Value: @
• Key: clsid\{c0335198-6755-11d4-8a73-0050da2ee1be} Value: @
• Key: clsid\{c03351a3-6755-11d4-8a73-0050da2ee1be} Value: @
• Key: clsid\{c4fee4a6-4b8b-11d4-8a6d-0050da2ee1be} Value: @
• Key: clsid\{ef0372dc-f552-11d3-8528-0050dab79376} Value: @
• Key: clsid\{ezula toptext} Value: @
• Key: ezulaagent.ezulactrlhost\clsid Value: @
• Key: ezulaagent.ezulactrlhost\curver Value: @
• Key: ezulaagent.plugprot\clsid Value: @
• Key: ezulaagent.plugprot\curver Value: @
• Key: ezulabootexe.installctrl\clsid Value: @
• Key: ezulabootexe.installctrl\curver Value: @
• Key: ezulafsearcheng.ezulacode\clsid Value: @
• Key: ezulafsearcheng.ezulacode\curver Value: @
• Key: ezulafsearcheng.ezulahash\clsid Value: @
• Key: ezulafsearcheng.ezulahash\curver Value: @
• Key: ezulafsearcheng.popupdisplay\clsid Value: @
• Key: ezulafsearcheng.popupdisplay\curver Value: @
• Key: ezulamain.trayiconm Value: @
• Key: interface\{03022430-abc4-11d0-bde2-00aa00a11953} Value: @
• Key: interface\{07f0a542-47ba-11d4-8a6d-0050da2ee1be} Value: @
• Key: interface\{07f0a544-47ba-11d4-8a6d-0050da2ee1be} Value: @
• Key: interface\{1823bc4b-a253-4767-9cfc-9aca62a6b136} Value: @
• Key: interface\{19dfb2ca-9b27-11d4-b192-0050dab79376} Value: @
• Key: interface\{27bc6871-4d5a-11d4-8a6d-0050da2ee1be} Value: @
• Key: interface\{3d7247f1-5db8-11d4-8a72-0050da2ee1be} Value: @
• Key: interface\{4fd8645f-9b3e-46c1-9727-9837842a84ab} Value: @
• Key: interface\{58359012-bf36-11d3-99a2-0050da2ee1be} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{58359010-bf36-11d3-99a2-0050da2ee1be} Value: @
• Key: typelib\{083fa8f4-84f4-11d4-8a77-0050da2ee1be} Value: @
• Key: typelib\{8a044396-5da2-11d4-b185-0050dab79376} Value: @
• Key: software\microsoft\windows\currentversion\run\ezmmod Value: @
• Key: software\classes\appid\ezulabootexe.exe\appid Value: @
• Key: software\classes\appid\ezulamain.exe\appid Value: @
• Key: software\classes\clsid\{2babd334-5c3f-11d4-b184-0050dab79376}\appid Value: @
• Key: software\classes\clsid\{3c368c4a-827f-4f25-9c52-371bdf049912} Value: @
• Key: software\classes\clsid\{3d7247de-5db8-11d4-8a72-0050da2ee1be} Value: @
• Key: software\classes\clsid\{b1dd8a69-1b96-11d4-b175-0050dab79376}\appid Value: @
• Key: software\classes\clsid\{c03351a4-6755-11d4-8a73-0050da2ee1be}\appid Value: @
• Key: software\classes\clsid\{c900b400-cdfe-11d3-976a-00e02913a9e0} Value: @
• Key: software\classes\ezulaagent.ezulactrlhost\clsid Value: @
• Key: software\classes\ezulaagent.ezulactrlhost\curver Value: @
• Key: software\classes\ezulaagent.ieobject\clsid Value: @
• Key: software\classes\ezulaagent.ieobject\curver Value: @
• Key: software\classes\ezulaagent.plugprot\clsid Value: @
• Key: software\classes\ezulaagent.plugprot\curver Value: @
• Key: software\classes\ezulaagent.toolbarband\clsid Value: @
• Key: software\classes\ezulabootexe.installctrl\clsid Value: @
• Key: software\classes\ezulabootexe.installctrl\curver Value: @
• Key: software\classes\ezulafsearcheng.ezulacode\clsid Value: @
• Key: software\classes\ezulafsearcheng.ezulacode\curver Value: @
• Key: software\classes\ezulafsearcheng.ezulahash\clsid Value: @
• Key: software\classes\ezulafsearcheng.ezulahash\curver Value: @
• Key: software\classes\ezulafsearcheng.ezulasearch\clsid Value: @
• Key: software\classes\ezulafsearcheng.ezulasearch\curver Value: @
• Key: software\classes\ezulafsearcheng.popupdisplay\clsid Value: @
• Key: software\classes\ezulafsearcheng.popupdisplay\curver Value: @
• Key: software\classes\ezulafsearcheng.resulthelper\clsid Value: @
• Key: software\classes\ezulafsearcheng.resulthelper\curver Value: @
• Key: software\classes\ezulafsearcheng.searchhelper\clsid Value: @
• Key: software\classes\ezulafsearcheng.searchhelper\curver Value: @
• Key: software\classes\ezulamain.ezulasearchpipe\clsid Value: @
• Key: software\classes\ezulamain.ezulasearchpipe\curver Value: @
• Key: software\classes\ezulamain.trayiconm\clsid Value: @
• Key: software\classes\ezulamain.trayiconm\curver Value: @
• Key: software\classes\interface\{3d7247dd-5db8-11d4-8a72-0050da2ee1be} Value: @
• Key: software\classes\typelib\{3d7247d1-5db8-11d4-8a72-0050da2ee1be} Value: @
• Key: software\microsoft\code store database\distribution units\{a041b850-57ad-493f-8fdc-4f1b15c0d16f} Value: @
• Key: software\microsoft\internet explorer\toolbar\{55910916-8b4e-4c1e-9253-cce296ea71eb} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{58359010-bf36-11d3-99a2-0050da2ee1be} Value: @
• Key: software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/ezstub.dll Value: @
• Key: software\microsoft\windows\currentversion\moduleusage\c:/winnt/downloaded program files/ezstub.dll Value: @
• Key: software\microsoft\windows\currentversion\moduleusage\c:/winnt/downloaded program files/ezulaboot.dll Value: @
• Key: software\microsoft\windows\currentversion\moduleusage\d:/winnt/downloaded program files/ezstub.dll Value: @
• Key: software\microsoft\windows\currentversion\shareddlls\c:\windows\downloaded program files\ezstub.dll Value: @
• Key: software\microsoft\windows\currentversion\shareddlls\c:\winnt\downloaded program files\ezstub.dll Value: @
• Key: software\microsoft\windows\currentversion\shareddlls\c:\winnt\downloaded program files\ezulaboot.dll Value: @
• Key: software\microsoft\windows\currentversion\shareddlls\d:\winnt\downloaded program files\ezstub.dll Value: @
• Key: software\microsoft\windows\currentversion\uninstall\ezula\displayname Value: @
• Key: software\microsoft\windows\currentversion\uninstall\ezula\uninstallstring Value: @
• Key: software\web3000.com\w3knet\ezi Value: @
• Key: software\web3000.com\w3knet\installpath Value: @
• Key: software\web3000.com\w3knet\licensed apps Value: @
• Key: software\web3000.com\w3knet\product names Value: @
• Key: software\web3000.com\w3knet\soi Value: @
Warning: If value is listed for some registry entries, you should only clear these values and leave keys with such values untouched. We recommend you to use Ezula TopText Removal Tool for safe problem solution.
Here are the descriptions of problems connected with Ezula TopText and alarm.exe we received earlier:
ezula toptext
Problem Summary: ezula toptext
persistant adds, generally slowing down pc, also causong IE to become non responsive
Our support has contacted the author of this message, antony raymen, and helped to solve his problem.
Next threat: F-Backdoor »
Learn more about Ezula TopText and alarm.exe »
« Back to catalog
Solution: 1134
|