Home / Spyware Encyclopedia / Clicker.Costrat << Back

Recommendation to Automatically remove Clicker.Costrat


Our products can remove Clicker.Costrat and thousands of other Virus and Spyware automatically and instantly.

Clicker.Costrat Details


  • Category Clicker
  • Discovered 7/25/2008 6:02:00 PM
  • Modified 8/3/2023 5:31:06 PM
  • Threat Level High
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
EEFF2D70.DLL 259300  e538eaff0a403881883e7de6a451e594 
EE3F401B.DLL 32768  dc33390fefe47e9528e5224717c9a9fa 
553A472C.EXE 126464  c0c15a80a63685f051908611598c9290 
E41FC37E.EXE 126464  c0c15a80a63685f051908611598c9290 
4D5B2805.EXE 70818  a73c11085069370f5d81f497a304b7c5 
0000005739.EXE 881092  7abaaf6a7798231835eb709b87a11bb7 
8F418DBB.EXE 11650  75fe7956d313c00c69392f04c5be8860 
7DA7B359.EXE 111612  62e3924a5620c7122a07fda67f7a5d29 
DF42505C.EXE 140800  3f65cd95511d6938a1c55cca16fa01d8 
SFT_VER1.1454.0.EXE 77824  18d41586a19030b30f0ef1d6f9b66149 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\1c10300\(Default)
..\System\CurrentControlSet\Services\d539b1a6\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1A.EXE"\"%WIN.SYS32%\YUR1A.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1B.EXE"\"%WIN.SYS32%\YUR1B.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR7.EXE"\"%WIN.SYS32%\YUR7.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR8.EXE"\"%WIN.SYS32%\YUR8.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1.EXE"\"%WIN.SYS32%\YUR1.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR2.EXE"\"%WIN.SYS32%\YUR2.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR3.EXE"\"%WIN.SYS32%\YUR3.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR4.EXE"\"%WIN.SYS32%\YUR4.EXE"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware