Home / Spyware Encyclopedia / Clicker.Costrat << Back

Recommendation to Automatically remove Clicker.Costrat


Our products can remove Clicker.Costrat and thousands of other Virus and Spyware automatically and instantly.

Clicker.Costrat Details


  • Category Clicker
  • Discovered 7/25/2008 6:02:00 PM
  • Modified 8/3/2023 5:31:06 PM
  • Threat Level High
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
6CF133A6.DLL 90112 1.2.626.1ea675da991a7425c82205c5d061f9503 
32B43B5A.EXE 77824  ed8e58f3b520a629c755fdae36d946e4 
EE3F401B.DLL 32768  dc33390fefe47e9528e5224717c9a9fa 
E6D72187.DLL 54764  d05e5ec635c89019d4b2d13020b56ec1 
010555e8.exe 72376  cff862e99bbedbde41d90143f2cb24b9 
7.exe 74752  c458c9d97447f1c1b24267a2acdd1f09 
553A472C.EXE 126464  c0c15a80a63685f051908611598c9290 
E41FC37E.EXE 126464  c0c15a80a63685f051908611598c9290 
7.exe 78848  afa383537f85483108b4bd0689e2ba11 
7.exe 74752  ad6344c62a0a04cda2fb5a16cf67e32d 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\1c10300\(Default)
..\System\CurrentControlSet\Services\d539b1a6\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1A.EXE"\"%WIN.SYS32%\YUR1A.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1B.EXE"\"%WIN.SYS32%\YUR1B.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR7.EXE"\"%WIN.SYS32%\YUR7.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR8.EXE"\"%WIN.SYS32%\YUR8.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1.EXE"\"%WIN.SYS32%\YUR1.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR2.EXE"\"%WIN.SYS32%\YUR2.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR3.EXE"\"%WIN.SYS32%\YUR3.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR4.EXE"\"%WIN.SYS32%\YUR4.EXE"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware