Home / Spyware Encyclopedia / Clicker.AutoIt << Back

Recommendation to Automatically remove Clicker.AutoIt


Our products can remove Clicker.AutoIt and thousands of other Virus and Spyware automatically and instantly.

Clicker.AutoIt Details


  • Category Clicker
  • Discovered 10/6/2008 12:44:19 PM
  • Modified 2/21/2019 4:36:20 PM
  • Threat Level Low
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
6F431BA2.EXE 388096TEAM REA1.0.0.15a4c01706922bce134e152ba64a0d69e 
5de54a25.exe 942641 6.0.2900.5512e0cc097ffc5914147c77f3ad3e0583f0 
520514.exe 942641 6.0.2900.5512e0cc097ffc5914147c77f3ad3e0583f0 
22a9e5af.exe 942633 6.0.2900.5512dedf9bc21cfb21f73cf8cad364bddf43 
xuntx.exe 942633 6.0.2900.5512dedf9bc21cfb21f73cf8cad364bddf43 
08a5e53d.exe 587347 6.0.2900.5512614ef99e787d6d6a62b25f5b4d0a3b84 
C4540621.EXE 317999 3.2.12.1d3f757d16550ebe5b39724d22cceffe8 
A7F3C64A.EXE 333429 3.2.12.192491d9e55d7f3f68f36642b0a104d27 
18D36D87.EXE 262269 3.2.12.03c678869a102301b4856cf816c55e22e 
1D0C4559.EXE 239863 3.2.10.0fa16cb1d917ca1f21eb34196ff88d2ed 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS%\admin\Local Settings\Temp\C4540621.EXE"\"%DAS%\admin\Local Settings\Temp\C4540621.EXE:*:Enabled:WinSvrHost32"
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS.AU.LS%\Temp\A7F3C64A.EXE"\"%DAS.AU.LS%\Temp\A7F3C64A.EXE:*:Enabled:WinSvrHost32"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware