Home / Spyware Encyclopedia / Clicker.AutoIt << Back

Recommendation to Automatically remove Clicker.AutoIt


Our products can remove Clicker.AutoIt and thousands of other Virus and Spyware automatically and instantly.

Clicker.AutoIt Details


  • Category Clicker
  • Discovered 10/6/2008 12:44:19 PM
  • Modified 2/21/2019 4:36:20 PM
  • Threat Level Low
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
5de54a25.exe 942641 6.0.2900.5512e0cc097ffc5914147c77f3ad3e0583f0 
520514.exe 942641 6.0.2900.5512e0cc097ffc5914147c77f3ad3e0583f0 
22a9e5af.exe 942633 6.0.2900.5512dedf9bc21cfb21f73cf8cad364bddf43 
xuntx.exe 942633 6.0.2900.5512dedf9bc21cfb21f73cf8cad364bddf43 
08a5e53d.exe 587347 6.0.2900.5512614ef99e787d6d6a62b25f5b4d0a3b84 
C4540621.EXE 317999 3.2.12.1d3f757d16550ebe5b39724d22cceffe808/08/2023
47817478.exe 879663  03ce9ac5ce69f7a3dcbd8920d2290c78 
8577915e.exe 723514  86e023070ca5f973af970b7666ec13a6 
6F431BA2.EXE 388096TEAM REA1.0.0.15a4c01706922bce134e152ba64a0d69e 
F94F6306.EXE 228290 1.0.47.551bd54d7cadca2b087448e648a0d5f28 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS%\admin\Local Settings\Temp\C4540621.EXE"\"%DAS%\admin\Local Settings\Temp\C4540621.EXE:*:Enabled:WinSvrHost32"
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS.AU.LS%\Temp\A7F3C64A.EXE"\"%DAS.AU.LS%\Temp\A7F3C64A.EXE:*:Enabled:WinSvrHost32"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware