Home / Spyware Encyclopedia / Clicker.Adpower << Back

Recommendation to Automatically remove Clicker.Adpower


Our products can remove Clicker.Adpower and thousands of other Virus and Spyware automatically and instantly.

Clicker.Adpower Details


  • Category Clicker
  • Discovered 3/28/2007 3:35:00 PM
  • Modified 8/11/2023 3:35:38 PM
  • Threat Level Medium
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
kernels32.exe 146432Microsoft Corporation3.0043019636d060c701a4248bba31c16adf 
wmedia32.exe 44701  1b7180cddc05af7594463f61739be242 
kernels32.exe 146432Microsoft Corporation3.0.0.043019636d060c701a4248bba31c16adf11/08/2023
wmedia32.exe 50280  13bbd60a8ac32ef4cb68969966c8c42911/08/2023
system.bat 807424    
system.bat 30    
dl.Dll 4608  0047fdc0b06943b5597f0ae06c7c1065 
TROJAN-SPY.WIN32.BANKER.AJO.EXE 304640  023f6484a89c554c4c5a347fe981abe3 
TROJAN-SPY.WIN32.BANKER.AL.EXE 5008  1bceddd2252d882d6378ede00c20c8df 
system.bat 58  250d262123c35badae35c47ac7d9bc18 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\ \"EXPLORER"\"%WIN.SYS32%\EXPLORER.EXE"
..\Software\Microsoft\Windows NT\CurrentVersion\Run\"Service System"\""%WIN%\kernels32.exe""
..\Software\Microsoft\Windows\CurrentVersion\Run\\"hen"\"%WIN%\TROJAN-SPY.WIN32.BANKER.AN.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"svchosts.scr"\"%WIN%\svchosts.scr"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"TROJAN-SPY.WIN32.BANKER.ALL"\"%DAS.AU.LS%\Temp\TROJAN-SPY.WIN32.BANKER.ALL.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Service System"\""%WIN%\kernels32.exe""
..\Software\Microsoft\Windows\CurrentVersion\Run\\"WMEDIA32"\"WMEDIA32.EXE"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware