Home / Spyware Encyclopedia / Clicker.Costrat << Back

Recommendation to Automatically remove Clicker.Costrat


Our products can remove Clicker.Costrat and thousands of other Virus and Spyware automatically and instantly.

Clicker.Costrat Details


  • Category Clicker
  • Discovered 7/25/2008 6:02:00 PM
  • Modified 8/3/2023 5:31:06 PM
  • Threat Level High
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
EEFF2D70.DLL 259300  e538eaff0a403881883e7de6a451e594 
BF995682.EXE 58368  e18455db819ec558f7773c29303a3600 
010555e8.exe 72376  cff862e99bbedbde41d90143f2cb24b9 
1B5861BA.EXE 58368  c6a47a680528b6be6bd153292bb280dd 
0523D93B.EXE 49152  bdb545adba914749530d719eddf0fc82 
52318F3F.EXE 65024  bc85d42993c16b883cada2a1db9e3d40 
57329.EXE 333596  bb736fe1317ead6237e08efad44e48fe 
83802E2E.EXE 73216  ba9f69db5b9b79dad6c817cde16dbe0d 
37361690.EXE 71680  b58577539f2136209956cd9eca9809a5 
997F0D6F.EXE 52560  b1c920a18b9f5f56dfd3a71665279f1d 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\1c10300\(Default)
..\System\CurrentControlSet\Services\d539b1a6\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1A.EXE"\"%WIN.SYS32%\YUR1A.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1B.EXE"\"%WIN.SYS32%\YUR1B.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR7.EXE"\"%WIN.SYS32%\YUR7.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR8.EXE"\"%WIN.SYS32%\YUR8.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR1.EXE"\"%WIN.SYS32%\YUR1.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR2.EXE"\"%WIN.SYS32%\YUR2.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR3.EXE"\"%WIN.SYS32%\YUR3.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"YUR4.EXE"\"%WIN.SYS32%\YUR4.EXE"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware