Home / Spyware Encyclopedia / Clicker.AutoIt << Back

Recommendation to Automatically remove Clicker.AutoIt


Our products can remove Clicker.AutoIt and thousands of other Virus and Spyware automatically and instantly.

Clicker.AutoIt Details


  • Category Clicker
  • Discovered 10/6/2008 12:44:19 PM
  • Modified 2/21/2019 4:36:20 PM
  • Threat Level Low
  • Category Description
    This family of Trojans redirects victim machines to specified websites or other Internet resources. Clickers either send the necessary commands to the browser or replace system files where standard Internet urls are stored. Clickers are used: 1. To raise the hit-count of a specific site for advertising purposes. 2. To organize a DoS attack on a specified server or site. 3. To lead the victim to an infected resource where the machine will be attacked by other malware (viruses or Trojans).

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
C4540621.EXE 317999 3.2.12.1d3f757d16550ebe5b39724d22cceffe8 
A7F3C64A.EXE 333429 3.2.12.192491d9e55d7f3f68f36642b0a104d27 
C4540621.EXE 317999 3.2.12.1d3f757d16550ebe5b39724d22cceffe808/08/2023
47817478.exe 879663  03ce9ac5ce69f7a3dcbd8920d2290c78 
8577915e.exe 723514  86e023070ca5f973af970b7666ec13a6 
18D36D87.EXE 262269 3.2.12.03c678869a102301b4856cf816c55e22e 
08a5e53d.exe 587347 6.0.2900.5512614ef99e787d6d6a62b25f5b4d0a3b84 
xuntx.exe 942633 6.0.2900.5512dedf9bc21cfb21f73cf8cad364bddf43 
22a9e5af.exe 942633 6.0.2900.5512dedf9bc21cfb21f73cf8cad364bddf43 
520514.exe 942641 6.0.2900.5512e0cc097ffc5914147c77f3ad3e0583f0 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS%\admin\Local Settings\Temp\C4540621.EXE"\"%DAS%\admin\Local Settings\Temp\C4540621.EXE:*:Enabled:WinSvrHost32"
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS.AU.LS%\Temp\A7F3C64A.EXE"\"%DAS.AU.LS%\Temp\A7F3C64A.EXE:*:Enabled:WinSvrHost32"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware