Trojan-PSW.Win32.Dripper - How to remove November 14, 2009 By 2-viruses authors Trojan-PSW.Win32.Dripper is a backdoor trojan, known for it’s nefarious tactics used to steal personal information including passowords, account information, e-mail addresses and so on. However, these malicious practices are not the reason for mentioning Trojan-PSW.Win32.Dripper. This parasite is increasingly being used by rogue anti-spyware programs, Additional Guard, Enterprise Suite, and System Defender in particular, to scare users by making them think their systems are infected. These rogues use the following popup to exploit Trojan-PSW.Win32.Dripper: Warning! Virus Detected Threat Detected: Trojan-PSW.Win32.Dripper The popup also contains the threat level and the location of the file that is supposedly infected. The user is given the choice to “Remove All”, which will redirect him to the purchase page of whichever rogue is being promoted. Make sure whether you’re infected with the real Trojan-PSW.Win32.Dripper or the fake one, before you panic. Automatic Malware removal tools Download Spyhunter for Malware detection(Win) Note: Spyhunter trial provides detection of parasites and assists in their removal for free. limited trial available, Terms of use, Privacy Policy, Uninstall Instructions, Download Combo Cleaner for Malware detection(Mac) Note: Combo Cleaner trial provides detection of parasites and assists in their removal for free. limited trial available, Terms of use, Privacy Policy, Uninstall Instructions, Refund Policy , Manual removal Processes: AG345d.exe cb.exe exec.exe ppal.exe Dll: mozcrt19.dll sqlite3.dll ddv.dll energy.dll FS.dll Files: %UserProfile%\\Application Data\\2565da61\\AG345d.exe %UserProfile%\\Application Data\\2565da61\\278.mof %UserProfile%\\Application Data\\2565da61\\mozcrt19.dll %UserProfile%\\Application Data\\2565da61\\sqlite3.dll %UserProfile%\\Application Data\\2565da61\\AG.ico %UserProfile%\\Application Data\\2565da61\\AGSys %UserProfile%\\Application Data\\2565da61\\AGSys\\vd952342.bd %UserProfile%\\Application Data\\2565da61\\ag.cfg %UserProfile%\\Recent\\cb.exe %UserProfile%\\Recent\\CLSV.tmp %UserProfile%\\Recent\\ddv.dll %UserProfile%\\Recent\\dudl.drv %UserProfile%\\Recent\\energy.dll %UserProfile%\\Recent\\energy.sys %UserProfile%\\Recent\\exec.exe %UserProfile%\\Recent\\fan.drv %UserProfile%\\Recent\\FS.dll %UserProfile%\\Recent\\PE.drv %UserProfile%\\Recent\\ppal.exe %UserProfile%\\Recent\\SICKBOY.tmp %UserProfile%\\Recent\\tjd.sys %Program Files%\\Mozilla Firefox\\searchplugins\\search.xml Registers: HKEY_CLASSES_ROOT\\CLSID\\{3F2BBC05-40DF-11D2-9455-00104BC936FF} HKEY_CLASSES_ROOT\\xp_7a9be.DocHostUIHandler HKEY_CURRENT_USER\\Software\\Classes\\Software\\Microsoft\\Internet Explorer\\SearchScopes “URL” = “http://search-gala.com/?&uid=220&q={searchTerms}” HKEY_CURRENT_USER\\Software\\Microsoft\\Internet Explorer\\Download “RunInvalidSignatures” = “1? HKEY_CLASSES_ROOT\\Software\\Microsoft\\Internet Explorer\\SearchScopes “URL” = “http://search-gala.com/?&uid=220&q={searchTerms}” Trojan-PSW.Win32.Dripper facts Type: Adware Download Spyhunter for Malware detection(Win) Note: Spyhunter trial provides detection of parasites and assists in their removal for free. limited trial available, Terms of use, Privacy Policy, Uninstall Instructions, Download Combo Cleaner for Malware detection(Mac) Note: Combo Cleaner trial provides detection of parasites and assists in their removal for free. limited trial available, Terms of use, Privacy Policy, Uninstall Instructions, Refund Policy , TOC Leave a ReplyYour email address will not be published. Required fields are marked *Comment * Name * Email * Website