<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Remove-Spyware.Biz</title>
	
	<link>http://www.remove-spyware.biz</link>
	<description>Spyware, Adware, Viruses removal instructions!</description>
	<pubDate>Sat, 20 Jun 2009 16:17:45 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/Remove-spywarebiz" type="application/rss+xml" /><feedburner:browserFriendly></feedburner:browserFriendly><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
		<title>Svhost.exe Trojan-Dropper.Win32.Agent.albv</title>
		<link>http://www.remove-spyware.biz/trojan-svhostexe-trojan-dropperwin32agentalbv.htm</link>
		<comments>http://www.remove-spyware.biz/trojan-svhostexe-trojan-dropperwin32agentalbv.htm#comments</comments>
		<pubDate>Sat, 20 Jun 2009 16:15:55 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Latest News]]></category>

		<category><![CDATA[svhost.exe]]></category>

		<category><![CDATA[trojan]]></category>

		<category><![CDATA[Trojan-Dropper.Win32.Agent.albv]]></category>

		<guid isPermaLink="false">http://www.remove-spyware.biz/?p=67</guid>
		<description><![CDATA[ Trojan-Dropper.Win32.Agent.albv - this one is high risk, as you can see it have name &#8220;Trojan&#8221; so this mean that your computer can be one of millions zombies which will be used to send spam or ddos websites, so I recommend you as soon as possible to remove this one.
How to remove ?
If your computer [...]]]></description>
			<content:encoded><![CDATA[<!-- This is a HTML comment, it will not display in any page. Feel free to remove this comment if it cause any inconvenient to you.
	Thanks for using digg digg, please visit http://www.mkyong.com/blog/digg-digg-wordpress-plugin for any comments and ideas, 
	
    Author : Yong Mook Kim
    Website : http://www.mkyong.com
	--><div style='float:right'><table> <td><iframe src='http://digg.com/api/diggthis.php?w=new&amp;u=http://www.remove-spyware.biz/trojan-svhostexe-trojan-dropperwin32agentalbv.htm&amp;t=Svhost.exe+Trojan-Dropper.Win32.Agent.albv&amp;s=normal' height='80' width='52' frameborder='0' scrolling='no'></iframe></td></table></div><p><strong>Trojan-Dropper.Win32.Agent.albv</strong> - this one is high risk, as you can see it have name &#8220;Trojan&#8221; so this mean that your computer can be one of millions zombies which will be used to send spam or ddos websites, so I recommend you as soon as possible to remove this one.</p>
<p><strong>How to remove ?</strong></p>
<p><span>If your computer does not have an up-to-date antivirus, or does not have an antivirus solution at all, follow the instructions below to delete the malicious program:</span></p>
<p><span>Open Task Manager this you can do by holding <strong>crtl+alt+delete</strong>.</span></p>
<p><span>Find process file<strong> svhost.exe</strong> and kill this file.</span></p>
<p><span>Go to start run and write regedit.exe then find registry: </span><strong><span>[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]<br />
&#8220;WSVCHO&#8221; = &#8220;%WinDir%\system\svhost.exe&#8221; </span></strong><span>and delete</span><strong><span>.</span></strong></p>
<p><span>Then go to </span><strong><span>%WinDir%\system\ </span></strong><span>find file </span><strong><span>svhost.exe</span></strong><span> and delete</span><strong><span>.</span></strong></p>
<p>Then done restart your computer.</p>
<p>If this will not help you should download <a title="Kaspersky Antivirus" href="http://www.kqzyfj.com/click-3241249-10575699" target="_blank">Kaspersky antivirus</a> which will remove this trojan.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.remove-spyware.biz/trojan-svhostexe-trojan-dropperwin32agentalbv.htm/feed</wfw:commentRss>
		</item>
		<item>
		<title>W32.Troresba worm</title>
		<link>http://www.remove-spyware.biz/w32troresba-worm.htm</link>
		<comments>http://www.remove-spyware.biz/w32troresba-worm.htm#comments</comments>
		<pubDate>Sat, 20 Jun 2009 15:52:20 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Worms]]></category>

		<category><![CDATA[low risk]]></category>

		<category><![CDATA[W32.Troresba]]></category>

		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://www.remove-spyware.biz/?p=61</guid>
		<description><![CDATA[ W32.Troresba is low risk worm. This worm spreads through removable drives and network shares.
What this worm do ?
This worm copies itself as the following files:
* %ProgramFiles%\Analog Devices.exe
* %ProgramFiles%\Analog Devices\SoundMAX.exe
* %ProgramFiles%\Common Files.exe
* %ProgramFiles%\Common Files\InstallShield.exe
* %ProgramFiles%\Common Files\Microsoft Shared.exe
* %ProgramFiles%\Common Files\MSSoap.exe
* %ProgramFiles%\Common Files\ODBC.exe
* %ProgramFiles%\Common Files\Services.exe
* %ProgramFiles%\Common Files\SpeechEngines.exe
* %ProgramFiles%\Common Files\System.exe
* %ProgramFiles%\ComPlus Applications.exe
* %ProgramFiles%\InstallShield Installation Information.exe
* %ProgramFiles%\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}.exe
* [...]]]></description>
			<content:encoded><![CDATA[<!-- This is a HTML comment, it will not display in any page. Feel free to remove this comment if it cause any inconvenient to you.
	Thanks for using digg digg, please visit http://www.mkyong.com/blog/digg-digg-wordpress-plugin for any comments and ideas, 
	
    Author : Yong Mook Kim
    Website : http://www.mkyong.com
	--><div style='float:right'><table> <td><iframe src='http://digg.com/api/diggthis.php?w=new&amp;u=http://www.remove-spyware.biz/w32troresba-worm.htm&amp;t=W32.Troresba+worm&amp;s=normal' height='80' width='52' frameborder='0' scrolling='no'></iframe></td></table></div><p><strong>W32.Troresba</strong> is low risk worm. This worm spreads through removable drives and network shares.</p>
<h2><strong>What this worm do ?</strong></h2>
<p>This worm copies itself as the following files:</p>
<p>* %ProgramFiles%\Analog Devices.exe<br />
* %ProgramFiles%\Analog Devices\SoundMAX.exe<br />
* %ProgramFiles%\Common Files.exe<br />
* %ProgramFiles%\Common Files\InstallShield.exe<br />
* %ProgramFiles%\Common Files\Microsoft Shared.exe<br />
* %ProgramFiles%\Common Files\MSSoap.exe<br />
* %ProgramFiles%\Common Files\ODBC.exe<br />
* %ProgramFiles%\Common Files\Services.exe<br />
* %ProgramFiles%\Common Files\SpeechEngines.exe<br />
* %ProgramFiles%\Common Files\System.exe<br />
* %ProgramFiles%\ComPlus Applications.exe<br />
* %ProgramFiles%\InstallShield Installation Information.exe<br />
* %ProgramFiles%\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}.exe<br />
* %ProgramFiles%\Internet Explorer.exe<br />
* %ProgramFiles%\Internet Explorer\Connection Wizard.exe<br />
* %ProgramFiles%\Internet Explorer\PLUGINS.exe<br />
* %ProgramFiles%\Internet Explorer\SIGNUP.exe<br />
* %ProgramFiles%\Messenger.exe<br />
* %ProgramFiles%\microsoft frontpage.exe<br />
* %ProgramFiles%\microsoft frontpage\version3.0.exe<br />
* %ProgramFiles%\Movie Maker.exe<br />
* %ProgramFiles%\Movie Maker\MUI.exe<br />
* %ProgramFiles%\Movie Maker\Shared.exe<br />
* %ProgramFiles%\NetMeeting.exe<br />
* %ProgramFiles%\Online Services.exe<br />
* %ProgramFiles%\Outlook Express.exe<br />
* %ProgramFiles%\Uninstall Information.exe<br />
* %ProgramFiles%\Windows Media Player.exe<br />
* %ProgramFiles%\Windows Media Player\Icons.exe<br />
* %ProgramFiles%\Windows Media Player\Sample Playlists.exe<br />
* %ProgramFiles%\Windows Media Player\Skins.exe<br />
* %ProgramFiles%\Windows Media Player\Visualizations.exe<br />
* %ProgramFiles%\Windows NT.exe<br />
* %ProgramFiles%\Windows NT\Accessories.exe<br />
* %ProgramFiles%\Windows NT\Pinball.exe<br />
* %ProgramFiles%\WindowsUpdate.exe<br />
* %ProgramFiles%\xerox.exe<br />
* %ProgramFiles%\xerox\nwwia.exe<br />
* %System%\1025.exe<br />
* %System%\1028.exe<br />
* %System%\1031.exe<br />
* %System%\1033.exe<br />
* %System%\1037.exe<br />
* %System%\1041.exe<br />
* %System%\1042.exe<br />
* %System%\1054.exe<br />
* %System%\2052.exe<br />
* %System%\3076.exe<br />
* %System%\3com_dmi.exe<br />
* %System%\[ORIGINAL THREAT FILE NAME].exe<br />
* %System%\appmgmt.exe<br />
* %System%\CatRoot.exe<br />
* %System%\CatRoot2.exe<br />
* %System%\Com.exe<br />
* %System%\config.exe<br />
* %System%\config\systemprofile\Start Menu\Programs\Startup\[ORIGINAL THREAT FILE NAME].exe<br />
* %System%\dhcp.exe<br />
* %System%\DirectX.exe<br />
* %System%\dllcache.exe<br />
* %System%\drivers.exe<br />
* %System%\export.exe<br />
* %System%\ias.exe<br />
* %System%\icsxml.exe<br />
* %System%\IME.exe<br />
* %System%\inetsrv.exe<br />
* %System%\Macromed.exe<br />
* %System%\Microsoft.exe<br />
* %System%\mui.exe<br />
* %System%\npp.exe<br />
* %System%\NtmsData.exe<br />
* %System%\oobe.exe<br />
* %System%\ras.exe<br />
* %System%\ReinstallBackups.exe<br />
* %System%\Restore.exe<br />
* %System%\ShellExt.exe<br />
* %System%\spool.exe<br />
* %System%\usmt.exe<br />
* %System%\wbem.exe<br />
* %System%\wins.exe<br />
* %System%\xircom.exe<br />
* %SystemDrive%\Config.Msi.exe<br />
* %SystemDrive%\Documents and Settings.exe<br />
* %SystemDrive%\Documents and Settings\Administrator.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Application Data.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Cookies.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Desktop.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Favorites.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Local Settings.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\My Documents.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\NetHood.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\PrintHood.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Recent.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\SendTo.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Start Menu.exe<br />
* %SystemDrive%\Documents and Settings\Administrator\Templates.exe<br />
* %SystemDrive%\Documents and Settings\All Users.exe<br />
* %SystemDrive%\Documents and Settings\All Users\Application Data.exe<br />
* %SystemDrive%\Documents and Settings\All Users\Desktop.exe<br />
* %SystemDrive%\Documents and Settings\All Users\Desktop\My Documents.exe<br />
* %SystemDrive%\Documents and Settings\All Users\Documents.exe<br />
* %SystemDrive%\Documents and Settings\All Users\DRM.exe<br />
* %SystemDrive%\Documents and Settings\All Users\Favorites.exe<br />
* %SystemDrive%\Documents and Settings\All Users\Start Menu.exe<br />
* %SystemDrive%\Documents and Settings\All Users\Start Menu\Programs\Startup\[ORIGINAL THREAT FILE NAME].exe<br />
* %SystemDrive%\Documents and Settings\All Users\Templates.exe<br />
* %SystemDrive%\Documents and Settings\Default User.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Application Data.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Cookies.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Desktop.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Favorites.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Local Settings.exe<br />
* %SystemDrive%\Documents and Settings\Default User\My Documents.exe<br />
* %SystemDrive%\Documents and Settings\Default User\NetHood.exe<br />
* %SystemDrive%\Documents and Settings\Default User\PrintHood.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Recent.exe<br />
* %SystemDrive%\Documents and Settings\Default User\SendTo.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Start Menu.exe<br />
* %SystemDrive%\Documents and Settings\Default User\Templates.exe<br />
* %SystemDrive%\Documents and Settings\LocalService.exe<br />
* %SystemDrive%\Documents and Settings\LocalService\Application Data.exe<br />
* %SystemDrive%\Documents and Settings\LocalService\Cookies.exe<br />
* %SystemDrive%\Documents and Settings\LocalService\Local Settings.exe<br />
* %SystemDrive%\Documents and Settings\NetworkService.exe<br />
* %SystemDrive%\Documents and Settings\NetworkService\Application Data.exe<br />
* %SystemDrive%\Documents and Settings\NetworkService\Cookies.exe<br />
* %SystemDrive%\Documents and Settings\NetworkService\Local Settings.exe<br />
* %SystemDrive%\Documents and Settings\VirusMaster.exe<br />
* %SystemDrive%\Program Files.exe<br />
* %SystemDrive%\RECYCLER.exe<br />
* %SystemDrive%\RECYCLER\[SID].exe<br />
* %SystemDrive%\System Volume Information.exe<br />
* %SystemDrive%\temp.exe<br />
* %SystemDrive%\WINDOWS.exe<br />
* %UserProfile%\Application Data.exe<br />
* %UserProfile%\Cookies.exe<br />
* %UserProfile%\Desktop.exe<br />
* %UserProfile%\Favorites.exe<br />
* %UserProfile%\Local Settings.exe<br />
* %UserProfile%\My Documents.exe<br />
* %UserProfile%\NetHood.exe<br />
* %UserProfile%\PrintHood.exe<br />
* %UserProfile%\Recent.exe<br />
* %UserProfile%\SendTo.exe<br />
* %UserProfile%\Start Menu.exe<br />
* %UserProfile%\Templates.exe<br />
* %Windir%\[ORIGINAL THREAT FILE NAME].exe<br />
* %Windir%\AppPatch.exe<br />
* %Windir%\Config.exe<br />
* %Windir%\Config\[ORIGINAL THREAT FILE NAME].exe<br />
* %Windir%\Config\ADMIN.exe<br />
* %Windir%\Connection Wizard.exe<br />
* %Windir%\Cursors.exe<br />
* %Windir%\Fonts.exe<br />
* %Windir%\Help.exe<br />
* %Windir%\Help\Tours.exe<br />
* %Windir%\Installer.exe<br />
* %Windir%\java.exe<br />
* %Windir%\java\classes.exe<br />
* %Windir%\java\trustlib.exe<br />
* %Windir%\Media.exe<br />
* %Windir%\Minidump.exe<br />
* %Windir%\msagent.exe<br />
* %Windir%\msagent\chars.exe<br />
* %Windir%\msagent\intl.exe<br />
* %Windir%\msapps.exe<br />
* %Windir%\msapps\msinfo.exe<br />
* %Windir%\Offline Web Pages.exe<br />
* %Windir%\Prefetch.exe<br />
* %Windir%\Provisioning.exe<br />
* %Windir%\Provisioning\Schemas.exe<br />
* %Windir%\Registration.exe<br />
* %Windir%\Registration\CRMLog.exe<br />
* %Windir%\Resources.exe<br />
* %Windir%\Resources\Themes.exe<br />
* %Windir%\system.exe<br />
* %Windir%\system32.exe<br />
* %Windir%\Tasks.exe<br />
* %Windir%\Temp.exe<br />
* %Windir%\Web.exe<br />
* %Windir%\Web\ADMIN.exe<br />
* %Windir%\Web\printers.exe<br />
* %Windir%\Web\Wallpaper.exe<br />
* %Windir%\WinSxS.exe<br />
* %Windir%\WinSxS\InstallTemp.exe<br />
* %Windir%\WinSxS\Manifests.exe<br />
* %Windir%\WinSxS\Policies.exe</p>
<p><strong>Then creates the following files:</strong></p>
<p>* %Temp%\~DF48C2.tmp<br />
* %Windir%\Tasks\02.job<br />
* %Windir%\Tasks\03.job</p>
<p><strong>The worm creates the following registry entries, so that it runs every time Windows starts:</strong></p>
<p>* HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\&#8221;[ORIGINAL THREAT FILE NAME].exe&#8221; = &#8220;%System%\[ORIGINAL THREAT FILE NAME].exe&#8221;<br />
* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\&#8221;[ORIGINAL THREAT FILE NAME].exe&#8221; = &#8220;%Windir%\[ORIGINAL THREAT FILE NAME].exe&#8221;</p>
<p><strong>It then creates the following registry entries:</strong></p>
<p>* HKEY_LOCAL_MACHINE\SYSTEM\MountedDevices\&#8221;#{8fc4ec46-5d05-11de-a71e-000bdb6eb35f}&#8221; = &#8220;[BINARY DATA]&#8221;<br />
* HKEY_LOCAL_MACHINE\SYSTEM\MountedDevices\&#8221;#{8fc4ec47-5d05-11de-a71e-000bdb6eb35f}&#8221; = &#8220;[BINARY DATA]&#8221;<br />
* HKEY_LOCAL_MACHINE\SYSTEM\MountedDevices\&#8221;#{8fc4ec48-5d05-11de-a71e-000bdb6eb35f}&#8221; = &#8220;[BINARY DATA]&#8221;</p>
<p><strong>The worm creates registry entries under the following subkeys:</strong></p>
<p>* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Account\Users\Names\A<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Account\Users\Names\B<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Account\Users\Names\E<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Account\Users\Names\S<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Builtin\Aliases\Members\S-1-5-21-329068152-343818398-1801674531\000003F1<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Builtin\Aliases\Members\S-1-5-21-329068152-343818398-1801674531\000003F2<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Builtin\Aliases\Members\S-1-5-21-329068152-343818398-1801674531\000003F3<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Builtin\Aliases\Members\S-1-5-21-329068152-343818398-1801674531\000003F4</p>
<p><strong>The worm modifies the following registry entries:</strong></p>
<p>* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Account\&#8221;F&#8221; = &#8220;[BINARY DATA]&#8221;<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Account\Groups\00000201\&#8221;C&#8221; = &#8220;[BINARY DATA]&#8221;<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Builtin\&#8221;F&#8221; = &#8220;[BINARY DATA]&#8221;<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Builtin\Aliases\00000221\&#8221;C&#8221; = &#8220;[BINARY DATA]&#8221;</p>
<p><strong>It then modifies registry entries under the following subkeys:</strong></p>
<p>* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Account\Users<br />
* HKEY_LOCAL_MACHINE\SAM\SAM\Domains\Builtin\Aliases\Members\S-1-5-21-329068152-343818398-1801674531</p>
<p><strong>Next, the worm deletes the following registry entries to disable access to the following drives:</strong></p>
<p>* HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CD Burning\Drives\Volume{8f22faf6-bfd9-11da-8b64-806d6172696f}\&#8221;Drive Type&#8221; = &#8220;3&#8243;<br />
* HKEY_LOCAL_MACHINE\SYSTEM\MountedDevices\&#8221;\DosDevices\C:&#8221; = &#8220;[BINARY DATA]&#8221;<br />
* HKEY_LOCAL_MACHINE\SYSTEM\MountedDevices\&#8221;\DosDevices\D:&#8221; = &#8220;[BINARY DATA]&#8221;<br />
* HKEY_LOCAL_MACHINE\SYSTEM\MountedDevices\&#8221;\DosDevices\E:&#8221; = &#8220;[BINARY DATA]&#8221;</p>
<p><strong>The worm then copies itself to all removable drives and all network shares as the following file:</strong><br />
%DriveLetter%\[ORIGINAL THREAT FILE NAME].exe</p>
<p><strong>The worm also creates the following files on all removable drives and network shares so that it executes whenever the drive is accessed:</strong></p>
<p>* %DriveLetter%\autorun.inf<br />
* %SystemDrive%\autorun.inf</p>
<p><strong>The worm adds additional user accounts and attempts to gain privileges by adding itself to the administrator account.</strong></p>
<h2><strong>How to remove ?</strong></h2>
<p><a title="W32.Troresba - Removal" href="http://www.symantec.com/norton/security_response/writeup.jsp?docid=2009-061920-2719-99&amp;tabid=3" target="_blank">W32.Troresba - Removal</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.remove-spyware.biz/w32troresba-worm.htm/feed</wfw:commentRss>
		</item>
		<item>
		<title>New Twitter worm spreading via fake invite emails!</title>
		<link>http://www.remove-spyware.biz/new-twitter-worm-spreading-via-fake-invite-emails.htm</link>
		<comments>http://www.remove-spyware.biz/new-twitter-worm-spreading-via-fake-invite-emails.htm#comments</comments>
		<pubDate>Fri, 19 Jun 2009 15:58:58 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Worms]]></category>

		<category><![CDATA[remove]]></category>

		<category><![CDATA[twitter]]></category>

		<category><![CDATA[W32.Ackantta.B@m]]></category>

		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://www.remove-spyware.biz/?p=55</guid>
		<description><![CDATA[ 
Symantec is warning about a mass-mailing worm that comes in an attachment pretending to be a Twitter invite.
Worm called W32.Ackantta.B@m is hidden inside invitation email which have attached .zip file with name &#8220;Invitation Card.zip&#8221;. If windows user will download, unzipp and run this file all emails will be scanned from victim computer and used [...]]]></description>
			<content:encoded><![CDATA[<!-- This is a HTML comment, it will not display in any page. Feel free to remove this comment if it cause any inconvenient to you.
	Thanks for using digg digg, please visit http://www.mkyong.com/blog/digg-digg-wordpress-plugin for any comments and ideas, 
	
    Author : Yong Mook Kim
    Website : http://www.mkyong.com
	--><div style='float:right'><table> <td><iframe src='http://digg.com/api/diggthis.php?w=new&amp;u=http://www.remove-spyware.biz/new-twitter-worm-spreading-via-fake-invite-emails.htm&amp;t=New+Twitter+worm+spreading+via+fake+invite+emails%21&amp;s=normal' height='80' width='52' frameborder='0' scrolling='no'></iframe></td></table></div><p><img alt="" src="http://www.remove-spyware.biz/wp-content/uploads/2009/06/hwb5fczibetzozkepkx.png" title="Twitter worm" class="alignleft" width="270" height="276" /><br />
Symantec is warning about a mass-mailing worm that comes in an attachment pretending to be a Twitter invite.</p>
<p>Worm called <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2009-022520-1425-99">W32.Ackantta.B@m</a> is hidden inside invitation email which have attached .zip file with name &#8220;Invitation Card.zip&#8221;. If windows user will download, unzipp and run this file all emails will be scanned from victim computer and used to spamm invitations again.</p>
<p>Also please note that worm is using email invitation@twitter.com which is fake and if you receive any invitation from Twitter which have attached files please ignore this type of emails.</p>
<p>If you think that you got infected we recommend you to download <a href="http://www.tkqlhce.com/click-3241249-10545508"><u>Spyware Doctor</u></a> which will remove this worm.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.remove-spyware.biz/new-twitter-worm-spreading-via-fake-invite-emails.htm/feed</wfw:commentRss>
		</item>
		<item>
		<title>Don’t be the next victim of credit card fraud !</title>
		<link>http://www.remove-spyware.biz/dont-be-the-next-victim-of-credit-card-fraud.htm</link>
		<comments>http://www.remove-spyware.biz/dont-be-the-next-victim-of-credit-card-fraud.htm#comments</comments>
		<pubDate>Wed, 20 May 2009 00:23:34 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Latest News]]></category>

		<category><![CDATA[card]]></category>

		<category><![CDATA[credit]]></category>

		<category><![CDATA[fraud]]></category>

		<category><![CDATA[victim]]></category>

		<guid isPermaLink="false">http://www.remove-spyware.biz/?p=49</guid>
		<description><![CDATA[ Nowadays when world is suffering from economic crisis number of credit cards fraud increased. Fraudsters using latest technologies to steal your credit card information. I will eaxplain few methods how to protect yourself from this type of fraud.
I know many of you shopping online in ebay, amazon, paypal and many more other online shops. [...]]]></description>
			<content:encoded><![CDATA[<!-- This is a HTML comment, it will not display in any page. Feel free to remove this comment if it cause any inconvenient to you.
	Thanks for using digg digg, please visit http://www.mkyong.com/blog/digg-digg-wordpress-plugin for any comments and ideas, 
	
    Author : Yong Mook Kim
    Website : http://www.mkyong.com
	--><div style='float:right'><table> <td><iframe src='http://digg.com/api/diggthis.php?w=new&amp;u=http://www.remove-spyware.biz/dont-be-the-next-victim-of-credit-card-fraud.htm&amp;t=Don%27t+be+the+next+victim+of+credit+card+fraud+%21&amp;s=normal' height='80' width='52' frameborder='0' scrolling='no'></iframe></td></table></div><p>Nowadays when world is suffering from economic crisis number of credit cards fraud increased. Fraudsters using latest technologies to steal your credit card information. I will eaxplain few methods how to protect yourself from this type of fraud.</p>
<p>I know many of you shopping online in ebay, amazon, paypal and many more other online shops. First action which require more your attention is to check website <strong>URL </strong>example you received hot offer via email from ebay.com email looks simple, also inside email you probably will see and click the link which can look similar to ebay.com everythings looks good, but then you click on this link you will be redirected to example :  http://ebay.com.hot-offer.blabla.com.</p>
<p>So as you see you are now linked to ebay scam website which look same as ebay.com just in this one you will see lot of forms which asking your credit card details and SSN number. Every time when you receive suspicious email with some offer or urgent email which will ask you to update your details never click on link better got directly to website and login and you will see if you need to update or enter anything.</p>
<p>About URL&#8217;s they can&#8217;t look like this<strong> www.ebay.com.something.com</strong> normal url all the time have to have ebay.com before &#8220;/&#8221; example<strong> ebay.com/</strong> can&#8217;t be something like this <strong>ebay.com.something.com/</strong>.</p>
<p>Next thing which you should know while shopping online that some old internet shops still don&#8217;t using merchants. Example when you make order your credit card information is encoded and saved inside shop database, but the problem is that hackers can easily hack in this databases and later decode this information and sell your credit card information to other internet criminals.  So if you not totally sure about how safe is internet shop in which you going to shop it is better to call them and ask how they charge your credit card.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.remove-spyware.biz/dont-be-the-next-victim-of-credit-card-fraud.htm/feed</wfw:commentRss>
		</item>
		<item>
		<title>What is keylogger and why they are so danger.</title>
		<link>http://www.remove-spyware.biz/what-is-keylogger-and-why-they-are-so-danger.htm</link>
		<comments>http://www.remove-spyware.biz/what-is-keylogger-and-why-they-are-so-danger.htm#comments</comments>
		<pubDate>Sat, 16 May 2009 19:29:26 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Latest News]]></category>

		<category><![CDATA[danger]]></category>

		<category><![CDATA[keylogger]]></category>

		<category><![CDATA[what]]></category>

		<guid isPermaLink="false">http://www.remove-spyware.biz/?p=44</guid>
		<description><![CDATA[ Keylogger are malicious software which have only one functions which are to log and save every your keyboard click. You can be infected by this type of software by downloading cracked files or visiting unsafe website which are exploited or hacked.
Why it is so danger ?
The main and most important fact is that if [...]]]></description>
			<content:encoded><![CDATA[<!-- This is a HTML comment, it will not display in any page. Feel free to remove this comment if it cause any inconvenient to you.
	Thanks for using digg digg, please visit http://www.mkyong.com/blog/digg-digg-wordpress-plugin for any comments and ideas, 
	
    Author : Yong Mook Kim
    Website : http://www.mkyong.com
	--><div style='float:right'><table> <td><iframe src='http://digg.com/api/diggthis.php?w=new&amp;u=http://www.remove-spyware.biz/what-is-keylogger-and-why-they-are-so-danger.htm&amp;t=What+is+keylogger+and+why+they+are+so+danger.&amp;s=normal' height='80' width='52' frameborder='0' scrolling='no'></iframe></td></table></div><p>Keylogger are malicious software which have only one functions which are to log and save every your keyboard click. You can be infected by this type of software by downloading cracked files or visiting unsafe website which are exploited or hacked.</p>
<p><strong>Why it is so danger ?</strong></p>
<p>The main and most important fact is that if hacker will get your keyboard log with example: you bank username,passwords,email password and many more you will lose all of them, also you can lose your money from your bank account. Nowadays keyloggers are most powerful private information stealing software. If you got infected all daily keyboard clicked buttons and visited website titles are saved inside files and later this files automatically are sent to hacker servers.</p>
<p><strong>How to protect from keylogger ?</strong></p>
<p>From my own experience I can say that the best protection is good firewall which will not allow to send this log files outside your computer and hacker will be not able to see what buttons you clicked on your keyboard.</p>
<p>The firewall is ZoneAlarm you can download it from here : <span style="text-decoration: underline;"><a href="http://www.kqzyfj.com/click-3241249-10584708">Download ZoneAlarm</a></span></p>
<p>Why I like this firewall is because it have easy configuration, you can manualy configure which programs allow to connect to internet, also if keylogger will try to connect to internet firewall will ask you to allow or deny this connections.</p>
<p><img class="aligncenter" src="http://enterfiles.com/images/exg0xg06nglrnoebswe.jpg" alt="" width="290" height="368" /></p>
<p>Also someone can tell you that antivirus can delete keyloggers, but one important fact is that here is lot of undetectable keyloggers which antivirus will not detect, and here in help come firewall which don&#8217;t really check if file is keylogger or no,he just ask you to allow or deny connection so if you see file like <strong>ssdx.exe</strong> trying to connect to strange ip you should deny connection.</p>
<p>So this is the main information about keyloggers and the easiest way to protect from them.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.remove-spyware.biz/what-is-keylogger-and-why-they-are-so-danger.htm/feed</wfw:commentRss>
		</item>
		<item>
		<title>What is adware ?</title>
		<link>http://www.remove-spyware.biz/what-is-adware.htm</link>
		<comments>http://www.remove-spyware.biz/what-is-adware.htm#comments</comments>
		<pubDate>Sat, 16 May 2009 18:37:02 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Adware]]></category>

		<category><![CDATA[is]]></category>

		<category><![CDATA[what]]></category>

		<guid isPermaLink="false">http://www.remove-spyware.biz/?p=36</guid>
		<description><![CDATA[ Adware this is software which will install lot of advertisement inside your computer operating system.  Is it danger ? no we can&#8217;t really say if it is danger or not, here is too much types of adware in internet some of them can be danger and other not so danger.  But the main fact [...]]]></description>
			<content:encoded><![CDATA[<!-- This is a HTML comment, it will not display in any page. Feel free to remove this comment if it cause any inconvenient to you.
	Thanks for using digg digg, please visit http://www.mkyong.com/blog/digg-digg-wordpress-plugin for any comments and ideas, 
	
    Author : Yong Mook Kim
    Website : http://www.mkyong.com
	--><div style='float:right'><table> <td><iframe src='http://digg.com/api/diggthis.php?w=new&amp;u=http://www.remove-spyware.biz/what-is-adware.htm&amp;t=What+is+adware+%3F&amp;s=normal' height='80' width='52' frameborder='0' scrolling='no'></iframe></td></table></div><p><strong>Adware</strong> this is software which will install lot of advertisement inside your computer operating system.  Is it danger ? no we can&#8217;t really say if it is danger or not, here is too much types of adware in internet some of them can be danger and other not so danger.  But the main fact is that if you see too much advertisements and pop up&#8217;s while surfing internet or on desktop this mean you possible having adware in your PC.</p>
<p><strong>What you can do now ? how to remove this advertisements from your computer ?</strong></p>
<p>This really depends on what type of adware it is. You probably can check some processes in Task manager (ctrl+alt+del) this files some times can have names example: <strong>ffggfh.exe</strong> or something like that.If you don&#8217;t have good skills with PC managment I recommend you to do a free scan with<span style="text-decoration: underline;"> <a href="http://www.tkqlhce.com/click-3241249-10545508">Spyware Doctor</a></span> which is great tool for spyware and adware detection.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.remove-spyware.biz/what-is-adware.htm/feed</wfw:commentRss>
		</item>
		<item>
		<title>What is spyware ?</title>
		<link>http://www.remove-spyware.biz/what-is-spyware.htm</link>
		<comments>http://www.remove-spyware.biz/what-is-spyware.htm#comments</comments>
		<pubDate>Sat, 16 May 2009 15:06:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Spyware]]></category>

		<category><![CDATA[is]]></category>

		<category><![CDATA[what]]></category>

		<guid isPermaLink="false">http://85.17.92.23/remove-spyware/?p=6</guid>
		<description><![CDATA[ I will try to explain what is spyware and how dangerous it is for our privacy.
There are many types of spyware, some are more dangerous other are not so dangerous for our computer and our privacy, but the main fact is that spyware is doing something wrong.
You are probably thinking how to protect from [...]]]></description>
			<content:encoded><![CDATA[<!-- This is a HTML comment, it will not display in any page. Feel free to remove this comment if it cause any inconvenient to you.
	Thanks for using digg digg, please visit http://www.mkyong.com/blog/digg-digg-wordpress-plugin for any comments and ideas, 
	
    Author : Yong Mook Kim
    Website : http://www.mkyong.com
	--><div style='float:right'><table> <td><iframe src='http://digg.com/api/diggthis.php?w=new&amp;u=http://www.remove-spyware.biz/what-is-spyware.htm&amp;t=What+is+spyware+%3F+&amp;s=normal' height='80' width='52' frameborder='0' scrolling='no'></iframe></td></table></div><p>I will try to explain what is <a href="http://en.wikipedia.org/wiki/Spyware" target="_blank">spyware</a> and how dangerous it is for our privacy.</p>
<p>There are many types of spyware, some are more dangerous other are not so dangerous for our computer and our privacy, but the main fact is that spyware is doing something wrong.<br />
You are probably thinking how to protect from spyware, worms I will explain little about this issue.</p>
<p>First thing I will explain exacly what spyware are doing inside your PC and how you getting infected by this.</p>
<p>When you surfing in internet you probably downloading many files:music,videos,some other illegal cracked software. First place where spyware are hiding is in illegal software websites where you can download some cracks for software which you don&#8217;t want pay money for, example your photoshop license has expired and you probably will look for crack,you will download crack file,run it and YES ! you will receive correct cdkey for your photoshop and this will allow you to unlock that software and use it for free. But have you ever thinking happening when you run this crack file,your computer get spyware,some other files will be included in your computer without your permission.</p>
<p>This files will run every time when you will start your PC,and now I will explain main simthoms when you are infected by spyware:</p>
<p>- PC will run much more slower.<br />
- You will see some advertisement appearing on your desktop, which will tell you what you have virus and you need to download antivirus to remove it. Some times you can see some sexual advertisements and many more other types of stupid advertisement.</p>
<p>Spyware are collecting your private data: websites which you are visiting, emails which you are using,and later this information are using for sending spamm emails.<br />
Why people are developing this type of software like spyware,adware,trojans.They are doing this because this software earn really nice profit for spyware developers, some example:<br />
When you have spyware and you see this advertisement on your desktop you probably click on them, so every time you click you  making $ for spyware developers.<br />
So this is the main facts about spyware.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.remove-spyware.biz/what-is-spyware.htm/feed</wfw:commentRss>
		</item>
	</channel>
</rss>
