spyware removal instructions

Lop.com removal

Spyware Lop.com Information
Name: Lop.com
Category: Spyware
Date: 2005-06-06
Coded in: Compressed with UPX.
Dangerous: Yes
Lop.com is one of Spyware spywares.
lop is a family of applications that define your start page & IE´s search features to use the site lop.com [´Live Online Portal´] or one of its clone sites. Known lop sites include: aavc.com acjp.com ebav.com ebaw.com ebch.com ebch.com ebdv.com ebdw.com ebgo.com ebjp.com ebkb.com ebkn.com ebky.com eblv.com wbkb.com ebmu.com ebvr.com ecmh.com ecmp.com ecpm.com ecwz.com ecyb.com edhq.com edty.com eduy.com eeev.com farse.com ibmx.com icwb.com icwo.com icwp.com iddh.com idhh.com ifiz.com iguu.com samz.com saoe.com sbee.com sbjr.com sbnl.com sbnt.com sbvr.com scbm.com sckr.com scrk.com sdry.com seld.com sfux.com sheat.com sipo.com smds.com srib.com srox.com srsf.com ssaw.com ssby.com surj.com tbvg.com tdak.com tdmy.com tefs.com tfil.com tjar.com tjaw.com tjgo.com tjem.com torc.com wabu.com wabq.com wfix.com wflu.com Lop also adds shortcuts to advertisers. Finally it adds a task to run on startup which sets your homepage & search back to lop if you change them. Finding it on your computer means that your computer is infected with Spyware and crucial data could be endangered or even lost.
This Spyware is also known as:
TrojanDownloader.Win32.Swizzor.ae.
Adware/Adtomi - named by Panda.
Adware/Apropos - named by Panda.
Adware/Lop - named by Panda.
Adware/nCase - named by Panda.
Adware/NetPals - named by Panda.
Adware/WinActive - named by Panda.
Adware-180Solutions - named by McAfee.
C2 edia - named by c.
after the ompany that makes it..
Dialer.AL - named by Panda.
Lop - named by a.
LopAdvert - named by McAfee.
MP3Search - named by McAfee.
MpAdvert - named by McAfee.
Spyware/Infameow - named by Panda.
Trj/Downloader.HC - named by Panda.
Trj/Downloader.HW - named by Panda.
Trj/Downloader.HX - named by Panda.
Trj/Zerolin.A - named by Panda.
Trojan.Win32.SecondThought.h - named by Kaspersky.
TrojanClicker.Win32.Rotarran (for Lop.Com.WinactiveJ) - named by a.
TrojnDownloder.Win32.Smll.bp.
TrojanDownloader.Win32.Small.bp - named by Kaspersky.
TrojanDownloader.Win32.Swizzor.au - named by Kaspersky.
TrojanDownloader.Win32.Swizzor.ba - named by Kaspersky.
TrojanDownloader.Win32.Swizzor.bm - named by Kaspersky.
TrojanDownloader.Win32.Swizzor.bn - named by Kaspersky.
TrojanDownloader.Win32.Swizzor.br - named by Kaspersky.
TrojanDownloader.Win32.Swizzor.i - named by Kaspersky.
TrojanDownloader.Win32.Swizzor.q - named by Kaspersky.
TrojanDropper.Win32.Small.fl - named by Kaspersky.
VBS.ObjectDataHTA - named by Computer Associates.
VBS.Suzer - named by Computer Associates.
VBS/Inor.gen - named by Panda.
VBS/Suzer.A!Dropper - named by Computer Associates.
Win32/Polbya.A!Trojan - named by Computer Associates.

>> Delete Lop.com automatically - Download Spyware Doctor

Lop.com Removal Instructions
Kill the following processes
1111.exe, 2443.exe, 24701.exe, activeonce.exe, afa6d429.exe, ahlrfsoy.exe, ante.exe, aswnk.exe, atiupdate2.exe, bags more bold.exe, bash second cast.exe, bendaceproc.exe, bind funk inside.exe, binsect.exe, bitsplaygrid.exe, bore2mags.exe, bytemess.exe, ckcoofrunea.exe, campglueflap.exe, cash remote.exe, corn bold media.exe, cyd1.exe, debug anti anti.exe, debugregs.exe, defy view.exe, does admin.exe, download_plugin.exe, each cdrom memo.exe, etu1.exe, femguyse.exe, film.exe, fmtah.exe, frag drv first boob.exe, freemp3z.exe, funktypebinfffccc.exe, great 1.exe, great each close.exe, greyplan.exe, heartflaw.exe, help support.exe, hope1media.exe, hoxujhed.exe, hpt1.exe, interarmy.exe, jumpnoundate.exe, keep comp.exe, keyhost.exe, kind joy bib.exe, kvgpmfiv.exe, lejytfqx.exe, liesbagslist.exe, lite cake loud.exe, lniegfer.exe, loadcashmeet.exe, logo vc.exe, longonlineplay.exe, lrgluoot.exe, mail mess.exe, mp3.exe, mp3_plugin.exe, mp3serch.exe, nxfbmzqu.exe, pile default.exe, pkajulyt.exe, plus size.exe, brsswthg.exe, ckcoofrunea.exe, ddinxmdb.exe, dgpxzhtb.exe, djgxsbcl.exe, efjwxjsl.exe, eneqckap.exe, flmgvmas.exe, fqbhyhjh.exe, gchmfrea.exe, gqlfiqii.exe, glue blue tons.exe, mediawebdownload.exe, ozrkesxz.exe, qmgytdru.exe, ruledatawma.exe, eygfyuoe.exe, rppzstyl.exe, 32437.exe, 20044.exe, 7310.exe, 1716.exe, winactive.exe, refslow.exe, removelop.exe, rgg1.exe, rpzgnwux.exe, rvimsmkf.exe, sect name.exe, sekkzgif.exe, sign support mags.exe, sizewaitgrim.exe, soft team.exe, software_plugin.exe, sta1f.exe, sta2.exe, asshuktr.exe, bilyooas.exe, byb_save.exe, crgbeaoa.exe, dmvcrthl.exe, eaymulyl.exe, eeublidc.exe, glxshmcr.exe, ijlysseb.exe, jqumysto.exe, kfriegbs.exe, llfggrdr.exe, lltckiey.exe, lopsearc.exe, meemnckyqbr.exe, meepajlr.exe, mprcouie.exe, oofrkxpe.exe, peebqusz.exe, quveioot.exe, shoucrck.exe, ssmeeibl.exe, tchpeatr.exe, tglblrll.exe, trdzhtxf.exe, trstdris.exe, ulyuiexeechp.exe, vestufck.exe, vfthrcbr.exe, xogyfhp.exe, ykphmbre.exe, ylynfste.exe, the_ultimate_browser_enhancer.exe, sxbmat.exe, rem9b.exe, remd.exe, ubipwdk.exe, tfsuxbtg.exe, time funk aim.exe, toolbar_uninstall.exe, waybait.exe, web default one.exe, winactivej.exe, winactivej_unpacked.exe, wshbrybr.exe, xlj1.exe, xxeoxiqu.exe, xyq.exe, ystck32.exe, yxogltoo.exe, settings browse.exe, skfvhmqz.exe, 64bikeabout.exe, bore active info funk.exe, bqssapdm.exe, ftulpefl.exe, funktypebin.exe, 16021.exe, bowsbleh.exe, fkrbssba.exe, ford wma dead.exe, gagmqvaf.exe, kcwarhnv.exe, pure bash.exe, qsrdfyqj.exe, fastfirst.exe, knynnyma.exe, mfcdpingwarnfast.exe, activebitsflap.exe, afniekvu.exe, cakerdrplan.exe, idle barb ball.exe, vzmhfjyb.exe, manager free.exe, 1072.exe, bold grim.exe, bzqzgkdq.exe, cjcegzut.exe, dentcurbfree.exe, drv list part corn.exe, flaw army name.exe, hojxfjdu.exe, loyftzhg.exe, curbuser.exe, 16logplayprogram.exe, bait cake part bash.exe, safesoaplicenseplay.exe, sizebuildlogo.exe, 14599.exe, 19205.exe, 24758.exe, 29923.exe, city tons.exe, clock mags inter book.exe, cmbjcmrq.exe, else iso user bows.exe, flapholdlogo.exe, inter phone pile default.exe, one cdrom type more.exe, wipekind.exe, zwsghqhs.exe, boldabout.exe, citydog.exe, more.exe, realaudio.exe, roam.exe, salrukuu.exe, delete play.exe, rulefindcamp.exe, window skip.exe, stop hope.exe, skipbase.exe, ewgcgvzk.exe, jxmiyjlq.exe, lfgaukbm.exe, media else rdr.exe, nnzmpuhm.exe, wtmtyuls.exe, media else rdr.exe, eksthzea.exe, gcvbdwdc.exe, intramemocomp.exe, jeursyec.exe, lsocnmju.exe, ocyixkfk.exe, uyibygkh.exe, zgplkbke.exe, etarwlaf.exe, gzxqpghe.exe, hlsctpay.exe, hlyvjncf.exe, idixbdmf.exe, kmigeuhh.exe, lckqdcvd.exe, objnew.exe, lkxelvrg.exe, lopsearch.exe, roam info.exe, mspuztbg.exe, muqhatod.exe, muxibdom.exe, mycvbdqu.exe, nimylprv.exe, once each.exe, ovnolxvi.exe, pbgqwhoj.exe, qhiqikdr.exe, qtufbghm.exe, qwxgxlrv.exe, junk pure.exe, puretrust.exe, loudmove.exe, vga admin.exe, sefiqovd.exe, srytuikb.exe, taecoidy.exe, trmugnsu.exe, trstlskb.exe, uljpmexe.exe, vlluafrq.exe, vygaeifz.exe, wa_inst.exe, xxdfwvli.exe, ysaebwco.exe, zaeoxdiu.exe, zdmlfhmh.exe, zvpkxxtu.exe, zvxcypnh.exe, ayw17f.exe, bae1.exe, bvj13.exe, den1.exe, fbf1.exe, hqe1.exe, now1.exe, pfn1.exe, pnt1.exe, prab.exe, pyo25.exe, qhy81.exe, rem15.exe, rem24.exe, rem25.exe, rem2ea.exe, rny1.exe, sml1.exe, sta3.exe, szwe.exe, txo1.exe, uqg1.exe, vyz1.exe, wry1.exe, znp1.exe, cam-6415[1].exe, rem18c.exe, 16537.exe, 3549.exe, bdvcnypx.exe, binidledumb.exe, jynqzshx.exe, oozeboob.exe, pazgtrve.exe, plus thunk mags.exe
Unregister the following DLLs and reboot
antedefault.dll, bike poke.dll, cast idle.dll, ckouvcrcgcea.dll, eshglkfvcr.dll, filmpeak.dll, ktbxbllyth.dll, lyzkisnf.dll, setup time.dll, software grim.dll.
drstesprpee.dll, frlyjeebtrn.dll, frlyjeebtru.dll, frsezaeaast.dll, frsezaeaav.dll, glckqksdr.dll, ieeblostqly.dll, llssalycshh.dll, nshelstpgl.dll, oostshthptrv.dll, plg_ie0.dll, prnshgrdssb.dll, zxenmgrbl.dll in Documents and Settings\UserName\application data\
rule keep.dll in Program Files\64comp~1\
barbboob.dll in Program Files\acidme~1\
store funk.dll in Program Files\active download\
store funk.dll in Program Files\active~1\
antitype.dll, hole title.dll in Program Files\armymo~1\
thatlong.dll in Program Files\elsewa~1\
deafdoes.dll in Program Files\logobi~1\
peak that.dll in Program Files\mapigr~1\
phone internet.dll in Program Files\metaac~1\
copy data.dll, dent team.dll in Program Files\oozejo~1\
aim 1.dll in Program Files\waveba~1\
acid team.dll, elsemode.dll in Program Files\wavebo~1\
great ante.dll in Program Files\wavesu~1\
curb bind.dll in Program Files\waymov~1\
info wait.dll in Program Files\wayvga~2\
unbzip2s.dll in Program Files\window active\
chksbdriya.dll, droxtrdchdoo.dll, eaeeishllblc.dll, ealymfrprwch.dll, eelykofrllfrj.dll, eelykofrllfrpr.dll, epllkeeoopr.dll, freabrlaouw.dll, gldqumssfrie.dll, heeachmstll.dll, hglllyxrxw.dll, icdrhwno.dll, meepajlr.dll, ousszidrta.dll, prnouestssstx.dll, prxzoustustgr.dll, quglwachfs.dll, sstroallhqch.dll, tblchepruprgr.dll, trstshcrscksr.dll, ukfroigl.dll, upckeetoutw.dll, veaeyglckr.dll, woafrquzn.dll, yeecrsoustoull.dll, ziebaeeoaeepr.dll in Windows\application data\
donk_bar.dll, npddeapi.dll, plg_ie0.dll, veg32.dll.dll in Windows\system32\
donk_bar.dll, plg_ie0.dll in Windows\system\
Delete these registry entries
HKEY_CLASSES_ROOT\clsid\{00000012-890e-4aac-afd9-000000000000}
HKEY_CLASSES_ROOT\clsid\{03e3d2bf-051f-5094-5068-c5ee261285bc}
HKEY_CLASSES_ROOT\clsid\{07c0d34d-11d7-43f7-832b-c6bb41726f5f}
HKEY_CLASSES_ROOT\clsid\{0d4312e2-5e4d-4a27-a9d8-043e43904277}
HKEY_CLASSES_ROOT\clsid\{139e58c9-85b4-45db-9fc9-3919813709f0}
HKEY_CLASSES_ROOT\clsid\{1502ab76-0376-4b7b-8226-d34c941072f2}
HKEY_CLASSES_ROOT\clsid\{162ab497-087d-4fb3-83ba-4f5159613796}
HKEY_CLASSES_ROOT\clsid\{189210a0-36c2-11d7-9928-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{ec28a907-37ac-4d9a-a928-ee2ba555a141}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{f689307b-c3cd-4d10-aaf2-d1f75358a5c2}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{fe289ae1-16e9-9235-420a-95ff90a194f4}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{03e3d2bf-051f-5094-5068-c5ee261285bc}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{092d8662-f5c6-41a3-be1d-14d940f6010d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{139e58c9-85b4-45db-9fc9-3919813709f0}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{162ab497-087d-4fb3-83ba-4f5159613796}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{24f13043-edfc-446c-a07c-8ed6beb9e39e}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{26dc15e7-ea6e-378b-68aa-cd224b3ad7c3}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{3247f2dc-f2a1-9d95-a072-dbb3e1690643}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{33a4af42-fc94-4873-8bc0-1da97d6edd6d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{3dcdb313-84a2-6218-64ee-1110caa46fb5}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4b8edc53-6cfd-4ee4-9504-38ce7a5bc416}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{b9c38317-4e71-4d7b-b072-3aa8dda923b3}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{c8a113e0-6da0-4f0e-bb89-9726212aaf32}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{cfadae1d-f67a-c8f7-46a6-eb20e32a92cd}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{d44b5436-b3e4-4595-b0e9-106690e70a58}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{f2a5a613-88e0-b267-ce78-aedd8db3ce45}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\products\c8d617f6f8933d11581e000540386890\webpublfiles\usage
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\blehantimapimeta
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\cam-6415[1]
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\defyactive
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\ford site
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\frckshll
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\idle heart free wipe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\iso real
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\list 4
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\loud math help cash
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\meta mail
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\mfcd boob film frag
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\move delete
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\parttickwaitjugs
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\proxycity
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\setup wipe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\start idle
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\two bags
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\twquh
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\ubipwdk
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\uqzborauqedw
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\winactive
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\window balm
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\ws2f35t
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\wstpsh
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\ybmk
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\nthlllleth
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{18fd2e3d-35df-aa65-0952-7875de70845f}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{2e1162f8-d289-359d-b1e4-0a4d9301a7d1}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{38d8beb0-8e9c-48e2-b36e-759615f9930f}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{562a6158-bcae-e53f-d40e-403ef85b70a4}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{56d59f1a-e81a-c85f-d7bb-07a6f380a834}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{84b55b37-aff7-8942-25ac-f0c5d7a32619}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{a27d4f42-3018-59ed-19ff-4c1b7a2c18fa}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{b0a11536-00dc-268e-042a-6cb617e6965e}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{e58e7c45-c426-993a-2a9f-3640a22bf60e}
HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser\{fe289ae1-16e9-9235-420a-95ff90a194f4}
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\backup
HKEY_CURRENT_USER\software\trinityayb
HKEY_CURRENT_USER\software\winactive
HKEY_CURRENT_USER\software\xsswbrwougouecr
HKEY_LOCAL_MACHINE\software\classes\clsid\{092d8662-f5c6-41a3-be1d-14d940f6010d}
HKEY_LOCAL_MACHINE\software\classes\clsid\{139e58c9-85b4-45db-9fc9-3919813709f0}
HKEY_LOCAL_MACHINE\software\classes\clsid\{162ab497-087d-4fb3-83ba-4f5159613796}
HKEY_LOCAL_MACHINE\software\classes\clsid\{289848e1-2d29-4d00-9ff1-0c09a1256662}
HKEY_LOCAL_MACHINE\software\classes\clsid\{33a4af42-fc94-4873-8bc0-1da97d6edd6d}
HKEY_LOCAL_MACHINE\software\classes\clsid\{80fddae7-d472-4e1f-8c3a-36b75a091c44}
HKEY_LOCAL_MACHINE\software\classes\clsid\{914d0f58-630a-465d-8e28-aea5158e6606}
HKEY_LOCAL_MACHINE\software\classes\clsid\{9b35a850-66ab-4c6d-8a66-136ecadcd904}
HKEY_LOCAL_MACHINE\software\classes\clsid\{b0a11536-00dc-268e-042a-6cb617e6965e}
HKEY_LOCAL_MACHINE\software\classes\clsid\{b9c38317-4e71-4d7b-b072-3aa8dda923b3}
HKEY_LOCAL_MACHINE\software\classes\clsid\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f}
HKEY_LOCAL_MACHINE\software\classes\clsid\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754}
HKEY_LOCAL_MACHINE\software\classes\clsid\{c8a113e0-6da0-4f0e-bb89-9726212aaf32}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d3119527-9be0-422c-b9fa-5143d75dfbea}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d44b5436-b3e4-4595-b0e9-106690e70a58}
HKEY_LOCAL_MACHINE\software\classes\clsid\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313}
HKEY_LOCAL_MACHINE\software\classes\clsid\{f689307b-c3cd-4d10-aaf2-d1f75358a5c2}
HKEY_LOCAL_MACHINE\software\classes\clsid\{fe289ae1-16e9-9235-420a-95ff90a194f4}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{18fd2e3d-35df-aa65-0952-7875de70845f}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{1e62ecd8-ae05-988b-f40a-369b2026409e}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{289848e1-2d29-4d00-9ff1-0c09a1256662}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{2e1162f8-d289-359d-b1e4-0a4d9301a7d1}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{562a6158-bcae-e53f-d40e-403ef85b70a4}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{56d59f1a-e81a-c85f-d7bb-07a6f380a834}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{7b49a2a5-b45f-46f3-ac60-2578477671ee}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{80fddae7-d472-4e1f-8c3a-36b75a091c44}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{84b55b37-aff7-8942-25ac-f0c5d7a32619}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{914d0f58-630a-465d-8e28-aea5158e6606}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{9b35a850-66ab-4c6d-8a66-136ecadcd904}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{a27d4f42-3018-59ed-19ff-4c1b7a2c18fa}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{b0a11536-00dc-268e-042a-6cb617e6965e}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{c4b41c0c-4e7b-37e0-7b80-ed6437c8eb2c}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{d3119527-9be0-422c-b9fa-5143d75dfbea}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{e58e7c45-c426-993a-2a9f-3640a22bf60e}
HKEY_CLASSES_ROOT\clsid\{18fd2e3d-35df-aa65-0952-7875de70845f}
HKEY_CLASSES_ROOT\clsid\{1a35419c-7394-4989-b3c5-6189eb06bd66}
HKEY_CLASSES_ROOT\clsid\{1e62ecd8-ae05-988b-f40a-369b2026409e}
HKEY_CLASSES_ROOT\clsid\{24f13043-edfc-446c-a07c-8ed6beb9e39e}
HKEY_CLASSES_ROOT\clsid\{25f1bb0d-2d8c-4dda-ad46-684719d09b7e}
HKEY_CLASSES_ROOT\clsid\{289848e1-2d29-4d00-9ff1-0c09a1256662}
HKEY_CLASSES_ROOT\clsid\{2e1162f8-d289-359d-b1e4-0a4d9301a7d1}
HKEY_CLASSES_ROOT\clsid\{3247f2dc-f2a1-9d95-a072-dbb3e1690643}
HKEY_CLASSES_ROOT\clsid\{3dcdb313-84a2-6218-64ee-1110caa46fb5}
HKEY_CLASSES_ROOT\clsid\{4b8edc53-6cfd-4ee4-9504-38ce7a5bc416}
HKEY_CLASSES_ROOT\clsid\{562a6158-bcae-e53f-d40e-403ef85b70a4}
HKEY_CLASSES_ROOT\clsid\{56d59f1a-e81a-c85f-d7bb-07a6f380a834}
HKEY_CLASSES_ROOT\clsid\{7b49a2a5-b45f-46f3-ac60-2578477671ee}
HKEY_CLASSES_ROOT\clsid\{80fddae7-d472-4e1f-8c3a-36b75a091c44}
HKEY_CLASSES_ROOT\clsid\{84b55b37-aff7-8942-25ac-f0c5d7a32619}
HKEY_CLASSES_ROOT\clsid\{8522f9b3-38c5-4aa4-ae40-7401f1bbc851}
HKEY_CLASSES_ROOT\clsid\{8f1a15a7-92b0-4467-ad12-369f60174008}
HKEY_CLASSES_ROOT\clsid\{914d0f58-630a-465d-8e28-aea5158e6606}
HKEY_CLASSES_ROOT\clsid\{9b35a850-66ab-4c6d-8a66-136ecadcd904}
HKEY_CLASSES_ROOT\clsid\{a27d4f42-3018-59ed-19ff-4c1b7a2c18fa}
HKEY_CLASSES_ROOT\clsid\{b0a11536-00dc-268e-042a-6cb617e6965e}
HKEY_CLASSES_ROOT\clsid\{b9c38317-4e71-4d7b-b072-3aa8dda923b3}
HKEY_CLASSES_ROOT\clsid\{bcd5534b-2f54-428e-b3f3-e03b6f10a233}
HKEY_CLASSES_ROOT\clsid\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f}
HKEY_CLASSES_ROOT\clsid\{c4b41c0c-4e7b-37e0-7b80-ed6437c8eb2c}
HKEY_CLASSES_ROOT\clsid\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754}
HKEY_CLASSES_ROOT\clsid\{c61c874f-60bb-4ee7-8afa-92dc85b180c9}
HKEY_CLASSES_ROOT\clsid\{c65cad7f-e382-4b90-95c6-89123d0aee61}
HKEY_CLASSES_ROOT\clsid\{cfadae1d-f67a-c8f7-46a6-eb20e32a92cd}
HKEY_CLASSES_ROOT\clsid\{d1d9e2f6-c179-4386-b197-c4a85c026f67}
HKEY_CLASSES_ROOT\clsid\{d3119527-9be0-422c-b9fa-5143d75dfbea}
HKEY_CLASSES_ROOT\clsid\{d31e488c-9ed3-4fb0-8f82-f1d559553c06}
HKEY_CLASSES_ROOT\clsid\{d44b5436-b3e4-4595-b0e9-106690e70a58}
HKEY_CLASSES_ROOT\clsid\{e58e7c45-c426-993a-2a9f-3640a22bf60e}
HKEY_CLASSES_ROOT\clsid\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313}
HKEY_CLASSES_ROOT\clsid\{eb9bdd24-ccf1-4a87-98c0-579dba9bda83}
HKEY_CLASSES_ROOT\clsid\{ec28a907-37ac-4d9a-a928-ee2ba555a141}
HKEY_CLASSES_ROOT\clsid\{f2a5a613-88e0-b267-ce78-aedd8db3ce45}
HKEY_CLASSES_ROOT\clsid\{fe289ae1-16e9-9235-420a-95ff90a194f4}
HKEY_CLASSES_ROOT\clsid\{fe54e96b-f246-4ed7-97a2-e27086ce5b21}
HKEY_CLASSES_ROOT\coal.insidechic
HKEY_CLASSES_ROOT\dybvi.rngrstrm
HKEY_CLASSES_ROOT\invisiblepop.invisible
HKEY_CLASSES_ROOT\pop.phonebird
HKEY_CLASSES_ROOT\proto.handler
HKEY_CLASSES_ROOT\protocols\handler\ayb
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{d44b5436-b3e4-4595-b0e9-106690e70a58}
HKEY_CLASSES_ROOT\swish.browserhelper
HKEY_CLASSES_ROOT\swish.toolband
HKEY_CLASSES_ROOT\typelib\{1a35419c-7394-4989-b3c5-6189eb06bd66}
HKEY_CLASSES_ROOT\typelib\{8f1a15a7-92b0-4467-ad12-369f60174008}
HKEY_CLASSES_ROOT\typelib\{c65cad7f-e382-4b90-95c6-89123d0aee61}
HKEY_CLASSES_ROOT\typelib\{d31e488c-9ed3-4fb0-8f82-f1d559553c06}
HKEY_CLASSES_ROOT\typelib\{dffe1ccf-e1e8-4470-9962-73277cc2c898}
HKEY_CLASSES_ROOT\typelib\{fe54e96b-f246-4ed7-97a2-e27086ce5b21}
HKEY_CLASSES_ROOT\udhiu.rngrstrjyvscd
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\pprwazmprss
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\shubryochuss
Remove the following files
1111.exe, 2443.exe, 24701.exe, 2dimensionofexploits.asm, 2dimensionofexploitsenc.hta, 2dimensionofexploitsenc.php, 455ba634cc, activeonce.exe, afa6d429.exe, agreement-.htm, ahlrfsoy.exe, ante.exe, antedefault.dll, aswnk.exe, aswwxs.reg, atiupdate2.exe, backup.reg, bags more bold.exe, bash second cast.exe, bendaceproc.exe, bike poke.dll, bind funk inside.exe, binsect.exe, bitsplaygrid.exe, bore2mags.exe, bytemess.exe, campglueflap.exe, cash remote.exe, cast idle.dll, ckouvcrcgcea.dll, corn bold media.exe, cyd1.exe, debug anti anti.exe, debugregs.exe, defy view.exe, does admin.exe, download_plugin.exe, each cdrom memo.exe, eshglkfvcr.dll, etu1.exe, exploit1.htm, femguyse.exe, film.exe, filmpeak.dll, fmtah.exe, frag drv first boob.exe, freemp3z.exe, fullscreenbar.htm, funktypebinfffccc.exe, glzchtb.lib, great 1.exe, great each close.exe, greyplan.exe, header (1).htm, header (2).htm, header (3).htm, header.htm, heart setup inside.bin, heartflaw.exe, help support.exe, hope1media.exe, hoxujhed.exe, hpt1.exe, install.htm, install.txt, installation report download_plugin.htm, interarmy.exe, jumpnoundate.exe, keep comp.exe, keyhost.exe, khzc256.tmp, kind joy bib.exe, ktbxbllyth.dll, kvgpmfiv.exe, lejytfqx.exe, liesbagslist.exe, links.txt, lite cake loud.exe, lniegfer.exe, loadcashmeet.exe, logo vc.exe, longonlineplay.exe, lop notes.txt, lrgluoot.exe, lyzkisnf.dll, mail mess.exe, mp3.exe, mp3serch.exe, mp3_plugin.exe, nxfbmzqu.exe, onlinecontent.lnk, passthrough[1].htm, pile default.exe, pkajulyt.exe, plus size.exe, popupbaropener[1].htm, refslow.exe, removelop.exe, rgg1.exe, rpzgnwux.exe, rvimsmkf.exe, sect name.exe, sekkzgif.exe, setup time.dll, sfx71e4.tmp, sfxbe.tmp, sign support mags.exe, sizewaitgrim.exe, soft team.exe, software grim.dll, software_plugin.exe, ssaxstxoaieoagrh.reg, sta1f.exe, sta2.exe, tchstlmmdrm.htm, tfsuxbtg.exe, time funk aim.exe, toolbar_uninstall.exe, twunk001.mtx, ulyfchcrcrdcr.htm, waybait.exe, web default one.exe, winactivej.exe, winactivej_unpacked.exe, wshbrybr.exe, xlj1.exe, xxeoxiqu.exe, xyq.exe, ystck32.exe, yxogltoo.exe.
ckcoofrunea.exe in c:\docume~1\yapü@w~1\applic~1\
adult.lnk, gambling and online casinos.lnk, mp3 music search.lnk, news and sports.lnk, online movies.lnk in Desktop\
aybgwarn.htm, aybwarn.htm, brsswthg.exe, chblgrstd.lib, ckcoofrunea.exe, ddinxmdb.exe, deskicon.lib, dgpxzhtb.exe, djgxsbcl.exe, drstesprpee.dll, efjwxjsl.exe, eneqckap.exe, flmgvmas.exe, fqbhyhjh.exe, frlyjeebtrn.dll, frlyjeebtru.dll, frsezaeaast.dll, frsezaeaav.dll, gchmfrea.exe, glckqksdr.dll, gqlfiqii.exe, gzxqpghe.exe, hlsctpay.exe, hlyvjncf.exe, idixbdmf.exe, ieeblostqly.dll, kmigeuhh.exe, lckqdcvd.exe, lkxelvrg.exe, llssalycshh.dll, lopsearch.exe, mspuztbg.exe, muqhatod.exe, muxibdom.exe, mycvbdqu.exe, nimylprv.exe, nshelstpgl.dll, oostshthptrv.dll, ovnolxvi.exe, pbgqwhoj.exe, plg_ie0.dll, prnshgrdssb.dll, qhiqikdr.exe, qtufbghm.exe, qwxgxlrv.exe, sefiqovd.exe, srytuikb.exe, taecoidy.exe, trmugnsu.exe, trstlskb.exe, uljpmexe.exe, vlluafrq.exe, vygaeifz.exe, wa_inst.exe, xxdfwvli.exe, ysaebwco.exe, zaeoxdiu.exe, zdmlfhmh.exe, zvpkxxtu.exe, zvxcypnh.exe, zxenmgrbl.dll in Documents and Settings\UserName\application data\
objnew.exe in Documents and Settings\UserName\application data\list cool loud math\
roam info.exe in Documents and Settings\UserName\application data\memo01idleheart\
once each.exe in Documents and Settings\UserName\application data\one bolt bleh anti\
junk pure.exe, puretrust.exe in Documents and Settings\UserName\application data\roam surf part tick\
loudmove.exe, vga admin.exe in Documents and Settings\UserName\application data\save third mfcd boob\
cam-6415[1].exe in Documents and Settings\UserName\local settings\temporary internet files\content.ie5\s9grsz83\
ayw17f.exe, bae1.exe, bvj13.exe, den1.exe, fbf1.exe, hqe1.exe, now1.exe, pfn1.exe, pnt1.exe, prab.exe, pyo25.exe, qhy81.exe, rem15.exe, rem24.exe, rem25.exe, rem2ea.exe, rny1.exe, sml1.exe, sta3.exe, szwe.exe, txo1.exe, uqg1.exe, vyz1.exe, wry1.exe, znp1.exe in Documents and Settings\UserName\local settings\temp\
rem18c.exe in Documents and Settings\UserName\owner\local settings\temp\
adult entertainment.url, gambling.url, games.url, mp3 music.url, news.url in Favorites\
adult chat.url, amateur photo.url, asian sex.url, ebony.url, fetish.url, gay and lesbian.url, hardcore.url, live video feeds.url, matchmaking.url, xxx cartoons.url in Favorites\ adult\
b to b.url, banking.url, business.url, careers.url, credit cards.url, finance.url, insurance.url, office.url, printing.url in Favorites\ business and finance\
computer games.url, computer stores.url, dedicated server.url, domain names.url, hardware.url, laptops.url, software.url, web design.url, web hosting.url in Favorites\ computers and tech\
mobile phones.url, telecommunication.url, telephone.url, text sms messaging.url in Favorites\ computers and tech\telecommunication\
auction.url, classifieds.url, free emails.url, free homepages.url, free services.url, school essays and homework.url, services.url in Favorites\ cool stuff\
adult entertainment.url, automotive.url, dvd.url, entertainment.url, hot games and gaming.url, mp3.url, travel.url in Favorites\ entertainment\
black jack.url, chips.url, craps.url, multi player.url, online casinos.url, poker.url, roulette.url, slots.url, sports books.url in Favorites\ gambling\
art.url, astrology.url, books.url, community.url, ebooks.url, kids.url, magazines.url, matchmaking.url, pets.url, self help.url, wine.url, women.url in Favorites\ on lifestyle\
education.url, training.url in Favorites\ on lifestyle\education\
beauty.url, health and fitness.url, pharmacy.url in Favorites\ on lifestyle\health and beauty\
construction.url, furniture.url, home and garden.url, real estate.url, utilities.url in Favorites\ on lifestyle\home and garden\
accessories.url, apparel.url, cards.url, electronics.url, flowers.url, gifts.url, jewlery.url, retail products.url, shoes.url, shopping.url, toys.url in Favorites\ shopping and gifts\
games.url in Favorites\entertainment\
rule keep.dll in Program Files\64comp~1\
barbboob.dll, chin mfcd.bin in Program Files\acidme~1\
16537.exe, store funk.dll in Program Files\active download\
store funk.dll in Program Files\active~1\
3549.exe, antitype.dll, hole title.dll, longpuresoft.bin in Program Files\armymo~1\
bdvcnypx.exe in Program Files\burn media meta\
binidledumb.exe in Program Files\cityai~1\
jynqzshx.exe, oozeboob.exe, pazgtrve.exe, plus thunk mags.exe, settings browse.exe, skfvhmqz.exe in Program Files\creati~1\
64bikeabout.exe in Program Files\driveh~1\
bore active info funk.exe, bqssapdm.exe, ftulpefl.exe, funktypebin.exe in Program Files\dvdfindload\
16021.exe, thatlong.dll in Program Files\elsewa~1\
bowsbleh.exe, fkrbssba.exe, ford wma dead.exe, gagmqvaf.exe, kcwarhnv.exe, pure bash.exe, qsrdfyqj.exe in Program Files\fourat~1\
fastfirst.exe, knynnyma.exe in Program Files\freein~1\
mfcdpingwarnfast.exe in Program Files\global~1\
activebitsflap.exe, afniekvu.exe, cakerdrplan.exe, idle barb ball.exe, vzmhfjyb.exe in Program Files\greato~1\
manager free.exe in Program Files\inside~1\
pile inter grim.bin in Program Files\jugsse~1\
deafdoes.dll in Program Files\logobi~1\
1072.exe in Program Files\manager ace gram\
acid slow.bin, peak that.dll in Program Files\mapigr~1\
bold grim.exe in Program Files\mathte~1\
bzqzgkdq.exe, cjcegzut.exe, dentcurbfree.exe, drv list part corn.exe, flaw army name.exe, hojxfjdu.exe, loyftzhg.exe in Program Files\memoli~1\
phone internet.dll in Program Files\metaac~1\
curbuser.exe in Program Files\nounbe~1\
16logplayprogram.exe, bait cake part bash.exe, safesoaplicenseplay.exe in Program Files\objcdrom\
sizebuildlogo.exe in Program Files\objels~1\
14599.exe, 19205.exe, 24758.exe, 29923.exe, copy data.dll, dent team.dll in Program Files\oozejo~1\
city tons.exe, clock mags inter book.exe, cmbjcmrq.exe, else iso user bows.exe, flapholdlogo.exe, inter phone pile default.exe, one cdrom type more.exe, wipekind.exe, zwsghqhs.exe in Program Files\progra~1\
boldabout.exe, citydog.exe, more.exe, realaudio.exe, roam.exe, salrukuu.exe in Program Files\proxyn~1\
delete play.exe in Program Files\roamju~1\
rulefindcamp.exe, window skip.exe in Program Files\roamse~1\
stop hope.exe in Program Files\safeba~1\
skipbase.exe in Program Files\sectmp~1\
media else rdr.exe in Program Files\showsupport\
ewgcgvzk.exe, jxmiyjlq.exe, lfgaukbm.exe, media else rdr.exe, nnzmpuhm.exe, wtmtyuls.exe in Program Files\showsu~1\
eksthzea.exe, gcvbdwdc.exe, intramemocomp.exe, jeursyec.exe, lsocnmju.exe, ocyixkfk.exe, uyibygkh.exe, zgplkbke.exe in Program Files\sitein~1\
etarwlaf.exe, glue blue tons.exe, mediawebdownload.exe, ozrkesxz.exe, qmgytdru.exe, ruledatawma.exe in Program Files\thirda~1\
eygfyuoe.exe, rppzstyl.exe in Program Files\trayokay\
32437.exe, aim 1.dll in Program Files\waveba~1\
20044.exe, 7310.exe, acid team.dll, elsemode.dll in Program Files\wavebo~1\
1716.exe, great ante.dll, moreamok.bin in Program Files\wavesu~1\
acid stop.bin, curb bind.dll in Program Files\waymov~1\
info wait.dll in Program Files\wayvga~2\
unbzip2s.dll, winactive.exe in Program Files\window active\
b_dnserr.gif, desktop.htm, dnserror.htm, i_dnserr.gif, jexpoofro.htm, r_dnserr.gif, s_dnserr.gif, ubipwdk.exe in Windows\
asshuktr.exe, aybgwarn.htm, aybwarn.htm, bilyooas.exe, byb_save.exe, chksbdriya.dll, crgbeaoa.exe, dmvcrthl.exe, droxtrdchdoo.dll, eaeeishllblc.dll, ealymfrprwch.dll, eaymulyl.exe, eelykofrllfrj.dll, eelykofrllfrpr.dll, eeublidc.exe, epllkeeoopr.dll, freabrlaouw.dll, gldqumssfrie.dll, glxshmcr.exe, heeachmstll.dll, hglllyxrxw.dll, icdrhwno.dll, ijlysseb.exe, jqumysto.exe, kfriegbs.exe, llfggrdr.exe, lltckiey.exe, lopsearc.exe, meemnckyqbr.exe, meepajlr.dll, meepajlr.exe, mprcouie.exe, oofrkxpe.exe, ousszidrta.dll, peebqusz.exe, prnouestssstx.dll, prxzoustustgr.dll, quglwachfs.dll, quveioot.exe, shoucrck.exe, ssmeeibl.exe, sstroallhqch.dll, tblchepruprgr.dll, tchpeatr.exe, tglblrll.exe, trdzhtxf.exe, trstdris.exe, trstshcrscksr.dll, ukfroigl.dll, ulyuiexeechp.exe, upckeetoutw.dll, veaeyglckr.dll, vestufck.exe, vfthrcbr.exe, woafrquzn.dll, xogyfhp.exe, yeecrsoustoull.dll, ykphmbre.exe, ylynfste.exe, ziebaeeoaeepr.dll in Windows\application data\
the_ultimate_browser_enhancer.exe in Windows\downloaded program files\
donk_bar.dll, npddeapi.dll, plg_ie0.dll, sxbmat.exe, veg32.dll.dll in Windows\system32\
donk_bar.dll, plg_ie0.dll in Windows\system\
rem9b.exe, remd.exe in Windows\temp\
desktop.htm, desktop.swf in Windows\web\wallpaper\
Remove the following directories
Favorites\ shopping and gifts
Documents and Settings\UserName\local settings\temp\delete.me
Program Files\dvdfindload
Program Files\elsewa~1
Program Files\logobi~1
Program Files\proxyn~1
Program Files\roamju~1
Program Files\showsu~1
Program Files\showsupport
Program Files\sitein~1
Program Files\waveba~1
Program Files\wavesu~1
Program Files\waymov~1
Program Files\wayvga~2
Program Files\window active

Bookmark Lop.com page

 Previous Spyware: Remove Lop Next Spyware: Remove Lop.com.WinActive