spyware removal instructions

TightVNC removal

Spyware TightVNC Information
Name: TightVNC
Category: Commercial RAT
Coded in: C++
Dangerous: Yes
TightVNC is a commercial package of remote administration. Tight VNC allows to remotely control an NT based system. It is done through the VNC viewer application. Technically it is not malware, because it is very helpful in distance learning and customer support. However if you have not allowed anybody to take over the control of your computer, but somebody did that, technically what you have is a trojan infected your system.
>> Delete TightVNC automatically - Download Spyware Doctor

TightVNC Removal Instructions
Kill the following processes
hcidump.exe, unins000.exe, vncviewer.exe, winvnc.exe, tightvnc-1.2.3-setup.exe, tightvnc-1.2.4-setup.exe, tightvnc-1.2.5-setup.exe, tightvnc-1.2.6-setup.exe
Unregister the following DLLs and reboot
cpqagent.dll, cpqaolan.dll, cpqci.dll, cpqdmiev.dll, cpqdmsc.dll, cpqdmun.dll, cpqevnt.dll, cpqhci.dll, cpqinit.dll, cpqisa.dll, cpqvid.dll, dmiagent.dll.
vnchooks.dll in Program Files\tightvnc\
Delete these registry entries
HKEY_CURRENT_USER\software\orl
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\winvnc
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\tightvnc_is1
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\winvnc
Remove the following files
building-bcc32.txt, building.txt, changelog-java.html, changelog-unix.html, changelog-win32.html, changelog.txt, compare.html, cpqagent.dll, cpqaolan.dll, cpqci.dll, cpqdmiev.dll, cpqdmsc.dll, cpqdmun.dll, cpqevnt.dll, cpqhci.dll, cpqinit.dll, cpqisa.dll, cpqvid.dll, dmiagent.dll, docs.html, download.html, hcidump.exe, index.html, java-changelog.txt, md5sums.txt, newviewer.html, readme.txt, statements.html, tightvnc-1.2.3-setup.exe, tightvnc-1.2.4-setup.exe, tightvnc-1.2.5-setup.exe, tightvnc-1.2.6-setup.exe, vncconnect.1.html, vnchooks_settings.reg, vncpasswd.1.html, vncserver.1.html, vncviewer.1.html, whatsnew-devel.html, whatsnew.html, whatsnew.txt, win32-changelog.txt, winst.html, xvnc.1.html.
tightvnc.url, unins000.exe, vnchooks.dll, vncviewer.exe, winvnc.exe in Program Files\tightvnc\
Remove the following directories
Program Files\Common Files\tightvnc
Program Files\tightvnc

Bookmark TightVNC page

Visitor Comments on TightVNC
2006-07-28 10:01:04, Guest:
Umm, TightVNC is not commerical, it is an open source project. No companies are involved.

The definition of trojan is: In the context of computer software, a bugger Trojan horse is a malicious program that is disguised as or embedded within legitimate software. They may look useful or interesting (or at the very least harmless) to an unsuspecting user, but are actually harmful when executed.

TightVNC is not harmful when executed. It could be used inappropriately for harmful things, but that is not the design nor intent of the software.

This page is a bit too alarmist...
2007-01-12 08:48:12, Guest:
someone installed tightvnc on my computer through yahoo. and for some reason my computer will not allow me to to access my registry to delete the files associated with tightvnc. PLEASE HELP!!!
2007-01-14 09:10:02, Me@metoo,com:
"someone installed tightvnc on my computer through yahoo." and you really let that happen? And you were logged on with an Administrator account? Incredible! In that way you asked for it! Start to learn the registry and find out what this Yahoo Evil Knievel did and most of all: Create a restricted account and use that for "every day purposes". Especially on the internet...
You might of course try a system restore point but most probably that's switched off and wiped by your friendly helper.
2007-06-05 00:11:02, Guest:
At least the description here is better than other commerical tools like remote anything where no mention of it's legitimate use is mentioned!
2007-08-12 15:45:52, RageOfLife:
I am a hacker myself..and you don't have to LET something happen like that for it to happen...there are many port and hook exploits for yahoo messenger alone that are not unlike the old netbus exploit for IRC. are you actually gullable enough to think that people LET hackers in? I can run a DDOS or BO attack on you and you'd never know I was there...you'd just smell a funny smell from the back of your computer and that would be it if I intended you harm. The fact of the matter is that the roads to hell are paved with the best of intentions and don't EVER think that this program was intended only for good...this is just a loophole to keep them from getting into legal trouble due to malicious actions taken with their malware. I personally consider it a script kiddie move and very undesirable amongst my peers as well. We laugh at those people that have to use things like this because they are control freaks or just nosy...we then show them what a real hacker or cracker is capable of
2007-08-12 15:49:24, RageOfLife:
and one more thing..this software IS commercial being it is known to be used to sell advertising lists as well as phishing lists to spyware and malware distributing advertisors...and the lists are SOLD...being they are direct reports and belonging TO tightvnc that makes it commercial based regardless of it being open source
 Previous Spyware: Remove Tiger!Tiger Next Spyware: Remove Tigre.1795