spyware removal instructions

Whazit removal

Spyware Whazit Information
Name: Whazit
Category: Hijacker
Date: 2003-06-20
Dangerous: Yes
Whazit is Hijacker which is malware.
Installing it is highly not recommended.
This Hijacker is also known as:
Toolbar.
Wahzit.
whazitt.

>> Delete Whazit automatically - Download Spyware Doctor

Whazit Removal Instructions
Kill the following processes
23121downloader.exe, downloader.exe, wanobsi.exe, uninstall.exe
Unregister the following DLLs and reboot
phhuatvs.dll.
newones.dll, whattn.dll, whattt.dll in Windows\
newones.dll, outones.dll, whattn.dll, whattt.dll in Windows\system32\
newones.dll, outones.dll, whattn.dll, whattt.dll in Windows\system\
Delete these registry entries
HKEY_CLASSES_ROOT\clsid\{10955232-b671-11d7-8066-0040f6f477e4}
HKEY_CLASSES_ROOT\clsid\{267d5bd3-0dc2-4724-a196-7f4794fbb9eb}
HKEY_CLASSES_ROOT\clsid\{66f67511-2665-4c34-9e20-fac2c0954ef2}
HKEY_CLASSES_ROOT\clsid\{c9176930-9c9f-4cba-9723-0f58c3e7ced6}
HKEY_CLASSES_ROOT\clsid\{d5b72aed-e54a-11d6-b1b2-444553540000}
HKEY_CLASSES_ROOT\clsid\{d7d7004c-a763-4f8c-b0d4-55a7e017e69d}
HKEY_CLASSES_ROOT\clsid\{dcf0768d-ba7a-101a-b57a-0000c0c3ed5f}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{10955232-b671-11d7-8066-0040f6f477e4}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{267d5bd3-0dc2-4724-a196-7f4794fbb9eb}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{66f67511-2665-4c34-9e20-fac2c0954ef2}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{d5b72aed-e54a-11d6-b1b2-444553540000}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{d7d7004c-a763-4f8c-b0d4-55a7e017e69d}
HKEY_CLASSES_ROOT\typelib\{d130f0d2-bcfd-4b15-a5e7-415159ef4969}
HKEY_CLASSES_ROOT\wharederer.class1
HKEY_CURRENT_USER\software\whazit
HKEY_LOCAL_MACHINE\software\classes\clsid\{10955232-b671-11d7-8066-0040f6f477e4}
HKEY_LOCAL_MACHINE\software\classes\clsid\{267d5bd3-0dc2-4724-a196-7f4794fbb9eb}
HKEY_LOCAL_MACHINE\software\classes\clsid\{66f67511-2665-4c34-9e20-fac2c0954ef2}
HKEY_LOCAL_MACHINE\software\classes\clsid\{c9176930-9c9f-4cba-9723-0f58c3e7ced6}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d5b72aed-e54a-11d6-b1b2-444553540000}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d7d7004c-a763-4f8c-b0d4-55a7e017e69d}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{dcf0768d-ba7a-101a-b57a-0000c0c3ed5f}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{c9176930-9c9f-4cba-9723-0f58c3e7ced6}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{10955232-b671-11d7-8066-0040f6f477e4}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{267d5bd3-0dc2-4724-a196-7f4794fbb9eb}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{66f67511-2665-4c34-9e20-fac2c0954ef2}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{d5b72aed-e54a-11d6-b1b2-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{d7d7004c-a763-4f8c-b0d4-55a7e017e69d}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\redwhazit
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\whazitwhazit toolbar
HKEY_LOCAL_MACHINE\software\wms
Remove the following files
23121downloader.exe, downloader.cab.old, downloader.exe, phhuatvs.dll, uninstall.exe, wazzit.rtf.
cards.ico, kyf.dat, newones.dll, wanobsi.exe, whattn.dll, whattt.dll in Windows\
downloader.inf, download_ul.inf in Windows\downloaded program files\
newones.dll, outones.dll, whattn.dll, whattt.dll in Windows\system32\
newones.dll, outones.dll, whattn.dll, whattt.dll in Windows\system\

Bookmark Whazit page

 Previous Spyware: Remove WhatUSeek.com Next Spyware: Remove Whenu.ClockSync