Click on screenshot to zoom
Danger level 9
Type: Trojans
Common infection symptoms:
  • Annoying Pop-up's
  • Connects to the internet without permission
  • Installs itself without permissions
  • Shows commercial adverts
  • Slow Computer
  • Slow internet connection
Other mutations known as:

Trojan-PSW.VBS.Half

Trojan-PSW.VBS.Half is actually fake and part of a false warning message which has been made so that you can have your money stolen. You need to know that although Trojan-PSW.VBS.Half may sound real and look real, it is actually just a warning message which has been created and is entirely fake. The truth is that Trojan-PSW.VBS.Half is generated by the rogue antispyware application which is known as My Security Shield. You need to know that if you see Trojan-PSW.VBS.Half in a warning message, then this is a sign that your computer is infected with My Security Shield.

Beware of the warning message that reads:
\"Warning! Virus detected
Threat Detected: Trojan-PSW.VBS.Half
Description: This is a VBScript-virus. It steals user\'s passwords.\"

Once again let it be stated that this is false and is not to be trusted. The best option would be for you to remove My Security Shield with the use of a good and reliable antispyware removal tool. The thing is that the moment My Security Shield has been properly detected and deleted off your machine, then automatically the warning message with Trojan-PSW.VBS.Half will also be deleted.

Download Spyware Removal Tool to Remove* Trojan-PSW.VBS.Half
  • Quick & tested solution for Trojan-PSW.VBS.Half removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Trojan-PSW.VBS.Half

Files associated with Trojan-PSW.VBS.Half infection:

msmxjchn.dll
vshost.exe
nodlogin.exe
wm1dap.dll
yxcsbhlp.dll
tavo1.dll
ltsolvrz.dll
dzmydf.dll
WinSoft3.DLL
533931MM.DLL
WebPaper.exe
csrns.exe
msuqddft.dll
msejfzrl.dll
WINSvr64.exe
ctfmon.exe
sichost.exe
jsdb.dll
10417sys.dll
08223b03.dll
122b901e.dll
2ef0d734.dll
49400W.exe
49400M.exe
533931M.exe
338448L.exe
55551.dll
7F1C46C1BD7F.dll
fgjk4wvb.dll
326xxx.dll
03518usc.dll
kavo.exe
kavo1.dll
msosfmsq00.dll
amvo.exe
winsvr32.exe
4138kou.dll
3272xxx.dll
msosdrop00.dll
mfchlp64.exe
tciocp64.exe
ttFKKFKK1065.dll
msosjtio00.dll
zywmdime.dll
yuiabct.exe
wintunpce.exe
dat5.tmp
svchosts.exe
wyrsdj.dll
fjyjy.dll
iexplorer.exe
kavo0.dll
yebaep.dll
fsrgeb.dll
winlogun.exe
tdfhex.dll
jfdses.dll
sgdewg.dll
dndsaf.dll
zgxfdx.dll
wzcfsw.dll
zAPWgSjGrSpdsE4.fon
liser.dll
pcidisk.sys
RhdwE8NYdbqQ.dll
fmsjhif.dll
yuiabct.dll
iexplore.exe
msasvc.exe
ZCfgSvc.exe
Slave.exe
gina_x86.dll
helper.dll
otrewe1.dll
mkfght0.dll
rttrwq.exe
cvsdfw.exe
z9gNwvuVDpyQqHSu.fon
isadisk.sys
antit.dll
hyrteas0.dll
load[2].exe
1[1].exe
WowInitcode.dll
mf[1].exe

Trojan-PSW.VBS.Half DLL's to remove:

WinSoft3.DLL
533931MM.DLL
msmxjchn.dll
wm1dap.dll
yxcsbhlp.dll
tavo1.dll
ltsolvrz.dll
dzmydf.dll
msuqddft.dll
msejfzrl.dll
jsdb.dll
10417sys.dll
08223b03.dll
122b901e.dll
2ef0d734.dll
55551.dll
7F1C46C1BD7F.dll
fgjk4wvb.dll
326xxx.dll
03518usc.dll
kavo1.dll
msosfmsq00.dll
4138kou.dll
3272xxx.dll
msosdrop00.dll
ttFKKFKK1065.dll
msosjtio00.dll
zywmdime.dll
wyrsdj.dll
fjyjy.dll
kavo0.dll
yebaep.dll
fsrgeb.dll
tdfhex.dll
jfdses.dll
sgdewg.dll
dndsaf.dll
zgxfdx.dll
wzcfsw.dll
liser.dll
RhdwE8NYdbqQ.dll
fmsjhif.dll
yuiabct.dll
gina_x86.dll
helper.dll
otrewe1.dll
mkfght0.dll
antit.dll
hyrteas0.dll
WowInitcode.dll

Trojan-PSW.VBS.Half processes to kill:

SearchSettingsProtection.exe
vshost.exe
nodlogin.exe
WebPaper.exe
csrns.exe
WINSvr64.exe
ctfmon.exe
sichost.exe
49400W.exe
49400M.exe
533931M.exe
338448L.exe
kavo.exe
amvo.exe
winsvr32.exe
mfchlp64.exe
tciocp64.exe
yuiabct.exe
wintunpce.exe
svchosts.exe
iexplorer.exe
winlogun.exe
iexplore.exe
msasvc.exe
ZCfgSvc.exe
Slave.exe
rttrwq.exe
cvsdfw.exe
load[2].exe
1[1].exe
mf[1].exe

Remove Trojan-PSW.VBS.Half registry entries:

HKEY_CURRENT_USERSOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN ttool
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ amva
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ anhtaas
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ertyuop
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Explorer
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ kava
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN SysCom
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINDOWS\APPINIT_DLLS\ AppInit_DLLs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00D13CE9-1879-41bd-B8A3-EA3CB1BD01BC}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Fyj
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ HKLM
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ jsg8jfgfdfhfhf
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mfchlp64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Subsystem Monitor
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ systeminfors
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ tciocp64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WINSvr64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WinSysM
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WinSysW
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ yuiabct
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\isadisk
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Microsoft authenticate service
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pcidisk
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RA Server
RUNNING PROGRAM\Explorer.EXE
RUNNING PROGRAM\winlogon.exe
RUNNING PROGRAM\wintunpce.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.