Click on screenshot to zoom
Danger level 8
Type: Browser Hijackers
Common infection symptoms:
  • Connects to the internet without permission
  • Shows commercial adverts
  • Normal system programs crash immediatelly
  • Slow internet connection
  • System crashes
  • Annoying Pop-up's
  • Slow Computer

Trojan.Buzus.zvu

IEMonitTrojan.Buzus.zvu is a browser hijacker designed specifically to monitor a user’s Internet activity and redirect web searches to undesirable sites, e.g. pornographic websites, etc. IEMonitTrojan.Buzus.zvu also displays unexpected advertisements and is capable of updating itself via the Internet. One should bear in mind that IEMonitTrojan.Buzus.zvu is a search result hijacker, and that IEMonitTrojan.Buzus.zvu is implemented as an Internet Explorer Browser Helper object One can tell if a system has been infiltrated by IEMonitTrojan.Buzus.zvu, as IEMonitTrojan.Buzus.zvu will run on every Windows start-up. IEMonitTrojan.Buzus.zvu checks queries submitted to search engines for sex-related keywords (making use of various search engines, the likes of Google, Yahoo, Lycos, AltaVista, Infospace and a variety of Polish search engines are targeted as well). IEMonitTrojan.Buzus.zvu will then generate advertisements when targeted keywords are entered. IEMonit malware has the following properties: IEMonitTrojan.Buzus.zvu is likely to change browser settings, shows commercial adverts, connect itself to the internet, hides from the user, and last but not least, IEMonitTrojan.Buzus.zvu tends to stays resident in the background of the infected system. It is only beneficial to the PC which has been infiltrated for IEMonitTrojan.Buzus.zvu to be removed as soon as it has been detected.

Download Spyware Removal Tool to Remove* Trojan.Buzus.zvu
  • Quick & tested solution for Trojan.Buzus.zvu removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Trojan.Buzus.zvu

Files associated with Trojan.Buzus.zvu infection:

AntiMalware_Pro.exe
cndrive32.exe
svhost.exe
server.exe
winsys.exe
infocard.exe
svchost.exe
ea6604.exe
info.exe
msnmgr.exe
0.6405274736434774.exe
nula.exe
svchosts.exe
crack.exe
fe692f.exe
WindowsUpdate.exe
cf5f99.exe
WinUpdates.exe
smss.exe
rundll 32.exe
fc9d45.exe
9ff34d.exe
winvcs.exe
ccdrive32.exe
System.exe
avd32.exe
ld16.exe
883.exe
mshost.exe
wshost32.exe
297.exe
freddy73.exe
pp12.exe
690.exe
992.exe
535.exe
mslsrv32.exe
csrss.exe
port88.exe
vsbntlo.exe
vse432.exe
sysdiag64.exe
winlogon.exe
iexplorer7.exe
iexplorer72.exe
w7services.exe
997.exe
rundll68.exe
677.exe
servises.exe
activedsro.exe
1sass.exe
service.exe
winupdater09.exe
poste.exe
lsass.exe
csrs.exe
sysmgr.exe
Spool.exe
xS5PN9[1].exe
winamp.exe
pwrmgr.exe

Trojan.Buzus.zvu processes to kill:

AntiMalware_Pro.exe
SearchSettingsProtection.exe
cndrive32.exe
svhost.exe
server.exe
winsys.exe
infocard.exe
svchost.exe
ea6604.exe
info.exe
msnmgr.exe
0.6405274736434774.exe
nula.exe
svchosts.exe
crack.exe
fe692f.exe
WindowsUpdate.exe
cf5f99.exe
WinUpdates.exe
smss.exe
rundll 32.exe
fc9d45.exe
9ff34d.exe
winvcs.exe
ccdrive32.exe
System.exe
avd32.exe
ld16.exe
883.exe
mshost.exe
wshost32.exe
297.exe
freddy73.exe
pp12.exe
690.exe
992.exe
535.exe
mslsrv32.exe
csrss.exe
port88.exe
vsbntlo.exe
vse432.exe
sysdiag64.exe
winlogon.exe
iexplorer7.exe
iexplorer72.exe
w7services.exe
997.exe
rundll68.exe
677.exe
servises.exe
activedsro.exe
1sass.exe
service.exe
winupdater09.exe
poste.exe
lsass.exe
csrs.exe
sysmgr.exe
Spool.exe
xS5PN9[1].exe
winamp.exe
pwrmgr.exe

Remove Trojan.Buzus.zvu registry entries:

HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 12CFG214-K641-12SF-N85P
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 12CFG214-K641-24SF-N84P
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 12CFG914-K641-26SF-N32P
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Firewall auto setup
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Updates
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ RTHDBPL
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ winsys
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 3654LK7JH4K5J6G3
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Advanced DHTML Enable
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ avd32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Cerberus
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Client Server Runtime Process
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Firewall Administrating
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ firfoxe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Hotfix-KB5504305
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ IEUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lsass
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Driver Setup
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft(R) System Manager
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MicrosoftNAPC
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mshost
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MSN Messanger
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MSWUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NT Services
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NVIDIA Monitoring
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ servises
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysfbtray
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysldtray
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ UpdateUSB Data = C:\Windows\inf\UpdateUSB.exeName = HKLM
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows Network Data Management System Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows Service Host
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows Update
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WindowsUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Winupdates
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ wshost32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {82703793-E321-2941-B52C-D24AF2BE7395}
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Hotfix-KB5504305
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\IUpd704
RUNNING PROGRAM\lsass.exe
RUNNING PROGRAM\pp12.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.