Remove Infostealer.Kenzero
Posted on: November 30th, 2009
| Discovered: | November 27, 2009 |
| Updated: |
November 28, 2009 1:10:06 PM |
| Type: |
Trojan |
| Systems Affected: |
Windows 98, Windows 95, Windows XP, Windows Me, Windows Vista, Windows NT, Windows Server 2003, Windows 2000 |
| Recommended Action: | |
In order to Remove Infostealer.Kenzero you need to Download the ‘No Adware’ remover software. Based on our testing this was the best peforming remover of Infostealer.Kenzero.. Read our full No Adware Review |
|
| Technical Details: |
|
The malicious file typically arrives as an installation file for certain computer games. When the Trojan is executed, it threat takes a screenshot of desktop and saves it as the following: Then the Trojan converts the saved .bmp file to a JPEG file and saves it as the following: Next it sends the screenshot to the following FTP site: It connects to the following URLs to obtain global IP address and the host name of the infected machine: * [http://]cplayer.dreamhosters.com/getho[REMOVED] Then, it displays a form and requests the user to fill it with the following information: * first name It also steals the following information from the compromised machine: * computer name Then the Trojan sends the stolen information to the following URL: When the Trojan exits, it displays the following URL with the gathered information using default browser: |
| Action Steps: |
FREE SCAN: NoAdware can Remove Infostealer.Kenzero. Click the link below for your free download & scan your PC now.
Please click here for manual removal instructions. |
In order to Remove Infostealer.Kenzero you need to 

