Delete QuickTime_.exe and remove the Troj/MalHost-B infection.


Description:

The Troj/MalHost-Trojan pretends to be a video, but in reality is malware that changes your Windows HOSTS file that will redirect your web browser to further malicious sites. While the infection’s video is being shown on your desktop, the Trojan modifies your Windows HOSTs files to redirect popular web sites to malicious services under the malware writer’s control.  These web sites will instead attempt to infect you with further malware.

When infected, this Trojan will create the C:\Program Files\QuickTime_.exe file and then create the following registry key to start itself automatically when Windows starts:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\”Apple Inc.” = “C:\Program Files\QuickTime_.exe -atboottime”


Manual Removal Instructions for Troj/MalHost-B

End these processes if they exist:
Learn how to end processes

QuickTime_.exe


Delete these files if they exist:

Lean how to remove files

C:\Program Files\QuickTime_.exe

Remove these Registry keys if they exist:
Learn how to remove Windows Registry entries

Warning: Editing the Windows Registry incorrectly can cause problems with your computer that may cause it not to operate correctly.  Please edit the Registry only if you know what you are doing.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\”Apple Inc.”

del.icio.us:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  digg:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  spurl:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  wists:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  simpy:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  newsvine:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  blinklist:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  furl:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  reddit:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  fark:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  blogmarks:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  Y!:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  smarking:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  magnolia:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  segnalo:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.  gifttagging:Delete QuickTime_.exe and remove the Troj/MalHost-B infection.

Leave a Reply