How to remove Email-Worm.JS.Gigger infection

Malware Description:
Email-Worm.JS.Gigger is an infection which is being presently used for malware distribution purposes. Now, allow us to explain this in more detail. The hazardous fake antispyware known as PC Antispyware 2010 has been implementing a new promotion stage – this time, though a series of new fake notification pop-ups that appear to report the exposure of dangerous malware. Email-Worm.JS.Gigger is a figurant of one of such bogus threat detection report issued by PC Antispyware 2010 rogueware to scare the victim. As you can see from the snapshot of such alert below, Trojan-Spy.Win32.Zbot.gen is stated to be inside the compromised computer and is described as a hazardous worm that “replicates using Outlook, Outlook Express and mIRC”. In addition, the fake notification claims Email-Worm.JS.Gigger to be capable of formatting your hard disk after reboot, which means you may lose all your files in the long run. If you click on that pop-up, you will get redirected to a web page that offers purchasing PC Antispyware 2010 “lifetime license” for a fairly big price, i.e. $89.95. Please, keep yourself from believing PC Antispyware 2010 deceptive ads. Consider Email-Worm.JS.Gigger to be just an element of the dirty games played by rogueware, not as a worm proper (though, Email-Worm.JS.Gigger does exist as a standalone parasite). Please, remove PC Antispyware unregistered version to prevent Email-Worm.JS.Gigger fake alerts from popping up.

Malware Type: Worms

Malware Author: Unknown

Threat Level: High

Advice: Immediately remove

Email-Worm.JS.Gigger Free Scanner and Remover: Download Now

Email-Worm.JS.Gigger Related Alert Screenshot:

Email-Worm.JS.Gigger Related Alert

How to remove Email-Worm.JS.Gigger worm and the associated rogueware manually:
Manual removal of Email-Worm.JS.Gigger and related rogue is feasible if you have sufficient expertise in working with program files, system processes, .dll files and registry entries.

The files to be deleted are listed below:

  • %Program Files%\Common Files\aqamodero.dat
  • %Program Files%\Common Files\hubeweqa.lib
  • %Program Files%\Common Files\jatikysup._dl
  • %Program Files%\Common Files\ofyxodaqa.dat
  • %Program Files%\Common Files\sahaso.bat
  • %Program Files%\Common Files\zotys.bin
  • %Program Files%\PC_Antispyware2010
  • %Program Files%\PC_Antispyware2010\AVEngn.dll
  • %Program Files%\PC_Antispyware2010\htmlayout.dll
  • %Program Files%\PC_Antispyware2010\PC_Antispyware2010.cfg
  • %Program Files%\PC_Antispyware2010\PC_Antispyware2010.exe
  • %Program Files%\PC_Antispyware2010\pthreadVC2.dll
  • %Program Files%\PC_Antispyware2010\Uninstall.exe
  • %Program Files%\PC_Antispyware2010\wscui.cpl
  • %Program Files%\PC_Antispyware2010\data
  • %Program Files%\PC_Antispyware2010\data\daily.cvd
  • %Program Files%\PC_Antispyware2010\Microsoft.VC80.CRT
  • %Program Files%\PC_Antispyware2010\Microsoft.VC80.CRT\Microsoft.VC80.CRT.manifest
  • %Program Files%\PC_Antispyware2010\Microsoft.VC80.CRT\msvcm80.dll
  • %Program Files%\PC_Antispyware2010\Microsoft.VC80.CRT\msvcp80.dll
  • %Program Files%\PC_Antispyware2010\Microsoft.VC80.CRT\msvcr80.dll
  • %WINDOWS%\akudyta.lib
  • %WINDOWS%\hoxigawax.inf
  • %WINDOWS%\kyci.dl
  • %WINDOWS%\nuxojih.scr
  • %WINDOWS%\qynomikov.bin
  • %WINDOWS%\seni.reg
  • %WINDOWS%\yfoneby.db
  • %WINDOWS%\system32\_scui.cpl
  • %WINDOWS%\system32\cocefezyj.dl
  • %WINDOWS%\system32\qebykiti.dl
  • %Documents and Settings%\All Users\Application Data\pybisezyr.db
  • %Documents and Settings%\All Users\Application Data\ulycozoho._dl
  • %Documents and Settings%\All Users\Documents\ekenubes.com
  • %Documents and Settings%\All Users\Documents\icosagula.reg
  • %UserProfile%\Application Data\jugifyryve.exe
  • %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\PC_Antispyware2010.lnk
  • %UserProfile%\Cookies\ajeby.reg
  • %UserProfile%\Cookies\yqeqaranym.vbs
  • %UserProfile%\Cookies\zebav.pif
  • %UserProfile%\Desktop\_scui.cpl.txt
  • %UserProfile%\Desktop\PC_Antispyware2010.lnk
  • %UserProfile%\Local Settings\Application Data\xoqupuwytu._dl
  • %UserProfile%\Start Menu\Programs\PC_Antispyware2010
  • %UserProfile%\Start Menu\Programs\PC_Antispyware2010\PC_Antispyware2010.lnk
  • %UserProfile%\Start Menu\Programs\PC_Antispyware2010\Uninstall.lnk

The registry entries that need to be removed are as follows:

  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC_Antispyware2010
  • HKEY_LOCAL_MACHINE\SOFTWARE\PC_Antispyware2010
  • HKEY_CURRENT_USER\Control Panel\don’t load “scui.cpl”
  • HKEY_CURRENT_USER\Control Panel\don’t load “wscui.cpl”
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “PC Antispyware 2010″

Please, be informed that manual removal of Email-Worm.JS.Gigger worm is a cumbersome procedure and does not always ensure complete deletion of the malware, since some files might be hidden or may automatically reanimate themselves afterwards. Moreover, manual interference of this kind may cause damage to the system. That’s why we strongly recommend automatic removal of Email-Worm.JS.Gigger and PC Antispyware 2010 rogue, which will save your time and enable avoiding any system malfunctions and guarantee the needed result.

Download Email-Worm.JS.Gigger Worm Automatic Remover

Like This Article? Let Others Know!

Post a Comment: