Remove Clown. Description and removal instructions

 
Title: Clown

Type: Backdoors
Severity scale:Clown severity is 65  (65 / 100)
 
Clown is an IRC-controlled backdoor that provides the attacker with unauthorized remote access to a compromised computer. The intruder can issue specific commands in attempt to steal user sensitive information and gain control over the infected system. Clown may steal serial keys and registration details related to installed Quake 4 and Steam-based computer games. It can also disable some Windows essential tools like the Task Manager and the Registry Editor. The backdoor is able to silently update itself via the Internet. Clown automatically runs on every Windows startup.


Clown properties:
• Allows remote user connection
• Connects itself to the internet
• Hides from the user
• Stays resident in background

Automatic Clown removal:

remover for Clown

Clown manual removal:

Kill processes:
syscom832.exe
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit=userinit.exe,syscom832.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr=1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools=1
Delete files:
syscom832.exe, serfer.ini
Misc:
Files syscom832.exe and serfer.ini reside in default system directory, which is one of the following: C:\Windows\System, C:\Windows\System32, C:\Winnt\System32.

Other programs to remove Clown:

• SUPERAntiSpyware - Review - Download
• CounterSpy - Review - Download
• Windows Defender - Review - Download

Information added: 17/12/05
Information updated: 17/12/05

Additional resources related to Clown:

Attention: If you know or you have a website or page about Clown removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about Clown parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:

Latest spyware news:
Similar parasites: