e2give manual removal:
Kill processes:
ei.exe, filgmo.exe, pi1.exeprutsct.exe, prutpct.exe, pruttct.exe, ptech.exe, skytown.exe
Delete registry values:HKEY_CURRENT_USER\Softwae\PTech
HKEY_LOCAL_MACHINE\SOFTWARE\E2G
HKEY_CLASSES_ROOT\IeBHOs.Control
HKEY_CLASSES_ROOT\IeBHOs.Control.1
HKEY_CLASSES_ROOT\AppID\IeBHOs.DLL
HKEY_CLASSES_ROOT\AppID\{3B99F202-145A-4E5A-AC7B-88A36910BF5E}
HKEY_CLASSES_ROOT\CLSID\{3643ABC2-21BF-46B9-B230-F247DB0C6FD6}
HKEY_CLASSES_ROOT\CLSID\{4A5ADB4F-48EE-4840-8DAB-166A239F7E86}
HKEY_CLASSES_ROOT\CLSID\{4A5B0528-1EE4-4871-8546-AB34DF31E861}
HKEY_CLASSES_ROOT\CLSID\{4A5B0D43-13BE-4B7C-820E-660CED71CDBF}
HKEY_CLASSES_ROOT\CLSID\{4A5B482D-E087-43C9-8FD6-0F36510CF2B9}
HKEY_CLASSES_ROOT\TypeLib\{3B99F202-145A-4E5A-AC7B-88A36910BF5E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IeBHOs.Control
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IeBHOs.Control.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\IeBHOs.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{3B99F202-145A-4E5A-AC7B-88A36910BF5E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3643ABC2-21BF-46B9-B230-F247DB0C6FD6}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3B99F202-145A-4E5A-AC7B-88A36910BF5E}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3643ABC2-21BF-46B9-B230-F247DB0C6FD6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\e2g plugin
Unregister DLLs:e2gbho.dll, iebhos.dll
Delete files:ei.exe, filgmo.exe, pi1.exeprutsct.exe, prutpct.exe, pruttct.exe, ptech.exe, skytown.exe, e2gbho.dll, iebhos.dll
Delete directories:C:\E2G
C:\Program Files\E2G
C:\Program Files\e2give
Misc:The spyware creates randomly named files and registry keys.
Buddy
Post Comment: