Mogi manual removal:
Kill processes:
ath.exe, bayloz.exe, bomba.exe, bonk.exe, dragon_naturallyspeaking_xp.exe, jolt2.exe, iexplore.exe, kod.exe, layer.exe, multi_password_cracker.exe, norton_2004_setup.exe, sin.exe, smurf.exe, suf.exe, syn.exe
Delete registry values:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\services=iexplore.exe
Delete files:ath.exe, bayloz.exe, bomba.exe, bonk.exe, dragon_naturallyspeaking_xp.exe, jolt2.exe, iexplore.exe, kod.exe, layer.exe, multi_password_cracker.exe, norton_2004_setup.exe, sin.exe, smurf.exe, suf.exe, syn.exe, covert.dll
Misc:The covert.dll file is a rootkit. Disabling it unhides other Mogi files.
Files dragon_naturallyspeaking_xp.exe, norton_2004_setup.exe and multi_password_cracker.exe are distributed through file sharing networks. Do not download and execute them!
Exact file location:
dragon_naturallyspeaking_xp.exe, norton_2004_setup.exe, multi_password_cracker.exe - shared folders of installed peer-to-peer applications
other files - C:\Windows\System, C:\Windows\System32 or C:\Winnt\System32
Post Comment: