Mosucker manual removal:
Kill processes:
backdoor.mosucker.11.exe, createserver.exe, editserver 2.0.exe, editserver.exe, free pink.exe, mosucker 2.0.exe, mosucker.exe, pics.zip.exe, server.exe, server1.exe, server2.exe, server3.exe, server4.exe, server5.exe, skinmaker.exe, [system root]\\jthh.exe, [system root]\\msnetcfg.exe, [system root]\\system\\svr.exe, [system root]\\temp\\pkg310.exe, [system root]\\temp\\pkg332.exe, [system root]\\temp\\pkg3392.exe, [system root]\\unin0686.exe, [system root]\\vvuijoe.exe, v young.exe
Delete registry values:HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{beuicvq-zpdev-zyk-oswoz-ipcjbgekjhf} HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{eengqgs-gdrfc-zzvzd-thmp-dnvpuihfkre} HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{hmcsqss-ejo-sdbyh-rcwb-ypenjkwjze} HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{mbubrwf-krfhc-cpg-qygw-lrjscpnsur} HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{rtemrsp-vhe-kgsoz-enjdg-tdtfhwtknffn}
Unregister DLLs:moicons.dll, [system root]\\buxyelbk.dll
Delete files:1.stub 2.stub, 3.stub, avkill_large.ini, avkill_small.ini, backdoor.mosucker.11.exe, bios killer plugin readme.txt, bios killer plugin v1.0.gui, bios_killer_plugin.msp, build.stub, createserver.exe, data.tag, editserver 2.0.exe, editserver.exe, fake login readme.txt, fake login.gui, fakelogin.msp, free pink.exe, front.jpg, fuck me!!!!!.vbs, get.cgi, help.chm, help+tutorial.chm, htm.cgi, infector readme.txt, infector.gui, infector.msp, moicons.dll, mosucker 2.0.exe, mosucker.chm, mosucker.exe, mosucker.ini, msn mass message readme.txt, msn message v2 readme.txt, msn message v2.gui, msn message.gui, msnmsgv2.msp, new default.title.gif, newfeatures.txt, pics.zip.exe, picture 26.jpg, pictures[1].txt, put.cgi, read me.txt, readme.txt, runtimes.txt, server.exe, server1.exe, server2.exe, server3.exe, server4.exe, server5.exe, setup.ini, setup.ins, skin.ini, skinmaker.exe, superclicks readme.txt, superclicks.gui, superclicks.msp, [system root]\\buxyelbk.dll, [system root]\\jthh.exe, [system root]\\kernel32.txp{10}, [system root]\\msnetcfg.exe, [system root]\\qirqgs.bin, [system root]\\system\\svr.exe, [system root]\\temp\\pkg310.exe, [system root]\\temp\\pkg332.exe, [system root]\\temp\\pkg3392.exe, [system root]\\unin0686.exe, [system root]\\vvuijoe.exe, [system root]\\wesapygp.sys, [system root]\\winexec32.dli, [system root]\\xqwrmthm.sys, tapisvc.sys.txt, thumbs.db, v young.exe, webdl.ocx