Win32.Knokk is known to be a dangerous backdoor Trojan program. It is comprised of 65033 bytes, is written in C + + and is packed using UPX. Once it has infiltrated, it will copy itself into this directory: % System% \ explore.exe. The program will wait for directions from its author. The author who is actually a hacker will send the program instructions on e-mail addresses of sites that he wants him to connect to.
Trojan: Generic.dx! Ijs
Mal / Generic-A
Remove at once.
For manual removal, you must follow these steps:
Delete the original file (its location depends on how the program originally penetrated your machine).
Change the key value Registry:
[HKLM \ software \ microsoft \ windows nt \ currentversion \ winlogon] “Shell” = “Explorer.exe”% System% \ explore.exe “” -> “Explorer.exe”
Delete this file
% System% \ explore.exe
For a stronger and more secure removal, you can use SpyZooka. SpyZooka eliminates the need for hours of monotonous searching and removal. SpyZooka does all the hard work for you. With all features automated, all you need to do is click to run the scan and then SpyZooka will do the rest.