Details of WinNT/Xantvi.gen
WinNT/Xantvi.gen is a disturbing virtool infection that use special rootkit methods to open stealth backdoors for remote attackers. WinNT/Xantvi.gen is usually spread via porn related sites, SPAM e-mail attachments or via corrupt multimedia updates. When activated, Xantvi.gen virtool will use vulnerability in system security to inject harmful beep.sys, beep.sys, figaro.sys files. The WinNT/Xantvi.gen is a severe virtool threat and a serious security infection to Windows system files!
Xantvi.gen clone infections: Backdoor.Win32.UltimateDefender.a, FakeAlert-C.dr, TROJ_ROOTKIT.CY, TROJ_VIRANTIX.BP, Mal/FakeAle-C, VirTool:WinNT/Xantvi.A, TROJ_VIRANTIX.C, Backdoor.UltimateDefender!sd6, Hacktool.Rootkit!sd6, Troj/KillAV-EM, Troj/FakeAle-DQ, Rootkit.Renos.Gen.11, NTRootKit-AC, not-a-virus:FraudTool.Win32.UltimateDefender.cm, Troj/Agent-HHC, Hacktool.Rootkit, Adware.Agent.ZO, TROJ_RENOS.AKQ, Trojan.Virantix.C, not-a-virus:.FraudTool.Win32.UltimateDefender.cm
Symptoms of WinNT/Xantvi.gen virtool:
- Missing system tray icons and desktop shortcuts, altered wallpaper and desktop settings
- Hard to erase WinNT/Xantvi.gen manually, files re-installs itself after removal
- Computer slowdowns, system faults and Windows shutdowns
- "Blue Screen" error screen produced by missing dll's, registry keys and Windows files
- Desktop flooded with porn and gambling pop ups even with pop-up blocker
- Browser error page, start page and search page hijacked by unknown site
- Unknown running Xantvi.gen system processes in Windows task list, unusual Windows beep faults
WinNT/Xantvi.gen behavior:
- Forwards passwords, login names and other private sensitive information to remote hackers by avoiding antivirus and firewall programs
- Generates pop-ups that match surfing activities, collects Windows system information
- Use leaks in Windows security system to download mischievous infections from outlying hacker servers
Download the Free scan utility to find out if your system is hijacked. Uninstall WinNT/Xantvi.gen and delete all aliases permanently! |
|