dluca.exe - Dangerous
dluca.exe
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
Downloader.Dluca.C is a variant of the Downloader.Dluca Trojan Horse that sends information about your computer to a specific Web site
and downloads files onto your computer.
When Downloader.Dluca.C is executed, it does the following:
Copies itself to the System directory.
%System%\msinstall\dlu32\dluca\dluca.exe
%System%\dluca-uninstall.exe
Adds the value:
"dluca" = "%System%\msinstall\dlu32\dluca\dluca.exe /noconnect"
to the registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Also, adds the subkeys and values to some other registry keys.
Automatic removal:
Use RegRun Startup Optimizer to remove it from startup.