New spyaxe variant: SpyFalcon

I so sick of spending many hours cleaning spyware off of customer computers, and yesterday was no exception.

My customer yesterday had SpywareStrike loaded and something new called Spyfalcon. Running the Smitrem tool cleaned out the spywarestrike, but I could not get rid of spyfalcon. Turns out it’s because spyfalcon just came out yesterday. I just love how my customers keep so current with the latest spywares! My searches yesterday turned up zero results for that name, however today I’m starting to turn up some results. Here’s some good links thus far on this latest malware.

http://sunbeltblog.blogspot.com/2006/02/new-replacement-for-spyaxe.html

http://castlecops.com/article-6514-nested-0-0.html

http://wiki.castlecops.com/Malware_Removal:_SpyAxe_Removal

http://securityresponse.symantec.com/avcenter/venc/data/trojan.spaxe.html
So unless I can figure out how to manually remove this, I have to wait for the Smitrem tool to be updated.

Update: Manual removal instructions (Unverified to work, I will try later today)