Fighting Spyware, Malware and Adware one File at a Time.
Navigation Links

Database of Spyware Home

About the Project

View the Database

Forums

Database of Spyware Site Map

Terms of Use

ColdLife

Overview

Summary

 an Internet Relay Chat BOT/DDoS tool,

Alias

 Backdoor.IRC.ColdLife.40, Backdoor.IRC.ColdLife.51, Backdoor.IRC.Fusion.20, Backdoor.Litmus.203, IRC.ColdLife.30,

Category

 Flooder: A program that overloads a connection by any mechanism, such as fast pinging, causing a DoS attack.

Variants

   Coldlife 4.0 ·  ColdLife 4.1.0.0 ·
 

Origins

 

Author

 ColdLife

Others By This Author

  Coldlife 4.0 · ColdLife 4.1.0.0 ·

Date of Origin

 Variants from October, 2002 to August, 2003
 

Detection and Removal

Manual Removal

 Follow these steps to remove ColdLife from your machine. Begin by backing up your registry and your system, and/or setting a Restore Point, to prevent trouble if you make a mistake.

 Stop Running Processes:

Kill these running processes with Task Manager:



Remove Autorun Reference:

Go To the key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run


If you find the value HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\ltm2, delete it and reboot the machine immediately.



Unregister DLLs:

Unregister these DLLs with Regsvr32, then reboot:



Clean Registry:

Remove these registry items (if present) with RegEdit:



Remove Files:

Remove these files (if present) with Windows Explorer:



 
CodenameAlvin  CoderDialer  Cof1.0  ColdFusionVulnerabilityScanner  ColdFusionWebApplicationServerDoSAttack  ColdLife  ColdLife4.1.0.0  ColdLimitPasswordStealer  Coldlife4.0  CollectionMaker0.10b  
 
Site Map 2006 © Copyright DatabaseofSpyware.com. All rights reserved. Terms of Use
Another Proud Thor Schrock Development