Please make sure you know what you are doing before performing any of the instructions on this site. You maybe better off downloading a proven spyware scanner and let the program do the cleaning. You may need anti-virus software as well and please allow up to 10 hours to get your system back on its feet again. Please feel free to ask questions, tell us the problem and we will help for FREE.
Downloader | Keylogger | RAT |
Trojan |
Adware
Worm |
Sniffer |
Spoofer |
Toolbar |
Virus |
Probe
If you have a certain web site that keeps popping up please feel free in contact us at spyware at itconsultancy.org
DOWNLOAD FOAMER SPYWARE REMOVAL SOFTWARE
These products will remove and protect you from adware, spyware, trojans etc...

Removal instructions for foamer:
Foamer, also known as Moaphie, is a worm that spreads through mapped network drives. Once executed, the parasite installs itself to the system and runs a payload. It disables the Task Manager and the Registry Editor, modifies some Windows settings and changes the Internet Explorer default home page. Foamer may also attempt to send e-mail messages and execute arbitrary files downloaded from the Internet. The worm runs on every Windows startup displaying fake error message.
Alias:
Unknown
Protect yourself from spyware and virus attacks PDF
Notes:
Stop processes:explorer.exe, moaphie.exe, svchost.exe, winnt.exe
Remove Registry values:
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunshell
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunsvchost
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunwinnt
HKEY_CURRENT_USERSoftwareMicrosoftInternetExplorerMainStart Page=[site address]
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesSystemDisableRegistryTools=1
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesSystemDisableTaskMgr=1
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesExplorerNoRun=1
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesExplorerNoViewContextMenu=1
HKEY_CURRENT_USERSoftwareMicrosoftWindowsPoliciesExplorer=1
HKEY_CURRENT_USERSoftwareMicrosoftWindowsPoliciesSystem=1
HKEY_LOCAL_MACHINESOFTWAREMoaphieSig
Remove files:explorer.exe, moaphie.exe, svchost.exe, winnt.exe
Additional:[site address] is an address of a web site on the websamba.com domain.Exact file location:svchost.exe, winnt.exe - C:Windows or C:Winntmoaphie.exe - the root of mapped network drivesexplorer.exe - C:WindowsSystem, C:WindowsSystem32 or C:WinntSystem32 Foamer:
All topics related to Foamer spyware or virus on your computer and how to remove Foamer or fix it.