Exterminate It! Antimalware


Known threats:700,085 Last Update:August 24, 10:09


Running an update right before activating seemed to do the trick. Many thanks. (Also, once I had it properly activated, Exterminate It! got rid of the SpySnipe trojan I’d been battling with for a week, so the news is even better!)

Gary M.

File: DistromaticUpdater-logon

Location of DistromaticUpdater-logon and Associated Malware

Check whether DistromaticUpdater-logon is present in the following locations:

DistromaticUpdater-logon file locations that are Windows version independent:

  • C:\Windows\System32\Tasks\DistromaticUpdater-logon

If you find DistromaticUpdater-logon file in any of these locations, your computer is very likely to be infected with the following malware:

IMPORTANT: Malware files can be camouflaged with the same file names as legitimate files. The DistromaticUpdater-logon file is associated with malware only if found in the locations listed above.


Different Variations of DistromaticUpdater-logon File^

File SizeFile Md5Last Seen
3934F8572C29C2CACDE59B8119C36E62AAB0Aug 14, 2016
39520A8031E3B2F37E054DCAA33134F5283BAug 15, 2016
40121B8D9C0642744C8E1B726A136DA4D0F2Aug 26, 2016
40141F25337E572153A2311761C5E3AE5223Sep 1, 2016
4016EB129DEF7CCC8EB97350E86B763231DFSep 3, 2016
3942CCD9D9F8B867D0EE07BF2D1DB751929ASep 10, 2016
3098A8682E3BDBF75409D216F3DC27C6831FSep 23, 2016
393054111FEFCCFE71B6ACFFE876F4DD4FD4Sep 24, 2016
40161987EC7B7DFFD0848FEB16244F8D5327Sep 28, 2016
4014A2A478758B48C56110CB7D658F28C24BOct 16, 2016
39302ABAE65816DDB8E658497674A6573D04Oct 24, 2016
39484A345788CECF1B882355E5BCDF638342Oct 27, 2016
3094C390929CF3F4A007D08BF5B5FF48F275Nov 11, 2016
393051F4AE4B4649B4D7BBC5EA999C27D429Nov 18, 2016
31961766605A803FB0CF05DAB7523390BE3BNov 20, 2016
3918FF34ABA1080395F9BF19B155D341388BDec 3, 2016
39300E00558635A91DCF3D984F0BF8EB2FB3Dec 4, 2016
3932189B5DBD8EDB62505E5EFC70D18A377FDec 11, 2016
3154C79F25D99FF5D0B5D853CC726568DB00Dec 14, 2016
3950A112C0CE38C46EED1D7A475E25673742Jan 6, 2017
3950B12BDCDB36C6F7E371226B537D0526B6Jan 9, 2017
400616009D26F46417D9E57E53A09371A3C4Feb 4, 2017
39425BD7DC292EDC63AF17263E95494198EFMar 8, 2017
3938BB5D88A619D104182349C51D392A494FMar 20, 2017
3226FE847166281ACA606DB1FB7F95F34D0AApr 24, 2017
392604CB8EAA215DBA2E9B28F1A3059D13C6May 8, 2017
32007BB631AA77819EC4E7575DAA30C0AF65May 12, 2017
394021089F07AF9DAF2F24E7FF4E263597E1May 15, 2017
39463B966672F659D9E4B7B7B9D158C73FACJun 6, 2017

Why Is It Important to Remove Malware Files?^

It is imperative that you delete malware-associated files as soon as possible because they can be used - or are already being used - to inflict serious damage on your PC, including:

  • Disrupting the normal functioning of the operating system or rendering it completely useless.
  • Hijacking valuable private information (credit card numbers, passwords, PIN codes, etc.)
  • Directing all your Web searches to the same unwanted or malicious sites.
  • Dramatically slowing down your computer.
  • Gaining total control of your PC to spread viruses and trojans and send out spam.

How to Remove DistromaticUpdater-logon^

  1. To enable deleting the DistromaticUpdater-logon file, terminate the associated process in the Task Manager as follows:
    • Right-click in the Windows taskbar (a bar that appears along the bottom of the Windows screen) and select Task Manager on the menu.
    • In the Tasks Manager window, click the Processes tab.
    • On the Processes tab, select DistromaticUpdater-logon and click End Process.
  2. Using your file explorer, browse to the file using the paths listed in Location of DistromaticUpdater-logon and Associated Malware.
  3. Select the file and press SHIFT+Delete on the keyboard.
  4. Click Yes in the confirm deletion dialog box.
  5. Repeat steps 2-4 for each location listed in Location of DistromaticUpdater-logon and Associated Malware.
  6. Notes:

    • The deletion of DistromaticUpdater-logon will fail if it is locked; that is, it is in use by some application (Windows will display a corresponding message). For instructions on deleting locked files, see Deleting Locked Files.
    • The deletion of DistromaticUpdater-logon will fail if your Windows uses the NT File System (NTFS) and you have no write rights for the file. Request your system administrator to grant you write rights for the file.

Deleting Locked Files^

You can delete locked files with the RemoveOnReboot utility. You can install the RemoveOnReboot utility from here.

After you delete a locked file, you need to delete all the references to the file in Windows registry.

To delete a locked file:

  1. Right-click on the file and select Send To -> Remove on Next Reboot on the menu.
  2. Restart your computer.

The file will be deleted on restart.

Note: In the case of complex viruses that can replicate themselves, malware files can reappear in the same locations even after you have deleted those files and restarted your computer. Exterminate It! Antimalware can effectively eradicate such viruses from your computer.

To remove all registry references to a DistromaticUpdater-logon malware file:

  1. On the Windows Start menu, click Run.
  2. In the Open box, type regedit and click OK. The Registry Editor window opens.
  3. On the Edit menu, select Find.
  4. In the Find dialog box, type DistromaticUpdater-logon. The name of the first found registry value referencing DistromaticUpdater-logon is highlighted in the right pane of the Registry Editor window.
  5. Right-click the registry value name and select Delete on the menu.
  6. Click Yes in the Confirm Value Delete dialog box.
  7. To delete all other references to DistromaticUpdater-logon, repeat steps 4-6.
IMPORTANT: Malware files can masquerade as legitimate files by using the same file names. To avoid deleting a harmless file, ensure that the Value column for the registry value displays exactly one of the paths listed in Location of DistromaticUpdater-logon and Associated Malware.