<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>HT Logs. Tips, FAQs, Analyze. &#187; O20</title>
	<atom:link href="http://htlogs.com/category/hijackthis/o20/feed/" rel="self" type="application/rss+xml" />
	<link>http://htlogs.com</link>
	<description>HIJACKTHIS ITEMS/REGISTRY ITEMS/HOW TO REMOVE</description>
	<lastBuildDate>Mon, 05 Dec 2011 07:53:13 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.5</generator>
		<item>
		<title>What is cryptnet32.dll, How to remove cryptnet32.dll</title>
		<link>http://htlogs.com/what-is-cryptnet32-dll-how-to-remove-cryptnet32-dll/</link>
		<comments>http://htlogs.com/what-is-cryptnet32-dll-how-to-remove-cryptnet32-dll/#comments</comments>
		<pubDate>Thu, 09 Dec 2010 17:51:31 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Winlogon\Notify]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=2080</guid>
		<description><![CDATA[This is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: cryptnet32 Filename: cryptnet32.dll Registry key: HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet32 Command: C:\WINDOWS\SYSTEM32\cryptnet32.dll Startup Type: Winlogon->Notify HijackThis Category: O20 [...]]]></description>
			<content:encoded><![CDATA[<h2>This is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> cryptnet32<br />
<strong>Filename:</strong> cryptnet32.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet32</p></blockquote>
<p><strong>Command:</strong> C:\WINDOWS\SYSTEM32\cryptnet32.dll<br />
<strong>Startup Type:</strong> Winlogon->Notify<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; Winlogon Notify: cryptnet32 &#8211; C:\WINDOWS\SYSTEM32\cryptnet32.dll</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet32]<br />
2010-12-08 17:31 48128 —-a-w- C:\WINDOWS\SYSTEM32\cryptnet32.dll</p></blockquote>
<p><strong>Description:</strong> Trojan:Win32/Lukicsel.H [Microsoft]</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2007/11/06/superantispyware-free-for-home-use/">SUPERAntiSpyware</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-cryptnet32-dll-how-to-remove-cryptnet32-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is app_dll.dll, How to remove app_dll.dll</title>
		<link>http://htlogs.com/what-is-app_dll-dll-how-to-remove-app_dll-dll/</link>
		<comments>http://htlogs.com/what-is-app_dll-dll-how-to-remove-app_dll-dll/#comments</comments>
		<pubDate>Mon, 19 Apr 2010 14:26:43 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=1645</guid>
		<description><![CDATA[app_dll.dll is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: app_dll Filename: C:\Windows\System32\app_dll.dll Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS Command: command Startup Type: AppInit DLLs [...]]]></description>
			<content:encoded><![CDATA[<h2>app_dll.dll is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> app_dll<br />
<strong>Filename:</strong> C:\Windows\System32\app_dll.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS</p></blockquote>
<p><strong>Command:</strong> command<br />
<strong>Startup Type:</strong> AppInit DLLs<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; AppInit_DLLs: app_dll.dll</p></blockquote>
<p><strong>DDS Line:</strong></p>
<blockquote><p>AppInit_DLLs: app_dll.dll</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]<br />
&#8220;AppInit_DLLS&#8221;=&#8221;C:\WINDOWS\system32\app_dll.dll&#8221;</p></blockquote>
<p><strong>Description:</strong> a trojan that also known as Trojan.Win32.Vilsel.rqn [Kaspersky Lab], Mal/Generic-A [Sophos]</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes` Anti-malware</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-app_dll-dll-how-to-remove-app_dll-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is 0021.DLL, How to remove 0021.DLL</title>
		<link>http://htlogs.com/what-is-0021-dll-how-to-remove-0021-dll/</link>
		<comments>http://htlogs.com/what-is-0021-dll-how-to-remove-0021-dll/#comments</comments>
		<pubDate>Fri, 29 Jan 2010 19:03:04 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[CrntDLL]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=1390</guid>
		<description><![CDATA[0021.DLL is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: 0021 Filename: 0021.DLL Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; CrntDLL Command: C:\WINDOWS\system32\0021.DLL [...]]]></description>
			<content:encoded><![CDATA[<h2>0021.DLL is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> 0021<br />
<strong>Filename:</strong> 0021.DLL<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | CrntDLL</p></blockquote>
<p><strong>Command:</strong> C:\WINDOWS\system32\0021.DLL<br />
<strong>Startup Type:</strong> AppInit_DLLs + CrntDLL<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 – AppInit_DLLs: C:\WINDOWS\system32\0021.DLL</p></blockquote>
<p><strong>DDS Line:</strong></p>
<blockquote><p>AppInit_DLLs: C:\WINDOWS\system32\0021.DLL</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]<br />
“AppInit_DLLS”=”C:\WINDOWS\system32\0021.DLL”</p></blockquote>
<p><strong>Description:</strong> trojan also known as Trojan-Spy.Win32.Delf.hvj [Kaspersky Lab], BackDoor-BAC [McAfee], Troj/Bckdr-RAP [Sophos], Trojan:Win32/Witkinat.A [Microsoft]</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes` Anti-malware</a> + <a href="http://www.myantispyware.com/2009/03/26/how-to-use-kaspersky-virus-removal-tool/">Kaspersky virus removal tool</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-0021-dll-how-to-remove-0021-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is 0020.DLL, How to remove 0020.DLL</title>
		<link>http://htlogs.com/what-is-0020-dll-how-to-remove-0020-dll/</link>
		<comments>http://htlogs.com/what-is-0020-dll-how-to-remove-0020-dll/#comments</comments>
		<pubDate>Fri, 29 Jan 2010 18:56:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[CrntDLL]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=1388</guid>
		<description><![CDATA[0020.DLL is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: 0020 Filename: 0020.DLL Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; CrntDLL Command: C:\WINDOWS\system32\0020.DLL [...]]]></description>
			<content:encoded><![CDATA[<h2>0020.DLL is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> 0020<br />
<strong>Filename:</strong> 0020.DLL<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | CrntDLL</p></blockquote>
<p><strong>Command:</strong> C:\WINDOWS\system32\0020.DLL<br />
<strong>Startup Type:</strong> AppInit_DLLs + CrntDLL<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 – AppInit_DLLs: C:\WINDOWS\system32\0020.DLL</p></blockquote>
<p><strong>DDS Line:</strong></p>
<blockquote><p>AppInit_DLLs: C:\WINDOWS\system32\0020.DLL</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]<br />
“AppInit_DLLS”=”C:\WINDOWS\system32\0020.DLL”</p></blockquote>
<p><strong>Description:</strong> trojan also known as Trojan-Spy.Win32.Delf.hvj [Kaspersky Lab], BackDoor-BAC [McAfee], Troj/Bckdr-RAP [Sophos], Trojan:Win32/Witkinat.A [Microsoft]</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes` Anti-malware</a> + <a href="http://www.myantispyware.com/2009/03/26/how-to-use-kaspersky-virus-removal-tool/">Kaspersky virus removal tool</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-0020-dll-how-to-remove-0020-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is 0019.DLL, How to remove 0019.DLL</title>
		<link>http://htlogs.com/what-is-0019-dll-how-to-remove-0019-dll/</link>
		<comments>http://htlogs.com/what-is-0019-dll-how-to-remove-0019-dll/#comments</comments>
		<pubDate>Fri, 29 Jan 2010 18:45:46 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=1386</guid>
		<description><![CDATA[0019.DLL is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: 0019 Filename: 0019.DLL Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS Command: C:\WINDOWS\system32\0019.DLL Startup Type: AppInit_DLLs HijackThis [...]]]></description>
			<content:encoded><![CDATA[<h2>0019.DLL is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> 0019<br />
<strong>Filename:</strong> 0019.DLL<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS</p></blockquote>
<p><strong>Command:</strong> C:\WINDOWS\system32\0019.DLL<br />
<strong>Startup Type:</strong> AppInit_DLLs<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; AppInit_DLLs: C:\WINDOWS\system32\0019.DLL</p></blockquote>
<p><strong>DDS Line:</strong></p>
<blockquote><p>AppInit_DLLs: C:\WINDOWS\system32\0019.DLL</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]<br />
&#8220;AppInit_DLLS&#8221;=&#8221;C:\WINDOWS\system32\0019.DLL&#8221;</p></blockquote>
<p><strong>Description:</strong> trojan agent</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes` Anti-malware</a> + <a href="http://www.myantispyware.com/2009/03/26/how-to-use-kaspersky-virus-removal-tool/">Kaspersky virus removal tool</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-0019-dll-how-to-remove-0019-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is PR15.DLL, How to remove PR15.DLL</title>
		<link>http://htlogs.com/what-is-pr15-dll-how-to-remove-pr15-dll/</link>
		<comments>http://htlogs.com/what-is-pr15-dll-how-to-remove-pr15-dll/#comments</comments>
		<pubDate>Sat, 09 Jan 2010 16:03:40 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=1295</guid>
		<description><![CDATA[PR15.DLL is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: PR15 Filename: PR15.DLL Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS Command: C:\WINDOWS\system32\PR15.DLL Startup Type: AppInit Dlls [...]]]></description>
			<content:encoded><![CDATA[<h2>PR15.DLL is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> PR15<br />
<strong>Filename:</strong> PR15.DLL<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS</p></blockquote>
<p><strong>Command:</strong> C:\WINDOWS\system32\PR15.DLL<br />
<strong>Startup Type:</strong> AppInit Dlls<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; AppInit_DLLs: C:\WINDOWS\system32\PR15.DLL</p></blockquote>
<p><strong>DDS Line:</strong></p>
<blockquote><p>AppInit_DLLs: C:\WINDOWS\system32\PR15.DLL</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]<br />
&#8220;AppInit_DLLS&#8221;=&#8221;C:\WINDOWS\system32\PR15.DLL&#8221;</p></blockquote>
<p><strong>Description:</strong> trojan that installed with <a href="http://htlogs.com/what-is-adobemedia-exe-how-to-remove-adobemedia-exe/">adobemedia.exe</a> trojan.</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2009/03/26/how-to-use-kaspersky-virus-removal-tool/">Kaspersky virus removal tool</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-pr15-dll-how-to-remove-pr15-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is csrss1.dll, How to remove csrss1.dll</title>
		<link>http://htlogs.com/what-is-csrss1-dll-how-to-remove-csrss1-dll/</link>
		<comments>http://htlogs.com/what-is-csrss1-dll-how-to-remove-csrss1-dll/#comments</comments>
		<pubDate>Wed, 04 Nov 2009 15:39:37 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Winlogon\Notify]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=955</guid>
		<description><![CDATA[csrss1.dll is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: csrss1 Filename: csrss1.dll Registry key: HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Csrss Command: c:\windows\system32\csrss1.dll Startup Type: Winlogon Notify HijackThis Category: [...]]]></description>
			<content:encoded><![CDATA[<h2>csrss1.dll is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> csrss1<br />
<strong>Filename:</strong> csrss1.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Csrss</p></blockquote>
<p><strong>Command:</strong> c:\windows\system32\csrss1.dll<br />
<strong>Startup Type:</strong> Winlogon Notify<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; Winlogon Notify: Csrss &#8211; c:\windows\system32\csrss1.dll</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Csrss]<br />
2009-10-20 17:31 139264 &#8212;-a-w- c:\windows\system32\csrss1.dll</p></blockquote>
<p><strong>Description:</strong> unknown trojan</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes` Anti-malware</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-csrss1-dll-how-to-remove-csrss1-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is dnsq.dll, How to remove dnsq.dll</title>
		<link>http://htlogs.com/what-is-dnsq-dll-how-to-remove-dnsq-dll/</link>
		<comments>http://htlogs.com/what-is-dnsq-dll-how-to-remove-dnsq-dll/#comments</comments>
		<pubDate>Fri, 23 Oct 2009 11:48:56 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=888</guid>
		<description><![CDATA[This is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: dnsq Filename: dnsq.dll Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS Command: C:\WINDOWS\system32\dnsq.dll Startup Type: AppInit_DLLs HijackThis [...]]]></description>
			<content:encoded><![CDATA[<h2>This is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> dnsq<br />
<strong>Filename:</strong> dnsq.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS</p></blockquote>
<p><strong>Command:</strong> C:\WINDOWS\system32\dnsq.dll<br />
<strong>Startup Type:</strong> AppInit_DLLs<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; AppInit_DLLs: C:\WINDOWS\system32\dnsq.dll</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]<br />
&#8220;AppInit_DLLS&#8221;=&#8221;C:\WINDOWS\system32\dnsq.dll&#8221;</p></blockquote>
<p><strong>Description:</strong> trojan, also known as W32.Pagipef, TSPY_ONLINEGA.AE, Trojan-PSW.Agent, Trojan-PSW.Win32.Agent.acp, Virus.Win32.Xorer.ee </p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2009/03/26/how-to-use-kaspersky-virus-removal-tool/">Kaspersky virus removal tool</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-dnsq-dll-how-to-remove-dnsq-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>cru629.dat is a component of braviax trojan</title>
		<link>http://htlogs.com/cru629-dat-is-a-component-of-braviax-trojan/</link>
		<comments>http://htlogs.com/cru629-dat-is-a-component-of-braviax-trojan/#comments</comments>
		<pubDate>Sun, 16 Aug 2009 13:07:52 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=670</guid>
		<description><![CDATA[This is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: cru629 Filename: cru629.dat Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS Startup Type: AppInit DLLs HijackThis Category: [...]]]></description>
			<content:encoded><![CDATA[<h2>This is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> cru629<br />
<strong>Filename:</strong> cru629.dat<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS</p></blockquote>
<p><strong>Startup Type:</strong> AppInit DLLs<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 – AppInit_DLLs: cru629.dat </p></blockquote>
<p><strong>Description:</strong> component of braviax trojan</p>
<p><strong>How to remove:</strong> use these <a href="http://www.myantispyware.com/2008/03/15/how-to-remove-braviaxexecru629-malware/">braviax trojan removal instructions</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/cru629-dat-is-a-component-of-braviax-trojan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>liser.dll is a trojan</title>
		<link>http://htlogs.com/liserdll-is-a-trojan/</link>
		<comments>http://htlogs.com/liserdll-is-a-trojan/#comments</comments>
		<pubDate>Sun, 28 Jun 2009 03:14:14 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[AppInit DLLs]]></category>
		<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=580</guid>
		<description><![CDATA[This is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: liser Filename: liser.dll Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows &#124; AppInit_DLLS Command: c:\progra~1\Manson\liser.dll Startup Type: AppInit DLL [...]]]></description>
			<content:encoded><![CDATA[<h2>This is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> liser<br />
<strong>Filename:</strong> liser.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows | AppInit_DLLS</p></blockquote>
<p><strong>Command:</strong> c:\progra~1\Manson\liser.dll<br />
<strong>Startup Type:</strong> AppInit DLL<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; AppInit_DLLs: c:\progra~1\Manson\liser.dll</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]<br />
&#8220;AppInit_DLLS&#8221;=&#8221;c:\progra~1\Manson\liser.dll&#8221;</p></blockquote>
<p><strong>Description:</strong> trojan agent [Malwarebytes Anti-malware]</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes Antimalware</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/liserdll-is-a-trojan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

