<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>HT Logs. Tips, FAQs, Analyze. &#187; Winlogon\Notify</title>
	<atom:link href="http://htlogs.com/category/startup-type/winlogonnotify/feed/" rel="self" type="application/rss+xml" />
	<link>http://htlogs.com</link>
	<description>HIJACKTHIS ITEMS/REGISTRY ITEMS/HOW TO REMOVE</description>
	<lastBuildDate>Mon, 05 Dec 2011 07:53:13 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.5</generator>
		<item>
		<title>What is cryptnet32.dll, How to remove cryptnet32.dll</title>
		<link>http://htlogs.com/what-is-cryptnet32-dll-how-to-remove-cryptnet32-dll/</link>
		<comments>http://htlogs.com/what-is-cryptnet32-dll-how-to-remove-cryptnet32-dll/#comments</comments>
		<pubDate>Thu, 09 Dec 2010 17:51:31 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Winlogon\Notify]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=2080</guid>
		<description><![CDATA[This is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: cryptnet32 Filename: cryptnet32.dll Registry key: HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet32 Command: C:\WINDOWS\SYSTEM32\cryptnet32.dll Startup Type: Winlogon->Notify HijackThis Category: O20 [...]]]></description>
			<content:encoded><![CDATA[<h2>This is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> cryptnet32<br />
<strong>Filename:</strong> cryptnet32.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet32</p></blockquote>
<p><strong>Command:</strong> C:\WINDOWS\SYSTEM32\cryptnet32.dll<br />
<strong>Startup Type:</strong> Winlogon->Notify<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; Winlogon Notify: cryptnet32 &#8211; C:\WINDOWS\SYSTEM32\cryptnet32.dll</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet32]<br />
2010-12-08 17:31 48128 —-a-w- C:\WINDOWS\SYSTEM32\cryptnet32.dll</p></blockquote>
<p><strong>Description:</strong> Trojan:Win32/Lukicsel.H [Microsoft]</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2007/11/06/superantispyware-free-for-home-use/">SUPERAntiSpyware</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-cryptnet32-dll-how-to-remove-cryptnet32-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>What is csrss1.dll, How to remove csrss1.dll</title>
		<link>http://htlogs.com/what-is-csrss1-dll-how-to-remove-csrss1-dll/</link>
		<comments>http://htlogs.com/what-is-csrss1-dll-how-to-remove-csrss1-dll/#comments</comments>
		<pubDate>Wed, 04 Nov 2009 15:39:37 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Winlogon\Notify]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=955</guid>
		<description><![CDATA[csrss1.dll is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: csrss1 Filename: csrss1.dll Registry key: HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Csrss Command: c:\windows\system32\csrss1.dll Startup Type: Winlogon Notify HijackThis Category: [...]]]></description>
			<content:encoded><![CDATA[<h2>csrss1.dll is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> csrss1<br />
<strong>Filename:</strong> csrss1.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Csrss</p></blockquote>
<p><strong>Command:</strong> c:\windows\system32\csrss1.dll<br />
<strong>Startup Type:</strong> Winlogon Notify<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Category:</strong> O20<br />
<strong><a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> Line:</strong></p>
<blockquote><p>O20 &#8211; Winlogon Notify: Csrss &#8211; c:\windows\system32\csrss1.dll</p></blockquote>
<p><strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Csrss]<br />
2009-10-20 17:31 139264 &#8212;-a-w- c:\windows\system32\csrss1.dll</p></blockquote>
<p><strong>Description:</strong> unknown trojan</p>
<p><strong>How to remove:</strong> use <a href="http://www.myantispyware.com/2005/12/05/hijackthis-your-first-tool-for-remove-homepage-hijackers/">HijackThis</a> + <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes` Anti-malware</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/what-is-csrss1-dll-how-to-remove-csrss1-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WinCtrl32.dll is a trojan downloader</title>
		<link>http://htlogs.com/winctrl32dll-is-a-trojan-downloader/</link>
		<comments>http://htlogs.com/winctrl32dll-is-a-trojan-downloader/#comments</comments>
		<pubDate>Sun, 31 May 2009 08:47:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[O20]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Winlogon\Notify]]></category>

		<guid isPermaLink="false">http://htlogs.com/?p=516</guid>
		<description><![CDATA[This is a harmful program. It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program. If that does not help, then ask us for help in the Spyware removal forum. Name: WinCtrl32 Filename: WinCtrl32.dll Registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WinCtrl32 Startup Type: Winlogon->Notify Combofix/RSIT Line: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WinCtrl32] WinCtrl32.dll [...]]]></description>
			<content:encoded><![CDATA[<h2>This is a harmful program.</h2>
<table cellpading=0 cellspacing=0 border=0>
<tr>
<td><img src="http://htlogs.com/wp-content/uploads/2009/01/remove-icon-80.jpg" alt="remove" title="remove-icon-80" width="80" height="79" class="size-full wp-image-16" /></td>
<td>It is a component of malware or spyware, you should immediately remove it using an <a href="http://www.myantispyware.com/free-programs/">antivirus</a> and <a href="http://www.myantispyware.com/free-programs/">antispyware</a> program.<br />
If that does not help, then ask us for help in the <a href="http://myantispyware.com/forum/spyware-removal-f4.html">Spyware removal forum</a>. </td>
</tr>
</table>
<p><strong>Name:</strong> WinCtrl32<br />
<strong>Filename:</strong> WinCtrl32.dll<br />
<strong>Registry key:</strong></p>
<blockquote><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WinCtrl32</p></blockquote>
<p><strong>Startup Type:</strong> Winlogon->Notify<br />
<strong><a href="http://www.myantispyware.com/2007/10/08/combofix-another-free-anti-spyware-tool/">Combofix</a>/RSIT Line:</strong></p>
<blockquote><p>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WinCtrl32]<br />
WinCtrl32.dll</p></blockquote>
<p><strong>Description:</strong> trojan downloader</p>
<p><strong>How to remove:</strong> manually or use <a href="http://www.myantispyware.com/2008/08/28/malwarebytes-anti-malware-free-spyware-malware-trojan-remover/">Malwarebytes Anti-malware</a></p>
]]></content:encoded>
			<wfw:commentRss>http://htlogs.com/winctrl32dll-is-a-trojan-downloader/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

