Archive for the 'O2' Category
Monday, June 15th, 2009
This is a harmful program.
Name: wingenocx
Filename: wingenocx.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}
Command: C:\WINDOWS\system32\wingenocx.dll
CLSID: {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: BhoApp – {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} – C:\WINDOWS\system32\wingenocx.dll
Description: trojan BHO that installed with Protection System (rogue antispyware software)
How to remove: use Malwarebytes Antimalware
Posted in BHO, O2, Rogue Antispyware/Antivirus, Trojan | No Comments »
Friday, June 12th, 2009
This is a harmful program.
Name: poswin
Filename: poswin.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F60777DA-D6A6-40F6-B665-6F361C1017B6}
Command: C:\WINDOWS\poswin.dll
CLSID: {F60777DA-D6A6-40F6-B665-6F361C1017B6}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: PLAsim plugin – {F60777DA-D6A6-40F6-B665-6F361C1017B6} – C:\WINDOWS\poswin.dll
Description: trojan FakeAlert
How to remove: use HijackThis + use Malwarebytes Antimalware
Posted in BHO, O2, Trojan | No Comments »
Thursday, May 7th, 2009
This is a harmful program.
Name: winexplorer
Filename: winexplorer.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2e59498d-7e44-4452-9044-0973b080b9e8}
Command: C:\WINDOWS\system32\winexplorer.dll
CLSID: {2e59498d-7e44-4452-9044-0973b080b9e8}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: (no name) – {2e59498d-7e44-4452-9044-0973b080b9e8} – C:\WINDOWS\system32\winexplorer.dll
Description: winexplorer.dll is trojan bho, installed with Personal Antivirus (rogue antispyware program)
How to remove: use Use HijackThis + use Use Malwarebytes Antimalware
Posted in BHO, O2, Rogue Antispyware/Antivirus, Trojan | 2 Comments »
Monday, April 27th, 2009
This is a harmful program.
Name: dddesot
Filename: dddesot.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F54AF7DE-6038-4026-8433-CC30E3F17212}
Command: C:\WINDOWS\system32\dddesot.dll
CLSID: {F54AF7DE-6038-4026-8433-CC30E3F17212}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: ICQSys (IE PlugIn) – {F54AF7DE-6038-4026-8433-CC30E3F17212} – C:\WINDOWS\system32\dddesot.dll
Description: trojan.bho, component of Win Antivirus and ASC AntiSpyware (rogue antivirus programs)
How to remove: use the instructions How to remove ASC AntiSpyware or Win Antivirus Vista/XP (Delete instructions)
Posted in BHO, O2, Rogue Antispyware/Antivirus | No Comments »
Monday, April 27th, 2009
This is a harmful program.
Name: IEPlugin163
Filename: IEPlugin163.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F3D01F3-2A8E-4814-AA0F-8315172D22BF}
Command: C:\Program Files\Win-Antivirus\modules\IEPlugin163.dll<
CLSID: {2F3D01F3-2A8E-4814-AA0F-8315172D22BF}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: AntiSyware (IE PlugIn) – {2F3D01F3-2A8E-4814-AA0F-8315172D22BF} – C:\Program Files\Win-Antivirus\modules\IEPlugin163.dll
Description: trojan.bho, component of Win Antivirus (rogue antispyware program)
How to remove: use the instructions How to remove ASC AntiSpyware or Win Antivirus Vista/XP (Delete instructions)
Posted in BHO, O2, Rogue Antispyware/Antivirus | No Comments »
Saturday, April 25th, 2009
This is a harmful program.
Name: winsource
Filename: winsource.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D263FA6D-84CC-48A8-9AF6-C664362B7A5B}
Command: C:\WINDOWS\system32\winsource.dll
CLSID: {D263FA6D-84CC-48A8-9AF6-C664362B7A5B}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: &Research – {D263FA6D-84CC-48A8-9AF6-C664362B7A5B} – C:\WINDOWS\system32\winsource.dll
Description: trojan.bho, installed with Total Security
How to remove: use the instruction How to remove Total Security (Uninstall instructions)
Posted in BHO, O2, Rogue Antispyware/Antivirus, Trojan | 2 Comments »
Tuesday, April 21st, 2009
This is a harmful program.
Name: InternetExplorer
Filename: InternetExplorer.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D032570A-5F63-4812-A094-87D007C23012}
Command: C:\WINDOWS\system32\InternetExplorer.dll
CLSID: {D032570A-5F63-4812-A094-87D007C23012}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: (no name) – {D032570A-5F63-4812-A094-87D007C23012} – C:\WINDOWS\system32\InternetExplorer.dll
Description: trojan bho that installed with Antivirus Plus (rogue antispyware program)
How to remove: use the instruction How to remove Antivirus Plus (Uninstall instructions)
Posted in BHO, O2, Rogue Antispyware/Antivirus, Trojan | No Comments »
Tuesday, March 31st, 2009
This is a harmful program.
Name: awtuUNDT
Filename: awtuUNDT.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DB248511-529D-4956-A291-1535CEDF9250}
Command: C:\Windows\system32\awtuUNDT.dll
CLSID: {DB248511-529D-4956-A291-1535CEDF9250}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: (no name) – {DB248511-529D-4956-A291-1535CEDF9250} – C:\Windows\system32\awtuUNDT.dll
Description: Internet Explorer BHO module, trojan (Vundo)
How to remove: Use HijackThis + Use Malwarebytes Antimalware
Posted in BHO, O2, Trojan | No Comments »
Monday, March 30th, 2009
This is a harmful program.
Name: gumapoke
Filename: gumapoke.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18865f87-42b0-47d6-8fc4-5301aa0f0f80}
Command: C:\WINDOWS\System32\gumapoke.dll
CLSID: {18865f87-42b0-47d6-8fc4-5301aa0f0f80}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: (no name) – {18865f87-42b0-47d6-8fc4-5301aa0f0f80} – C:\WINDOWS\System32\gumapoke.dll
Description: BHO module, trojan Vundo component
How to remove: Use HijackThis + Use Malwarebytes Antimalware
Posted in BHO, O2, Trojan | No Comments »
Thursday, March 26th, 2009
This is an harmful program.
Name: spbho
Filename: spbho.dll
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D032570A-5F63-4812-A094-87D007C23012}
Command: C:\Program Files\Privacy center\tools\sp\spbho.dll
CLSID: {D032570A-5F63-4812-A094-87D007C23012}
Startup Type: BHO
HijackThis Category: O2
HijackThis Line:
O2 – BHO: (no name) – {D032570A-5F63-4812-A094-87D007C23012} – C:\Program Files\Privacy center\tools\sp\spbho.dll
Description: Internet Explorer BHO module, component of Privacy center
How to remove: Use HijackThis or Use Malwarebytes Antimalware
Posted in BHO, O2, Rogue Antispyware/Antivirus | No Comments »