Archive for the 'O4' Category

AutoPlay.exe is a autorun.inf trojan component

Friday, March 13th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: AutoPlay
Filename: AutoPlay.exe
Startup Type: Startup folder
HijackThis Category: O4
HijackThis Line:

O4 – S-1-5-18 Startup: AutoPlay.exe (User ‘SYSTEM’)
O4 – .DEFAULT Startup: AutoPlay.exe (User ‘Default user’)
O4 – .DEFAULT User Startup: AutoPlay.exe (User ‘Default user’)

Description: autorun.inf trojan component

How to remove: Use HijackThis + use the instructions How to remove trojans that uses autorun.inf file

diarprof.exe is a malware

Friday, March 13th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: diarprof
Filename: diarprof.exe
Startup Type: HKCU->Run
HijackThis Category: O4
HijackThis Line:

O4 – HKCU\..\Run: [bo0pRSZ3e] diarprof.exe

Description: Unknown malware component

How to remove: Use HijackThis

qtplugin.exe is Trojan-Downloader.Win32.Agent.hmz Trojan

Friday, March 13th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: qtplugin
Filename: qtplugin.exe
Command: C:\WINDOWS\system32\qtplugin.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:

O4 – HKLM\..\Run: [RegistryMonitor1] C:\WINDOWS\system32\qtplugin.exe

Description: Trojan-Downloader.Win32.Agent.hmz Trojan

How to remove: Use HijackThis

distus40.exe is a malware

Friday, March 13th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: distus40
Filename: distus40.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:

O4 – HKLM\..\Run: [qFrf32V] distus40.exe

Description: Unknown malware component

How to remove: Use HijackThis

install.exe is a component of Malware Defender 2009

Tuesday, March 10th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: install
Filename: install.exe
Registry key:

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
“updater”=”C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe /u”

Command: C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe
Startup Type: HKCU->Run
HijackThis Category: O4
HijackThis Line:

O4 – HKCU\..\Run: [updater] C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe /u

Description: component of Malware Defender 2009

How to remove: use the instructions How to remove Malware Defender 2009 (Uninstall instructions)

malwaredef.exe is main component of Malware Defender 2009

Tuesday, March 10th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: malwaredef
Filename: malwaredef.exe
Command: %programfiles%\Malware Defender 2009\malwaredef.exe
Startup Type:HKLM->Run
HijackThis Category: O4
HijackThis Line:

O4 – HKLM\..\Run: [malwaredef] C:\Program Files\Malware Defender 2009\malwaredef.exe

Combofix/RSIT Line:

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
“malwaredef”=”C:\Program Files\Malware Defender 2009\malwaredef.exe”

Description: main component of Malware Defender 2009

How to remove: use the instructions How to remove Malware Defender 2009 (Uninstall instructions)

proas2009.exe is main file of Pro Antispyware 2009

Friday, March 6th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: proas2009
Filename: proas2009.exe
Command: C:\Documents and Settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\proas2009.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:

O4 – HKCU\..\Run: [Pro Antispyware 2009] “C:\Documents and Settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\proas2009.exe” /autorun

Description: main file of Pro Antispyware 2009
Notes: Pro Antispyware 2009 is a rogue antispyware program

How to remove: use the instructions How to remove Pro Antispyware 2009 (Antispyware Pro 2009) Delete instructions

AntiSpyware Pro.exe is main file Antispyware Pro 2009

Friday, March 6th, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: AntiSpyware Pro
Filename: AntiSpyware Pro.exe
Command: C:\Program Files\AntiSpyware Pro\AntiSpyware Pro.exe
Startup Type: HKLM->run
HijackThis Category: O4
HijackThis Line:

O4 – HKLM\..\Run: [AntiSpyware Pro] “C:\Program Files\AntiSpyware Pro\AntiSpyware Pro.exe” hide

Description: main file Antispyware Pro 2009
Notes: Antispyware Pro 2009 is a rogue antispyware

How to remove: use the instructions How to remove Pro Antispyware 2009 (Antispyware Pro 2009) Delete instructions

rkgnd.exe is component of ANG AntiVirus 09

Sunday, March 1st, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: rkgnd
Filename: rkgnd.exe
Command: C:\Program Files\Common Files\System\mgnc\rkgnd.exe
Startup Type:HKLM->RunOnce
HijackThis Category: O4
HijackThis Line:

O4 – HKLM\..\RunOnce: [39173992539183281] C:\Program Files\Common Files\System\mgnc\rkgnd.exe

Description: component of ANG AntiVirus 09

How to remove: use these instructions How to remove ANG AntiVirus 09 or use HijackThis

angpd.exe is a component of ANG AntiVirus 09

Sunday, March 1st, 2009

This is an harmful program.

remove It is a component of malware or spyware, you should immediately remove it using an antivirus and antispyware program.
If that does not help, then ask us for help in the Spyware removal forum.

Name: angpd
Filename: angpd.exe
Command: C:\Program Files\Common Files\System\mgnc\angpd.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:

O4 – HKLM\..\Run: [62964419826679261] C:\Program Files\Common Files\System\mgnc\angpd.exe

Description: component of ANG AntiVirus 09

How to remove: use the instructions How to remove ANG AntiVirus 09 (Delete instructions) or use HijackThis.