Archive for the 'O4' Category
Friday, March 13th, 2009
This is an harmful program.
Name: AutoPlay
Filename: AutoPlay.exe
Startup Type: Startup folder
HijackThis Category: O4
HijackThis Line:
O4 – S-1-5-18 Startup: AutoPlay.exe (User ‘SYSTEM’)
O4 – .DEFAULT Startup: AutoPlay.exe (User ‘Default user’)
O4 – .DEFAULT User Startup: AutoPlay.exe (User ‘Default user’)
Description: autorun.inf trojan component
How to remove: Use HijackThis + use the instructions How to remove trojans that uses autorun.inf file
Posted in O4, Startup folder, Trojan | No Comments »
Friday, March 13th, 2009
This is an harmful program.
Name: diarprof
Filename: diarprof.exe
Startup Type: HKCU->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKCU\..\Run: [bo0pRSZ3e] diarprof.exe
Description: Unknown malware component
How to remove: Use HijackThis
Posted in Malware, O4, Run | No Comments »
Friday, March 13th, 2009
This is an harmful program.
Name: qtplugin
Filename: qtplugin.exe
Command: C:\WINDOWS\system32\qtplugin.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [RegistryMonitor1] C:\WINDOWS\system32\qtplugin.exe
Description: Trojan-Downloader.Win32.Agent.hmz Trojan
How to remove: Use HijackThis
Posted in O4, Run, Trojan | No Comments »
Friday, March 13th, 2009
This is an harmful program.
Name: distus40
Filename: distus40.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [qFrf32V] distus40.exe
Description: Unknown malware component
How to remove: Use HijackThis
Posted in Malware, O4, Run | No Comments »
Tuesday, March 10th, 2009
This is an harmful program.
Name: install
Filename: install.exe
Registry key:
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
“updater”=”C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe /u”
Command: C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe
Startup Type: HKCU->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKCU\..\Run: [updater] C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe /u
Description: component of Malware Defender 2009
How to remove: use the instructions How to remove Malware Defender 2009 (Uninstall instructions)
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »
Tuesday, March 10th, 2009
This is an harmful program.
Name: malwaredef
Filename: malwaredef.exe
Command: %programfiles%\Malware Defender 2009\malwaredef.exe
Startup Type:HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [malwaredef] C:\Program Files\Malware Defender 2009\malwaredef.exe
Combofix/RSIT Line:
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
“malwaredef”=”C:\Program Files\Malware Defender 2009\malwaredef.exe”
Description: main component of Malware Defender 2009
How to remove: use the instructions How to remove Malware Defender 2009 (Uninstall instructions)
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »
Friday, March 6th, 2009
This is an harmful program.
Name: proas2009
Filename: proas2009.exe
Command: C:\Documents and Settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\proas2009.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKCU\..\Run: [Pro Antispyware 2009] “C:\Documents and Settings\All Users\Application Data\Solt Lake Software\Pro Antispyware 2009\proas2009.exe” /autorun
Description: main file of Pro Antispyware 2009
Notes: Pro Antispyware 2009 is a rogue antispyware program
How to remove: use the instructions How to remove Pro Antispyware 2009 (Antispyware Pro 2009) Delete instructions
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »
Friday, March 6th, 2009
This is an harmful program.
Name: AntiSpyware Pro
Filename: AntiSpyware Pro.exe
Command: C:\Program Files\AntiSpyware Pro\AntiSpyware Pro.exe
Startup Type: HKLM->run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [AntiSpyware Pro] “C:\Program Files\AntiSpyware Pro\AntiSpyware Pro.exe” hide
Description: main file Antispyware Pro 2009
Notes: Antispyware Pro 2009 is a rogue antispyware
How to remove: use the instructions How to remove Pro Antispyware 2009 (Antispyware Pro 2009) Delete instructions
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »
Sunday, March 1st, 2009
This is an harmful program.
Name: rkgnd
Filename: rkgnd.exe
Command: C:\Program Files\Common Files\System\mgnc\rkgnd.exe
Startup Type:HKLM->RunOnce
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\RunOnce: [39173992539183281] C:\Program Files\Common Files\System\mgnc\rkgnd.exe
Description: component of ANG AntiVirus 09
How to remove: use these instructions How to remove ANG AntiVirus 09 or use HijackThis
Posted in O4, Rogue Antispyware/Antivirus, RunOnce | No Comments »
Sunday, March 1st, 2009
This is an harmful program.
Name: angpd
Filename: angpd.exe
Command: C:\Program Files\Common Files\System\mgnc\angpd.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [62964419826679261] C:\Program Files\Common Files\System\mgnc\angpd.exe
Description: component of ANG AntiVirus 09
How to remove: use the instructions How to remove ANG AntiVirus 09 (Delete instructions) or use HijackThis.
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »