Archive for the 'O4' Category
Saturday, February 21st, 2009
This is an harmful program.
Name: Malware Doctor
Filename: Malware Doctor.exe
Command: C:\Program Files\Malware Doctor\Malware Doctor.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [Alcmtr] C:\Program Files\Malware Doctor\Malware Doctor.exe
Description: component of Malware Doctor rogue antispyware
How to remove: How to remove MalwareDoc or Malware Doctor (Delete instructions)
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »
Thursday, February 19th, 2009
This is an harmful program.
Name: AV1i
Filename: AV1i.exe
Registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “Monitor calibration”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “Drives swap”
Command: C:\Documents and Settings\All Users\Application Data\AV1\AV1i.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [Monitor calibration] C:\Documents and Settings\All Users\Application Data\AV1\AV1i.exe
O4 – HKLM\..\Run: [Drives swap] C:\Documents and Settings\All Users\Application Data\AV1\AV1i.exe
Description: component of Anti-virus-1 and Anti-virus number 1
How to remove: How to remove Anti-virus-1 (Delete instructions)
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »
Sunday, February 15th, 2009
This is an harmful program.
Name: mudjhftr
Filename: mudjhftr.dll
Command: rundll32.exe “%windir%\system32\mudjhftr.dll”,b
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [606a9e0b] rundll32.exe “C:\WINDOWS\system32\mudjhftr.dll”,b
Description: component of trojan Vundo
How to remove: How to remove Trojan Vundo
Posted in O4, Run, Trojan | No Comments »
Sunday, February 15th, 2009
This is an harmful program.
Name: frmwrk32
Filename: frmwrk32.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [Framework Windows] frmwrk32.exe
Description: Trojan
How to remove: Use HijackThis.
Posted in O4, Run, Trojan | No Comments »
Sunday, February 15th, 2009
This is an harmful program.
Name: eneticab
Filename: eneticab.dll
Command: %windir%\eneticab.dll
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [Hqefudivosogike] rundll32.exe “C:\WINDOWS\eneticab.dll”,e
Description: component of trojan Vundo
How to remove: How to remove Trojan Vundo
Posted in O4, Run, Trojan | No Comments »
Sunday, February 15th, 2009
This is an harmful program.
Name: Uguguyirog
Filename: Uguguyirog.dll
Command: %windir%\Uguguyirog.dll”
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [Bvaduyokuyepe] rundll32.exe “C:\WINDOWS\Uguguyirog.dll”,e
Description: component of trojan Vundo
How to remove: How to remove Trojan Vundo
Posted in O4, Run, Trojan | No Comments »
Sunday, February 15th, 2009
This is an harmful program.
Name: prunnet
Filename: prunnet.exe
Command: %windir%\system32\prunnet.exe
Startup Type: HKLM->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Run: [prunnet] “C:\WINDOWS\system32\prunnet.exe”
Description: trojan downloader
How to remove: Use Malwarebytes Antimalware
Posted in O4, Run, Trojan | No Comments »
Saturday, February 14th, 2009
This is an harmful program.
Name: wcs
Filename: wcs.exe
Command: %programfiles%\Applications\wcs.exe
Startup Type: HKLM->Policies\Explorer\Run:
HijackThis Category: O4
HijackThis Line:
O4 – HKLM\..\Policies\Explorer\Run: [smile] C:\Program Files\Applications\wcs.exe
Description: variant of the Adware/Netproject malware
How to remove: Use HijackThis.
Posted in adware, O4, Policies\Explorer\Run | No Comments »
Saturday, February 14th, 2009
This is an harmful program.
Name: algg
Filename: algg.exe
Registry key: key
Command: %windir%\system32\algg.exe
Startup Type: HKCU->run
HijackThis Category: O4
HijackThis Line:
O4 – HKCU\..\Run: [wblogon] C:\WINDOWS\system32\algg.exe
Description: trojan downloader
How to remove: Use HijackThis.
Posted in O4, Run, Trojan | No Comments »
Saturday, February 14th, 2009
This is an harmful program.
Name: VirusRL2009
Filename: VirusRL2009.exe
Command: %programfiles%\VirusRL2009\VirusRL2009.exe
Startup Type: HKCU->Run
HijackThis Category: O4
HijackThis Line:
O4 – HKCU\..\Run: [VirusRL2009] “C:\Program Files\VirusRL2009\VirusRL2009.exe”
Description: Virus Response Lab 2009 rogue antivirus component
How to remove: How to remove VirusResponseLab
Posted in O4, Rogue Antispyware/Antivirus, Run | No Comments »