IESM_NM.DLL – trojan Buzus
We checked some samples of IESM_NM.DLL and detected the file IESM_NM.DLL as threat. Remove the IESM_NM.DLL file from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of “IESM_NM.DLL” Executed: admrup.exe Removed: iesm_nm.dll. Full path: %Program Files%\Addendum\iesm_nm.dll Detected by UnHackMe: Item Name: {E2E94F8D-4323-4943-A269-2E9EF6280434} Author: Related File: %PROGRAM FILES%\ADDENDUM\IESM_NM.DLL Type: Browser Helper Objects Removal Results: Success [...]
Removal Tool
JAESA.BAT – backdoor Hupigon
The program JAESA.BAT is used for hidden penetration into PC and its remote administration. UnHackMe is recommended as a reliable program for solving the problem with JAESA.BAT. Download for free: http://www.unhackme.com Malware Analysis of “JAESA.BAT” Executed: dc1a4a0b.exe Removed: jaesa.bat. Full path: %SysDir%\dllcache\jaesa.bat Detected by UnHackMe: Item Name: yyy Author: Related File: %SysDir%\dllcache\jaesa.bat Type: Auto Services [...]
Removal Tool
UFA.EXE – trojan BitCoinMiner
We checked some samples of UFA.EXE and detected the file UFA.EXE as threat. Remove the UFA.EXE file from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of “UFA.EXE” Executed: search.exe Removed: ufa.exe. Full path: %Windir%\ufa\ufa.exe UFA.EXE is known as: Win32.BitCoinMiner UFA.EXE hash: MD5: 54e328364335553807a670eb3dd137b1 SHA1: bba0fa29f13c0cc4f20a165181cfae8668c32674 How to quickly detect UFA.EXE presence? Folders: %Windir%\ufa [...]
Removal Tool
MSCJ2.EXE – trojan Ratti
Is the file MSCJ2.EXE located on your computer? Then your computer is infected. We do suggest you should remove MSCJ2.EXE from your computer as soon as possible. MSCJ2.EXE is Trojan/Backdoor. Kill the process MSCJ2.EXE and remove MSCJ2.EXE from the Windows startup. Malware Analysis of “MSCJ2.EXE” Executed: search=safe_.exe Removed: mscj2.exe. Full path: %AppData%\104750\mscj2.exe MSCJ2.EXE is known [...]
Removal Tool
DUBRUTE.EXE – trojan BruteForce
The file DUBRUTE.EXE is malware related. You must delete the file DUBRUTE.EXE immediately! Delete the file DUBRUTE.EXE without delay! Kill the process DUBRUTE.EXE and remove DUBRUTE.EXE from the Windows startup. Malware Analysis of “DUBRUTE.EXE” Executed: ba3dd3a1492f0040058e279e6ab1f43f86d8d29d.exe Removed: DUBrute.exe. Full path: %Temp%\DUBrute.exe DUBRUTE.EXE is known as: HackTool.BruteForce, Application.HackTool.DUBrute, Trojan.Vundo DUBRUTE.EXE hash: MD5: cbdd3f3dcff5163d9a2fe53870ec281a SHA1: 8aaae91791bf782c92b97c6e1b0f78fb2a9f3e65 How [...]
Removal Tool
FFKE7Y.EXE – trojan Virut
We checked some samples of FFKE7Y.EXE and detected the file FFKE7Y.EXE as threat. Remove the FFKE7Y.EXE file from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of “FFKE7Y.EXE” Executed: Bosco_en.exe Removed: ffke7y.exe. Full path: %System%\ffke7y.exe FFKE7Y.EXE is known as: Win32.Virut FFKE7Y.EXE hash: MD5: 041334D04FFA000C9D6F71912F81A0EC SHA1: 9E6181EA7B838E38EBD1F9EAB60A626313830B33 How to quickly detect FFKE7Y.EXE presence? Registry: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\: [...]
Removal Tool
ADOBEFLASHPLAYER.EXE – trojan MulDrop2
The file WINDOWSECURITY.EXE is malware related. You must delete the file WINDOWSECURITY.EXE immediately! Delete the file WINDOWSECURITY.EXE without delay! Kill the process WINDOWSECURITY.EXE and remove WINDOWSECURITY.EXE from the Windows startup. Malware Analysis of “ADOBEFLASHPLAYER.EXE” Executed: adobe_flash_player_activex_installer.exe Removed: AdobeFlashPlayer.exe. Full path: %Appdata%\Adobe Flash Player ActiveX Installer\AdobeFlashPlayer.exe Detected by UnHackMe: Item Name: UserInit Author: Unknown Related File: [...]
Removal Tool
WINDOWSECURITY.EXE – backdoor Fynloski
The program WINDOWSECURITY.EXE is used for hidden penetration into PC and its remote administration. UnHackMe is recommended as a reliable program for solving the problem with WINDOWSECURITY.EXE. Download for free: http://www.unhackme.com Malware Analysis of “WINDOWSECURITY.EXE” Executed: webcam.exe Removed: windowsecurity.exe. Full path: C:\system32\windowsecurity.exe Detected by UnHackMe: Item Name: UserInit Author: Unknown Related File: %SysDir%\userinit.exe,C:\system32\windowsecurity.exe Type: UserInit [...]
Removal Tool
V4EZSETP.DLL – adware FunWeb
We received the file V4EZSETP.DLL and detected that V4EZSETP.DLL is not good. V4EZSETP.DLL is Adware. You should remove the file V4EZSETP.DLL. Kill the process V4EZSETP.DLL and remove V4EZSETP.DLL from Windows. Malware Analysis of “V4EZSETP.DLL” Executed: dictionaryboss.exe Removed: v4EZSETP.dll. Full path: %Program Files%\DictionaryBossEI\Installr\1.bin\v4EZSETP.dll V4EZSETP.DLL is known as: Win32.AdWare.FunWeb, MyWebSearch V4EZSETP.DLL hash: MD5: 8e8c2a076601ce999ca64fca16ae57ff SHA1: f0fdf2472aa9bcc5f446f5d1bd8049a975757e3c How [...]
Removal Tool
WAN.EXE
WAN.EXE is unknown, probably legitimate. If the file WAN.EXE is located on your computer, download UnHackMe for free to fix the problem with WAN.EXE. Malware Analysis of “WAN.EXE” Executed: messenger2011.exe Removed: wan.exe. Full path: %WinDir%\wan.exe Detected by UnHackMe: Item Name: sys Author: Unknown Related File: %WinDir%\WAN.EXE Type: Registry Run Removal Results: Success Number of reboot: [...]
Removal Tool
MXZQZC.EXE – worm Dorkbot
The file MXZQZC.EXE is a computer worm. The worm MXZQZC.EXE is a self-replicating malicious program, which uses a computer network to send copies of itself to other computers. You must fix the MXZQZC.EXE problem as soon as possible! Delete the file MXZQZC.EXE from all infected computers in your network. Set up your network firewall against [...]
Removal Tool
WINDOWSFIX.EXE – trojan MSIL.Agent
Is the file WINDOWSFIX.EXE located on your computer? Then your computer is infected. We do suggest you should remove WINDOWSFIX.EXE from your computer as soon as possible. WINDOWSFIX.EXE is Trojan/Backdoor. Kill the process WINDOWSFIX.EXE and remove WINDOWSFIX.EXE from the Windows startup. Malware Analysis of “WINDOWSFIX.EXE” Executed: winsysdrv.exe Removed: windowsfix.exe. Full path: C:\windowsfix.exe Detected by UnHackMe: [...]
Removal Tool
WINSYSDRV.EXE – trojan Dynamer
The file WINSYSDRV.EXE is malware related. You must delete the file WINSYSDRV.EXE immediately! Delete the file WINSYSDRV.EXE without delay! Kill the process WINSYSDRV.EXE and remove WINSYSDRV.EXE from the Windows startup. Malware Analysis of “WINSYSDRV.EXE” Executed: winsysdrv.exe Removed: winsysdrv.exe. Full path: %Common_Startup%\winsysdrv.exe Detected by UnHackMe: Item Name: Hijack This Author: Trend Micro Inc Related File: %COMMON_STARTUP%\WINSYSDRV.EXE [...]
Removal Tool
SVDHALP.EXE – trojan Agent
We checked up the file SVDHALP.EXE and found it hazardous. The file SVDHALP.EXE must be deleted from the system immediately. Kill the process SVDHALP.EXE and remove SVDHALP.EXE from the Windows startup. Malware Analysis of “SVDHALP.EXE” Executed: vf4e2ad6800e566_2011723171112.exe Removed: svdhalp.exe. Full path: %SysDir%\svdhalp.exe Detected by UnHackMe: Item Name: shell Author: Unknown Related File: explorer.exe, svdhalp.exe Type: [...]
Removal Tool
VIEWDRIVE.EXE – worm Colowned
The file VIEWDRIVE.EXE is a computer worm. The worm VIEWDRIVE.EXE is a self-replicating malicious program, which uses a computer network to send copies of itself to other computers. You must fix the VIEWDRIVE.EXE problem as soon as possible! Delete the file VIEWDRIVE.EXE from all infected computers in your network. Set up your network firewall against [...]
Removal Tool
HANGVE.DLL – trojan SCKeyLog
The file HANGVE.DLL is malware related. You must delete the file HANGVE.DLL immediately! Delete the file HANGVE.DLL without delay! Kill the process HANGVE.DLL and remove HANGVE.DLL from the Windows startup. Malware Analysis of “HANGVE.DLL” Executed: chipth.exe Removed: hangve.dll. Full path: %SysDir%\hangve.dll Detected by UnHackMe: Item Name: hangve Author: Related File: %SysDir%\HANGVE.DLL Type: Winlogon Notification Item [...]
Removal Tool
HANGVE.EXE – trojan SCKeyLog
Is the file hangve.exe located on your computer? Then your computer is infected. We do suggest you should remove hangve.exe from your computer as soon as possible. hangve.exe is Trojan/Backdoor. Kill the process hangve.exe and remove hangve.exe from the Windows startup. Malware Analysis of “HANGVE.EXE” Executed: chipth.exe Removed: hangve.exe. Full path: %SysDir%\hangve.exe Detected by UnHackMe: [...]
Removal Tool
MSNMSGRLS.EXE – backdoor IRCBot
The program MSNMSGRLS.EXE is used for hidden penetration into PC and its remote administration. UnHackMe is recommended as a reliable program for solving the problem with MSNMSGRLS.EXE. Download for free: http://www.unhackme.com Malware Analysis of “MSNMSGRLS.EXE” Executed: 003.exe Removed: msnmsgrls.exe. Full path: %Appdata%\msnmsgrls.exe Detected by UnHackMe: Item Name: Microsoft LiveMessenger Update Author: Related File: %APPDATA%\MSNMSGRLS.EXE Type: [...]
Removal Tool
666.EXE – worm Rebhip
The file 666.EXE is a computer worm. The worm 666.EXE is a self-replicating malicious program, which uses a computer network to send copies of itself to other computers. You must fix the 666.EXE problem as soon as possible! Delete the file 666.EXE from all infected computers in your network. Set up your network firewall against [...]
Removal Tool
TASKHOST.EXE – trojan Ishotachi
We checked up the file TASKHOST.EXE and found it hazardous. The file TASKHOST.EXE must be deleted from the system immediately. Kill the process TASKHOST.EXE and remove TASKHOST.EXE from the Windows startup. Malware Analysis of “TASKHOST.EXE” Executed: video-zoophilie.avi.exe Removed: . Full path: Detected by UnHackMe: Item Name: taskhost32 Author: Related File: %APPDATA%\TASKHOST.EXE Type: Registry Run Item [...]
Removal Tool
POPO.EXE – trojan SpyEye
The file POPO.EXE is malware related. You must delete the file POPO.EXE immediately! Delete the file POPO.EXE without delay! Kill the process POPO.EXE and remove POPO.EXE from the Windows startup. Malware Analysis of “POPO.EXE” Executed: 020e18ad.exe Removed: popo.exe. Full path: %Appdata%\popo.exe Detected by UnHackMe: Item Name: bin Author: Baptist Cramer Pamela Rensselaer Related File: %APPDATA%\POPO.EXE [...]
Removal Tool
HOSTSYS.EXE – worm IRCBot
We checked up the file HOSTSYS.EXE and found it hazardous. The file HOSTSYS.EXE must be deleted from the system immediately. Kill the process HOSTSYS.EXE and remove HOSTSYS.EXE from the Windows startup. Malware Analysis of “HOSTSYS.EXE” Executed: m1111.net-4df7e192d4.exe Removed: hostsys.exe. Full path: %Appdata%\hostsys.exe Detected by UnHackMe: Item Name: Windows Update System Author: Unknown Related File: %APPDATA%\HOSTSYS.EXE [...]
Removal Tool
WIN_BULKATRO.EXE – trojan Bancos
We checked some samples of WIN_BULKATRO.EXE and detected the file WIN_BULKATRO.EXE as threat. Remove the WIN_BULKATRO.EXE file from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of “WIN_BULKATRO.EXE” Executed: docs_julho.exe Removed: WIN_BULKATRO.exe. Full path: C:\WIN_BULKATRO.exe Detected by UnHackMe: Item Name: WIN_BULKATRO Author: GS WinDefense Related File: C:\WIN_BULKATRO.EXE Type: Registry Run Item Name: WIN_BULKATRO.exe Author: [...]
Removal Tool
YYWYD.EXE – trojan Siggen2
Is the file YYWYD.EXE located on your computer? Then your computer is infected. We do suggest you should remove YYWYD.EXE from your computer as soon as possible. YYWYD.EXE is Trojan/Backdoor. Kill the process YYWYD.EXE and remove YYWYD.EXE from the Windows startup. Malware Analysis of “YYWYD.EXE” Executed: 53.exe Removed: yywyd.exe. Full path: %Appdata%\yywyd.exe Detected by UnHackMe: [...]
Removal Tool
RUNDLL32.EXE – trojan Injector
The file RUNDLL32.EXE is malware related. You must delete the file RUNDLL32.EXE immediately! Delete the file RUNDLL32.EXE without delay! Kill the process RUNDLL32.EXE and remove RUNDLL32.EXE from the Windows startup. Malware Analysis of “RUNDLL32.EXE” Executed: bf8e3239.exe Removed: rundll32.exe. Full path: %Appdata%\rundll32.exe RUNDLL32.EXE is known as: Win32.VBKrypt, Win32.Injector RUNDLL32.EXE hash: MD5: ec02cc57ffda873a66467e769465b2f5 SHA1: f2fdda1841aac30a517cd52fc9c8189d21d4ca1c How to [...]
Removal Tool
PLAY.DLL – trojan Delf
We checked up the file PLAY.DLL and found it hazardous. The file PLAY.DLL must be deleted from the system immediately. Kill the process PLAY.DLL and remove PLAY.DLL from the Windows startup. Malware Analysis of “PLAY.DLL” Executed: FlashPlayer.exe Full path: %Windir%\Play.dll PLAY.DLL hash: MD5: 65BAF80F7BD64C80C563599B203F5B80 SHA1: 6C2B7D80D29B9A0D78C1292009448BFA40619685 How to quickly detect PLAY.DLL presence? Files: %Windir%\auto.msi %Windir%\bcef.dll [...]
Removal Tool
T7VD.EXE – worm Hamweq
The file T7VD.EXE is a computer worm. The worm T7VD.EXE is a self-replicating malicious program, which uses a computer network to send copies of itself to other computers. You must fix the T7VD.EXE problem as soon as possible! Delete the file T7VD.EXE from all infected computers in your network. Set up your network firewall against [...]
Removal Tool
DUNRILL.EXE – trojan Msposer
We checked some samples of DUNRILL.EXE and detected the file DUNRILL.EXE as threat. Remove the DUNRILL.EXE file from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of “DUNRILL.EXE” Executed: BF8D256C3459963223C345FE401B7E4B.exe Full path: %AppData%\dunrill.exe DUNRILL.EXE hash: MD5: D1F888AB6C9DC10113C30BE0BEB0DBB2 SHA1: 8872987CB9F9A3E373C8450F4DD8A066509E1236 How to quickly detect DUNRILL.EXE presence? Files: %AppData%\dunrill.exe %AppData%\jxpiinstall.exe %AppData%\PlayerComet.dll %AppData%\realalt190.exe %AppData%\vcdui %AppData%\Vs6sp6B.exe %AppData%\Vs6sp6B.txt %ProgramFiles%\jcuxmt.txt [...]
Removal Tool
JATE.EXE – trojan Xyligan
Is the file JATE.EXE located on your computer? Then your computer is infected. We do suggest you should remove JATE.EXE from your computer as soon as possible. JATE.EXE is Trojan/Backdoor. Kill the process JATE.EXE and remove JATE.EXE from the Windows startup. Malware Analysis of “JATE.EXE” Executed: 7FCDA07D059E7764ADF7E56E101237F6.exe Full path: %System%\JATE.exe JATE.EXE hash: MD5: 1D17AB74A3C2CD5969D9A81B180C7BE4 How [...]
Removal Tool
NYZQZD.EXE – rootkit, worm Dorkbot
The file NYZQZD.EXE is a computer worm. The worm NYZQZD.EXE is a self-replicating malicious program, which uses a computer network to send copies of itself to other computers. You must fix the NYZQZD.EXE problem as soon as possible! Delete the file NYZQZD.EXE from all infected computers in your network. Set up your network firewall against [...]
Removal Tool



