BOXLOU.EXE is Trojan ServStart

February 4, 2012 by NightWatcher · Leave a Comment
Filed under: Malware 

Is the file BOXLOU.EXE located on your computer? Then your computer is infected. We do suggest you should remove BOXLOU.EXE from your computer as soon as possible. BOXLOU.EXE is Trojan/Backdoor. Kill the process BOXLOU.EXE and remove BOXLOU.EXE from the Windows startup. Malware Analysis of BOXLOU.EXE Full path on a computer: %WinDir%\boxlou.exe Detected by UnHackMe: Item [...]

SSYQSW.EXE is Trojan ServStart

December 27, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Is the file SSYQSW.EXE located on your computer? Then your computer is infected. We do suggest you should remove SSYQSW.EXE from your computer as soon as possible. SSYQSW.EXE is Trojan/Backdoor. Kill the process SSYQSW.EXE and remove SSYQSW.EXE from the Windows startup. Malware Analysis of SSYQSW.EXE Full path on a computer: %SysDir%\ssyqsw.exe Detected by UnHackMe: Item [...]

WINHYKX32.EXE is trojan ServStart

November 21, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

We checked some samples of WINHYKX32.EXE and detected the file WINHYKX32.EXE as threat. Remove the WINHYKX32.EXE file from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of WINHYKX32.EXE Full path on a computer: %Program Files%\7rar\WinHykx32.exe Detected by UnHackMe: Item Name: WinHcmf32 Author: Related File: %Program Files%\7rar\WinHykx32.exe Type: Auto Services Item Name: WinHykx32.exe Author: Unknown [...]

Removed: C:\WINDOWS\system32\ccuwco.exe (QQ Music – trojan ServStart)

June 22, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\4.exe Removed: C:\WINDOWS\system32\ccuwco.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: QQ MUSCIC Author: Related File: C:\WINDOWS\system32\ccuwco.exe Type: Auto Services Item Name: ccuwco.exe Author: Unknown Related File: C:\WINDOWS\SYSTEM32\CCUWCO.EXE Type: Running Processes CCUWCO.EXE – random filename Default location: C:\WINDOWS\SYSTEM32\CCUWCO.EXE MD5: 05DFE8215C1B33F031BB168F8A90D08E SHA1: 46DF122D EFE26055 EB8A1AE4 241B5442 C5B2A197 File Size: 45 056 Removal Results: Success Number of reboot: [...]

Removed: C:\WINDOWS\system32\chjco.exe (QQ Music – trojan ServStart / Krafcot)

June 22, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\5.exe Removed: C:\WINDOWS\system32\chjco.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: sxx Author: Related File: C:\WINDOWS\system32\chjco.exe Type: Auto Services CHJCO.EXE – random filename Default location: C:\WINDOWS\SYSTEM32\CHJCO.EXE MD5: A73059A09C0B2D9336A4D1102FA51448 SHA1: A56DAF23 2B4120B4 48D7E450 B2120247 F98F913F File Size: 29 696 Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\System\CurrentControlSet\Enum\Root\LEGACY_SXX\0000\Service Value: “sxx” [...]

Removed: C:\WINDOWS\system32\mmqcmg.exe (QQ Music – trojan ServStart)

June 22, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\3.exe Removed: C:\WINDOWS\system32\mmqcmg.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: QQ Music update3 Author: Related File: C:\WINDOWS\system32\mmqcmg.exe Type: Auto Services Item Name: mmqcmg.exe Author: Unknown Related File: C:\WINDOWS\SYSTEM32\MMQCMG.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\System\CurrentControlSet\Enum\Root\LEGACY_QQ_MUSIC_UPDATE3\0000\Service Value: “QQ Music update3″ Registry: HKLM\System\CurrentControlSet\Enum\Root\LEGACY_QQ_MUSIC_UPDATE3\0000\DeviceDesc Value: “QQ [...]

Removed: C:\WINDOWS\system32\iickie.exe (QQ Music – trojan ServStart)

June 22, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\2.exe Removed: C:\WINDOWS\system32\iickie.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: QQ Music update2 Author: Related File: C:\WINDOWS\system32\iickie.exe Type: Auto Services Item Name: iickie.exe Author: Unknown Related File: C:\WINDOWS\SYSTEM32\IICKIE.EXE Type: Running Processes IICKIE.EXE – random filename Default location: C:\WINDOWS\SYSTEM32\IICKIE.EXE MD5: 8E118ED5F074457F731624104D78F491 SHA1: 87314726 349EBCDF 6C314693 4A82FBC5 0C0C5A61 File Size: 45 568 Removal Results: Success Number of [...]

Removed: C:\WINDOWS\system32\lytrym.exe (QQ Music – trojan ServStart)

June 22, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\1.exe Removed: C:\WINDOWS\system32\lytrym.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: QQ Music updates Author: Related File: C:\WINDOWS\system32\lytrym.exe Type: Auto Services Item Name: lytrym.exe Author: Unknown Related File: C:\WINDOWS\SYSTEM32\LYTRYM.EXE Type: Running Processes After first reboot detected by UnHackMe: Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\System\CurrentControlSet\Enum\Root\LEGACY_QQ_MUSIC_UPDATES\0000\Service Value: “QQ [...]