INSTALLEDUUSEE.EXE is trojan Sisron

December 6, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Is the file INSTALLEDUUSEE.EXE located on your computer? Then your computer is infected. We do suggest you should remove INSTALLEDUUSEE.EXE from your computer as soon as possible. INSTALLEDUUSEE.EXE is Trojan/Backdoor. Kill the process INSTALLEDUUSEE.EXE and remove INSTALLEDUUSEE.EXE from the Windows startup. Malware Analysis of INSTALLEDUUSEE.EXE Full path on a computer: C:\TDDownload\UUSee\installeduusee.exe Detected by RegRun Warrior: [...]

NVVSVC.EXE is trojan Sisron

October 12, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Is the file NVVSVC.EXE located on your computer? Then your computer is infected. We do suggest you should remove NVVSVC.EXE from your computer as soon as possible. NVVSVC.EXE is Trojan/Backdoor. Kill the process NVVSVC.EXE and remove NVVSVC.EXE from the Windows startup. Malware Analysis of NVVSVC.EXE Full path on a computer: %Local Appdata%\Microsoft\nvvsvc.exe Detected by UnHackMe: [...]

L1REZERV.EXE is trojan Sisron

August 25, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Is the file L1REZERV.EXE located on your computer? Then your computer is infected. The file L1REZERV.EXE is malware related. You must delete the file L1REZERV.EXE immediately! Delete the file L1REZERV.EXE without delay! Kill the process L1REZERV.EXE and remove L1REZERV.EXE from Windows startup. Malware Analysis of “L1REZERV.EXE” Executed: loader10.exe Removed: l1rezerv.exe. Full path: %WinDir%\l1rezerv.exe Detected by [...]

ntload.dll – trojan Sisron

June 24, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

We checked some samples of ntload.dll and detected the file ntload.dll as threat. Remove the ntload.dll file from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of “notepad” Executed: 43884_3_4_19_55_z008106201303r0809r652120e0xdb.exe Removed: ntload.dll. Full path: C:\Documents and Settings\Administrator\Local Settings\Temp\ntload.dll —————————————————————————————————————————- Detected by UnHackMe: Item Name: notepad Author: Microsoft Related File: C:\DOCUME~1\ADMINI~1\NTLOAD.DLL Type: Registry Run Item [...]

notepad.dll – trojan Sisron

June 24, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Is the file notepad.dll located on your computer? Then your computer is infected. We do suggest you should remove notepad.dll from your computer as soon as possible. notepad.dll is Trojan/Backdoor. Kill the process notepad.dll and remove notepad.dll from the Windows startup. Malware Analysis of “notepad” Executed: 43884_3_4_19_55_z008106201303r0809r652120e0xdb.exe Removed: notepad.dll. Full path: C:\WINDOWS\system32\notepad.dll —————————————————————————————————————————- Detected by [...]

bsysmgr.exe – trojan Sisron

April 30, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

The file bsysmgr.exe is identified as the Trojan Program that is used for stealing bank information and users passwords. To delete bsysmgr.exe we recommend you to use UnHackMe: http://www.unhackme.com Malware Analysis of bsysmgr.exe Executed: ms0481.exe Removed: bsysmgr.exe. Full path: C:\WINDOWS\system32\bsysmgr.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: bsysmgr Author: GPA Related File: C:\WINDOWS\SYSTEM32\BSYSMGR.EXE Type: Registry Run [...]

monicon.exe – trojan Sisron

March 4, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

We checked some samples of monicon.exe and detected the file monicon.exe as threat. Remove the monicon.exe from your computer right now. Removal tool: http://www.unhackme.com Malware Analysis of monicon.exe Executed: 58icon.exe Removed: monicon.exe. Full path: C:\WINDOWS\system32\58Lnk\monicon.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: QZ_Lnk_System Author: Unknown Related File: C:\WINDOWS\SYSTEM32\58LNK\MONICON.EXE Type: Registry Run Item Name: monicon.exe Author: Unknown [...]

Removed: C:\WINDOWS\system32\wincrt12.exe (trojan Sisron)

February 4, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: XRONIA_POLLA.exe Removed: C:\WINDOWS\system32\wincrt12.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: wincrt12.exe Author: Unknown Related File: C:\WINDOWS\SYSTEM32\WINCRT12.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Services Value: “C:\WINDOWS\system32\wincrt12.exe” Files: C:\WINDOWS\system32\wincrt12.exe —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.16160.0 2011.01.27 Gen:Trojan.Heur.PT.cmW@bKbNeNp Kaspersky 7.0.0.125 2011.01.27 Heur.Trojan.Generic [...]

Removed: C:\WINDOWS\rb.exe (trojan Sisron)

February 3, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: rb.exe Removed: C:\WINDOWS\rb.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: rb Author: Samsung Electronics Inc. Related File: C:\WINDOWS\RB.EXE Type: Registry Run Item Name: rb.exe Author: Related File: C:\WINDOWS\RB.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\rb Value: “C:\WINDOWS\rb.exe” Files: C:\WINDOWS\rb.exe —————————————————————————————————————————- Classification: Antivirus Version [...]

Removed: C:\WINDOWS\system32\StormII.exe (trojan Sisron)

July 4, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: StormII.exe Removed: C:\WINDOWS\system32\StormII.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: Safetraye\ Author: Unknown Related File: C:\WINDOWS\SYSTEM32\STORMII.EXE Type: Registry Run Item Name: StormII.exe Author: Unknown Related File: C:\WINDOWS\SYSTEM32\STORMII.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Safetraye\ Value: “C:\WINDOWS\system32\StormII.exe” Files: C:\WINDOWS\system32\StormII.exe —————————————————————————————————————————- Classification: Antivirus Version Last [...]

Removed: C:\WINDOWS\system32\office woid.exe (trojan Sisron)

June 21, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\ck.exe Removed: C:\WINDOWS\system32\office woid.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: office word Author: Related File: C:\WINDOWS\SYSTEM32\OFFICE WOID.EXE Type: Registry Run Item Name: office woid.exe Author: Related File: C:\WINDOWS\SYSTEM32\OFFICE WOID.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\office word Value: 22 63 3A 5C [...]

Removed: C:\WINDOWS\system32\dmnv.pro (trojan Oficla)

June 19, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: out.exe Removed: C:\WINDOWS\system32\dmnv.pro —————————————————————————————————————————- Detected by UnHackMe: Item Name: shell Author: Unknown Related File: Explorer.exe rundll32.exe dmnv.pro mgvxnxy Type: System.ini Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell Value: “Explorer.exe rundll32.exe dmnv.pro mgvxnxy” Files: C:\Documents and Settings\Administrator\Application Data\Microsoft\Office\VB11.pip C:\Documents and Settings\Administrator\Local Settings\Temp\1.tmp C:\WINDOWS\system32\dmnv.pro —————————————————————————————————————————- Classification: [...]

Removed: Xss.exe (trojan Sisron)

May 21, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\xssi.exe Removed: C:\Program Files\Common Files\System\Xss.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: Xss Author: Related File: C:\PROGRA~1\COMMON~1\SYSTEM\XSS.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.04.06 Trojan.Generic.3566495 Kaspersky 7.0.0.125 2010.04.06 Trojan-Downloader.Win32.Genome.andy Microsoft 1.5605 2010.04.06 Trojan:Win32/Sisron NOD32 5004 2010.04.06 probably a variant of Win32/TrojanDownloader.Delf.PCX —————————————————————————————————————————- [...]

Removed: C:\Program Files\Wintows Publtnx\services.exe (trojan Sisron)

May 16, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: steup.exe Removed: C:\Program Files\Wintows Publtnx\services.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: windt32_ttnx Author: FREE Related File: C:\PROGRAM FILES\WINTOWS PUBLTNX\SERVICES.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.05.12 Trojan.Generic.3772243 Kaspersky 7.0.0.125 2010.05.12 Backdoor.Win32.Agent.arso Microsoft 1.5703 2010.05.12 Trojan:Win32/Sisron NOD32 5110 2010.05.12 a variant of [...]