G3XP7550.EXE is virus VBInject

October 3, 2011 by NightWatcher · Leave a Comment
Filed under: Virus 

Is the file G3XP7550.EXE located on your computer? Then your computer is infected. We do suggest you should remove G3XP7550.EXE from your computer as soon as possible. G3XP7550.EXE is Trojan/Backdoor. Kill the process G3XP7550.EXE and remove G3XP7550.EXE from the Windows startup. Malware Analysis of G3XP7550.EXE Full path on a computer: %AppData%\G3XP7550.exe Detected by UnHackMe: Item [...]

HOSTSYS.EXE is trojan VBInject

October 3, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

The file HOSTSYS.EXE is malware related. You must delete the file HOSTSYS.EXE immediately! Delete the file HOSTSYS.EXE without delay! Kill the process HOSTSYS.EXE and remove HOSTSYS.EXE from the Windows startup. Malware Analysis of HOSTSYS.EXE Full path on a computer: %AppData%\hostsys.exe Detected by UnHackMe: Item Name: Windows Update System Author: Unknown Related File: %APPDATA%\HOSTSYS.EXE Type: Registry [...]

hidserv.exe – trojan VBInject

April 15, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Is the file hidserv.exe located on your computer? Then your computer is infected. We highly recommend you to remove hidserv.exe from your computer as soon as possible. hidserv.exe is Trojan/Backdoor. Kill the process hidserv.exe and remove hidserv.exe from the Windows startup. Malware Analysis of hidserv.exe Executed: mirc_001.exe Removed: hidserv.exe. Full path: C:\Documents and Settings\Administrator\Application Data\hidserv.exe [...]

Removed: C:\WINDOWS\mwc.exe (trojan VBInject)

February 11, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: app(1).exe Removed: C:\WINDOWS\mwc.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: {2707E53E-1E2D-7B5B-7D4D-22B0C277C0A8} Author: Related File: C:\WINDOWS\MWC.EXE Type: ActiveSetup Item Name: 1234 Author: Related File: C:\WINDOWS\MWC.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Active Setup\Installed Components\{2707E53E-1E2D-7B5B-7D4D-22B0C277C0A8}\StubPath Value: “C:\WINDOWS\mwc.exe 2″ Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\1234 Value: “C:\WINDOWS\mwc.exe” Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\1234 Value: [...]

Removed: C:\Documents and Settings\Administrator\Application Data\C-76947-8457-2745\msnmgrsln.exe (trojan VBInject)

February 5, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: out.exe Removed: C:\Documents and Settings\Administrator\Application Data\C-76947-8457-2745\msnmgrsln.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: LiveMessengerControl Author: SGbU3rfSiW Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\C-76947-8457-2745\MSNMGRSLN.EXE Type: Registry Run Item Name: msnmgrsln.exe Author: Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\C-76947-8457-2745\MSNMGRSLN.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\LiveMessengerControl Value: [...]

Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\service2.exe (trojan VBInject)

February 2, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: cos.exe Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\service2.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: Windows Update Author: pdf Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\SERVICE2.EXE Type: Registry Run Item Name: Windows Services Author: Related File: service2.exe Type: Registry Run Item Name: service2.EXE Author: pdf Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\SERVICE2.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to [...]

Removed: C:\Documents and Settings\Administrator\Application Data\local.exe (trojan VBInject)

February 2, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\keygen.exe Removed: C:\Documents and Settings\Administrator\Application Data\local.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: winsrc Author: Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\LOCAL.EXE Type: Explorer Run Item Name: {1E79E93B-FCB0-B2FB-EE5B-A91AF4B1DBDD} Author: Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\LOCAL.EXE Type: ActiveSetup Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\winsrc Value: “C:\Documents and [...]

Removed: C:\WINDOWS\system32\WUpdat\svchost.exe (VirTool VBInject)

January 29, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: _001.exe Removed: C:\WINDOWS\system32\WUpdat\svchost.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: UserInit Author: Unknown Related File: C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\WUpdat\svchost.exe Type: UserInit Value Item Name: svchost Author: ANT10 Inc. Related File: C:\WINDOWS\SYSTEM32\WUPDAT\SVCHOST.EXE Type: Registry Run Item Name: svchost.exe Author: ANT10 Inc. Related File: C:\WINDOWS\SYSTEM32\WUPDAT\SVCHOST.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect [...]

Removed: C:\Program Files\RaeaPlayer\Player.exe, C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\TOP1.exe.lnk, C:\Program Files\TOP1.exe (trojan VBInject)

January 28, 2011 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: prt(2).scr.exe Removed: C:\Program Files\RaeaPlayer\Player.exe  C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\TOP1.exe.lnk C:\Program Files\TOP1.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: {GE2GBFEA-BBG7-435D-81F9-ABG4AA17G12F} Author: VqWxr Related File: C:\PROGRAM FILES\RAEAPLAYER\PLAYER.EXE Type: ActiveSetup Item Name: TOP1.exe.lnk Author: VqWxr Related File: C:\PROGRAM FILES\TOP1.EXE Type: Startup Folder Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Active Setup\Installed [...]

Removed: C:\WINDOWS\pp15.exe (trojan VBInject)

August 6, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: C:\sand-box\pp.15.exe Removed: C:\WINDOWS\pp15.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: syspptray Author: Nambq Falgbi Related File: C:\WINDOWS\PP15.EXE Type: Registry Run Item Name: pp15.exe Author: Nambq Falgbi Related File: C:\WINDOWS\PP15.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\syspptray Value: “C:\windows\pp15.exe” Files: C:\WINDOWS\pp15.exe —————————————————————————————————————————- Classification: Antivirus [...]

Removed: dl1.exe (trojan VBInject)

July 27, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: opapa.exe Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\dl1.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: DriverLoad Author: Uobgd Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\DL1.EXE Type: Explorer Run Item Name: DriverCheck Author: Uobgd Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\DL1.EXE Type: Explorer Run Item Name: dl1.exe Author: Uobgd Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\DL1.EXE Type: Running Processes Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly [...]

Removed: C:\Documents and Settings\Administrator\connect32.dll (trojan VBInject)

July 22, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: uploading-3(1).exe Removed: C:\Documents and Settings\Administrator\connect32.dll —————————————————————————————————————————- Detected by UnHackMe: Item Name: Network Author: Unknown Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\CONNECT32.DLL Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Network Value: “rundll32.exe “C:\Documents and Settings\Administrator\connect32.dll”,connect” Files: C:\Documents and Settings\Administrator\connect32.dll —————————————————————————————————————————- Classification: Antivirus Version Last Update Result [...]

Removed: ..\Application Data\vdolew.exe (trojan VBInject)

June 13, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: Proj1.exe Removed: C:\Documents and Settings\Administrator\Application Data\vdolew.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: taskman Author: mGjoByhuUUvEQsMrPhHh Related File: C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\VDOLEW.EXE Type: Winlogon System Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- How to quickly detect malware presence? Registry: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman Value: “C:\Documents and Settings\%USERNAME%\Application Data\vdolew.exe” Files: C:\Documents and Settings\%USERNAME%\Application Data\vdolew.exe —————————————————————————————————————————- Classification: Antivirus [...]

Removed: C:\WINDOWS\svchost.exe (trojan VBInject)

May 23, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: IOIzo4rkW5V3SseNqcRE1OZu.exe Removed: C:\WINDOWS\svchost.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: svchost.exe Author: Rundll32 Related File: C:\WINDOWS\SVCHOST.EXE Type: Detected using Heuristic Algorithm Item Name: Microsoft© Operating System: Author: Related File: C:\WINDOWS\SVCHOST.EXE Type: Registry Run Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.05.22 – Kaspersky 7.0.0.125 2010.05.22 – [...]

Removed: C:\NORTON\U-34543ANTI-9998887776-23234532-565\nav.exe (trojan VBInject)

May 18, 2010 by NightWatcher · Leave a Comment
Filed under: Malware 

Malware: nav.exe Removed: C:\NORTON\U-34543ANTI-9998887776-23234532-565\nav.exe —————————————————————————————————————————- Detected by UnHackMe: Item Name: {64KLC5K0-4OPM-00WE-AAX8-27EF1D183366} Author: C5afcFtYExLj Related File: C:\NORTON\U-34543ANTI-9998887776-23234532-565\NAV.EXE Type: ActiveSetup Removal Results: Success Number of reboot: 1 —————————————————————————————————————————- Classification: Antivirus Version Last Update Result F-Secure 9.0.15370.0 2010.04.26 Trojan.Generic.3453869 Kaspersky 7.0.0.125 2010.04.27 Worm.Win32.AutoRun.hci Microsoft 1.5703 2010.04.27 VirTool:Win32/VBInject.gen!DA NOD32 5063 2010.04.26 Win32/AutoRun.KS —————————————————————————————————————————- Additional information File size: 61441 bytes [...]