vmss.exe - Dangerous
%windir%\system32\vmss\vmss.exe
Manual removal instructions:
Antivirus Report of %windir%\system32\vmss\vmss.exe:
%windir%\system32\vmss\vmss.exe
Vmss.exe is Adware.
Vmss.exe displays popup ads and monitors user Internet activity.
Author : DelFin Project
Vmss.exe adds the values:
Dvx: "%WINDIR%\System32\wsxsvc\wsxsvc.exe"
vmss: "%WINDIR%\System32\vmss\vmss.exe"
to the registry startup keys.
Also it adds:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
\Uninstall\DMVLite\UninstallString: "C:\Program Files\Internet Explorer\iexplore.exe "%WINDIR%\System32\wsxsvc\uninstall.html"
Related files:
* %WINDIR%\system32\vmss\vmss.exe
* %WINDIR%\system32\wsxsvc\License.txt
* %WINDIR%\system32\wsxsvc\uninstall.html
* %WINDIR%\system32\wsxsvc\wsx.dll
* %WINDIR%\system32\wsxsvc\wsx.ocx
* %WINDIR%\system32\wsxsvc\wsxsvc.exe
* C:\keys.ini.
* C:\Documents and Settings\Administrator\Local Settings\Temp\kmin.exe
* C:\Documents and Settings\Administrator\Local Settings\Temp\vmstmp\vmstmp.exe
* C:\Documents and Settings\All Users\Application Data\vmss\vmss.inf
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\199.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\281.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\284.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\313.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\*
Kill the process %SysDir%\vmss\vmss.exe and remove %SysDir%\vmss\vmss.exe from Windows startup.
Repeat the same for wsxsvc.exe.
%windir%\system32\vmss\vmss.exe | Malware |
%windir%\system32\vmss\vmss.exe | Dangerous |
%windir%\system32\vmss\vmss.exe | High Risk |
Vmss.exe displays popup ads and monitors user Internet activity.
Author : DelFin Project
Vmss.exe adds the values:
Dvx: "%WINDIR%\System32\wsxsvc\wsxsvc.exe"
vmss: "%WINDIR%\System32\vmss\vmss.exe"
to the registry startup keys.
Also it adds:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
\Uninstall\DMVLite\UninstallString: "C:\Program Files\Internet Explorer\iexplore.exe "%WINDIR%\System32\wsxsvc\uninstall.html"
Related files:
* %WINDIR%\system32\vmss\vmss.exe
* %WINDIR%\system32\wsxsvc\License.txt
* %WINDIR%\system32\wsxsvc\uninstall.html
* %WINDIR%\system32\wsxsvc\wsx.dll
* %WINDIR%\system32\wsxsvc\wsx.ocx
* %WINDIR%\system32\wsxsvc\wsxsvc.exe
* C:\keys.ini.
* C:\Documents and Settings\Administrator\Local Settings\Temp\kmin.exe
* C:\Documents and Settings\Administrator\Local Settings\Temp\vmstmp\vmstmp.exe
* C:\Documents and Settings\All Users\Application Data\vmss\vmss.inf
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\199.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\281.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\284.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\Adverts\313.dfn
* C:\Documents and Settings\All Users\Application Data\wsxs\*
Kill the process %SysDir%\vmss\vmss.exe and remove %SysDir%\vmss\vmss.exe from Windows startup.
Repeat the same for wsxsvc.exe.
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.