View all database entries

ALL  PP  F0  F1  F2  F3  R0  R1  N1  N2  N3  N4  O1  O2  O3  O4  O5  O6  O7  O8  
O9  O10  O11  O12  O13  O14  O15  O16  O17  O18  O19  O20  O21  O22  O23  CHR  FF  

View MDO database (O4)

Showing entries 26 to 50 of 167.

Go directly to page: 1  2  3  4  5  6  7  

(L) O4 - Global Startup: Vision Services.lnk = D:\FEFLOW\vision\SHARE\vservice.exe
Required and set by the application
Windows ALL; discovered by nasdaq
(L) O4 - Global Startup: WebEx PCNow.LNK = C:\WINNT\Downloaded Program Files\MyWebEx\319\raagtx.exe
Required and set by the application
Windows ALL; discovered by nasdaq
(L) O4 - Global Startup: WebJet.lnk = C:\Program Files\WebJet\WebJet\WebJet.exe
Web Accelerator form Crescomm.net
http://crescomm.net/
Windows ALL; discovered by Nasdaq
(X) O4 - Global Startup: Wincbr.exe
Added by a variant of the Adware Dollarrevenue
Fix / Info: Use Andy manchesta's SDFix tool
http://spywareinfoforum.com/index.php?act=ST&f=37&t=81454
Windows ALL; discovered by nasdaq
(X) O4 - Global Startup: Windows Update.hta
virus VBS.BubbleBoy
Fix / Info: HijackThis - Trojan/Virus removal tools
http://www.symantec.com/avcenter/venc/data/vbs.bubbleboy.html
Windows ALL; discovered by nasdaq
(X) O4 - Global Startup: winlogin.exe
Related to the RANDEX.E virus
Fix / Info: HijackThis - Trojan/Virus removal tools
http://securityresponse.symantec.com/avcenter/venc/data/w32.randex.e.html
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\Run: [ChikkaIM] C:\Program Files\Chikka\Chikka.exe
Related to Chikka Asia, Inc.
http://www.chikka.com/
Windows ALL; discovered by nasdaq
(X) O4 - HKCU\..\Run: [free play] C:\DOCUME~1\kevin\APPLIC~1\VGABAL~1\Fork Sect.exe
LOP infection.
Fix / Info: Use procedure to remove the LOP infection.
http://forum.ccleaner.com/lofiversion/index.php/t1332.html
Windows ALL; discovered by nasdaq
(U) O4 - HKCU\..\Run: [Gadwin PrintScreen 2.6] C:\PROGRA~1\GADWIN~1\GADWIN~1.6\PRINTS~1.EXE /nosplash
Related to a user tool by Gadwin Systems, Inc.
http://www.gadwin.com/
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\Run: [IE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup
Related to : UnH Solutions.
http://www.unhsolutions.net/
Windows ALL; discovered by Nasdaq
(Q) O4 - HKCU\..\Run: [KazaaMate] C:\Program Files\Kazaa-Pal\Kazaa-Pal.exe
Could be AdAware. Suggest alternatives see link.
http://www.spywareinfoforum.info/articles/p2p/
Windows ALL; discovered by Nasdaq
(X) O4 - HKCU\..\Run: [micore] \program files\micore\runc.exe
Adware.MediaInject - Displays contextual ads.
Fix / Info: HijackThis - AdAware tool
http://securityresponse.symantec.com/avcenter/venc/data/adware.mediainject.html
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\Run: [Microsoft Netmeeting] C:\Progra~1\Netmee~1\conf.exe -Background
Microsoft Netmeeting and allows for the configuration and initialization of this Internet chat facility.
http://www.herdprotect.com/conf.exe-a9a65c92ae7f0c13d29914adf03c4b6427f58c80.aspx
Windows ALL; discovered by nasdaq
(X) O4 - HKCU\..\Run: [mswsock] C:\WINNT\system32\mswsock.exe
BackDoor Trojan
Fix / Info: HJT and Virus/trojan removal programs.
http://www.megasecurity.org/trojans/u/unknown/Backdoor.Delf.at.html
Windows ALL; discovered by nasdaq
(U) O4 - HKCU\..\Run: [netid] C:\WINDOWS\System32\netid.exe
Related to Dentrix Dental Systems, Inc.
http://www.dentrix.com/
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\Run: [PDFSaver] C:\Program Files\PDF-XChangeSDKEU\PDFSaver.exe
Related to Tracker Software Products
http://www.docu-track.com/
Windows ALL; discovered by nasdaq
(X) O4 - HKCU\..\Run: [Redo] C:\Program Files\dbsu\shto.exe
MediaTickets Adaware.
Fix / Info: HijackThis - AdAware tool
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\Run: [Simp] C:\Program Files\Secway\SimpPro 2.1\SimpPro.exe
Protects MSN Messenger and ICQ file transfers.
http://windowsstartup.com/wso/detail.php?id=4599
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\Run: [SSS6_ITD] "C:\Program Files\Steganos Security Suite 6\itd.exe" /booting
Encryption program from Steganos
http://www.steganos.com/
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\Run: [Talking clipboard] C:\Program Files\4talking\Talking Clipboard\cliptalk.exe
This simple application sits in the tray notification area under Windows 95 and NT 4 and speaks the text on the clipboard.
http://www.naughter.com/cliptalk.html
Windows ALL; discovered by Nasdaq
(L) O4 - HKCU\..\Run: [TSTimer] C:\Timeslips Server\Timeslips2004\TSTimer.exe
Related to Timeslips time billing software manages time and expense tracking and billing for professionals
http://www.timeslips.com/
Windows ALL; discovered by Nasdaq
(L) O4 - HKCU\..\Run: [Twinkle Bulbs] C:\Program Files\Twinkle Bulbs\TBULBS.EXE
Twinkle Bulbs
http://www.twinklebulbs.com/support_faq.htm
Windows ALL; discovered by Angoid
(X) O4 - HKCU\..\RunOnce: [Scuba Instant Messenger] SINSTANTM.EXE
[Virus Known As (McAfee)] W32/Spybot.worm
Fix / Info: HJT and Virus/trojan removal programs.
http://www.cyberdefender.com/risk/html/20050208174600.log.html
Windows ALL; discovered by nasdaq
(L) O4 - HKCU\..\RunOnce: [untd_recovery] C:\Program Files\Juno6\qsacc\x1exec.exe
x1exec.exe is a process belonging to the NetZero Internet service providers Internet accelerator application.
http://www.file.net/process/x1exec.exe.html
Windows ALL; discovered by nasdaq
(X) O4 - HKLM..Run: [farstone] NULL
CWS Spyware!!
Fix / Info: Task Manager, HijackThis, CWShredder, etc. may also require special tools yet to be developed
http://www.spywareinfoforum.info/newsletter/archives/2005/aug7.php
Windows ALL; discovered by Basementgeek

This is a list of items that is designed to help with the analysis of HijackThis, DDS, OTL and FRST logs.
It is by no means exhaustive (in fact it is being added to all the time), and is intended to complement other legitimate online lists.