View MDO database (O4)
Showing entries 101 to 125 of 167.
Go directly to page: 1 2 3 4 5 6 7
(L) O4 - HKLM\..\Run: [PopUpInspector] C:\Program Files\GIANT Company Software inc\PopUp Inspector\PopUpInspector.exe Related to GIANT Company Software (Now Microsoft) http://www.giantcompany.com/ Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\Run: [Projector Manager] C:\Program Files\InFocus\Projector Manager\Projmgr.exe -hide Related to InFocus Corp. Projector Manager http://www.infocus.com/ Windows ALL; discovered by nasdaq |
(X) O4 - HKLM\..\Run: [rE4W37i] jdbtil.exe Bube.d Fix / Info: Kaspersky anti-virus (30 day trial version if not already present) Windows ALL; discovered by Angoid |
(L) O4 - HKLM\..\Run: [RemoveElanIcon] C:\WINDOWS\System32\ELAN.exe Related to Alcatel now STMicroelectronics http://www.st.com/ Windows ALL; discovered by nasdaq |
(X) O4 - HKLM\..\Run: [Scuba Instant Messenger] SINSTANTM.EXE [Virus Known As (McAfee)] W32/Spybot.worm Fix / Info: HJT and Virus/trojan removal programs. http://www.cyberdefender.com/risk/html/20050208174600.log.html Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\Run: [SENS Keyboard V4 Launcher] "C:\Program Files\SAMSUNG\SENS Keyboard V4 Launcher\SENSKBD.EXE" Reglated to Samsung SENS Keyboard V4 Launcher http://www.fileresearchcenter.com/S/SENSKBD.EXE-4043.html Windows ALL; discovered by nasdaq |
(X) O4 - HKLM\..\Run: [setup] rundll32.exe "C:\WINDOWS\system32\lgnraiuj.dll",realset Vundo (the filename will be random) Fix / Info: VundoFix - http://www.atribune.org/ccount/click.php?id=4 http://www.atribune.org/ Windows ALL; discovered by Angoid |
(X) O4 - HKLM\..\Run: [smiley.exe] c:\smiley\smiley.exe Will give you popups and redirection Fix / Info: HijackThis - Remove with Add/Remove program applet. http://spywareinfoforum.com/index.php?act=ST&f=6&t=51837&st=45 Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\Run: [SpyCatcher Reminder] SpyCatcher is a product of tenebril. Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\Run: [StopPops] C:\Program Files\StopPops\stoppops.exe Related to: DomainSpa http://www.stoppops.org/ Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\Run: [SyGateManager] C:\Program Files\SyGate\Sygate\Sygate.exe Loads the manager software for the Sygate internet sharing utility. The manager is used to change program settings for the Sygate software. http://www.windowsstartup.com/wso/detail.php?id=4464 Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\Run: [UFWSRVMAN] C:\Program Files\US Group\UltiPro for Windows\UFWSRVMan.exe Human Resource software from Ultimate Software http://www.ultimatesoftware.com/ Windows ALL; discovered by nasdaq |
(X) O4 - HKLM\..\Run: [Virus-Bursters] C:\Program Files\Virus-Bursters\virus-bursters.exe / Startup entry for the rogue anti-spyware application VirusBursters 6.3 Fix / Info: Smitfruad program Bleeping Computers 7Dec06 Windows ALL; discovered by Basementgeek |
(L) O4 - HKLM\..\Run: [VrProxyc] C:\Program Files\ViRobotXP\vrproxyc.exe Related to HAURI Inc. Related to HAURI Inc. Windows ALL; discovered by Nasdaq |
(L) O4 - HKLM\..\Run: [VrProxyd] C:\Program Files\ViRobotXP\vrproxyd.exe Related to HAURI Inc. http://www.hauri.net/ Windows ALL; discovered by Nasdaq |
(X) O4 - HKLM\..\Run: [Web Service] C:\WINNT\system32\sm.exe Bube.d Fix / Info: Kaspersky anti-virus (30 day trial version if not already present) Windows ALL; discovered by Angoid |
(X) O4 - HKLM\..\Run: [winini32] C:\WINDOWS\system32\wininin32.exe Virus W32/Agobot-J Fix / Info: HijackThis - Trojan/Virus removal tools http://www.sophos.com/virusinfo/analyses/w32agobotj.html Windows ALL; discovered by nasdaq |
(X) O4 - HKLM\..\Run: [WlN32] regedit -s C:\$NtUninstallQ887678$\WINSYS.cer Trojan.Delrun is Trojan horse that prevents programs from starting with the infected computer starts. Fix / Info: HJT and Virus/trojan removal programs. http://securityresponse.symantec.com/avcenter/venc/data/trojan.delrun.html Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\Run: [WPC55AG.exe] C:\Program Files\Dual-Band Wireless A+G Notebook Adapter\WPC55AG.exe An Internet-Sharing Router and Switch, with Universal Wireless Access from Linksys. Windows ALL; discovered by Nasdaq |
(U) O4 - HKLM\..\Run: [xecutor] C:\Program Files\X-ecutor\xecutor.exe Free utility by Xpertdesign Software http://www.xpertdesign.de/ Windows ALL; discovered by nasdaq |
(X) O4 - HKLM\..\RunOnce: [*JAVAAD] C:\WINDOWS\APPPATCH\JAVAAD.EXE rerun Virtumonde/StopGuard infection Fix / Info: See fix at the suggested URL http://www.bleepingcomputer.com/forums/How_to_remove_Virtumonde_Stopguard_CATLEvents_TrojanVundo-t3494.html Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\RunOnce: [CounterSpyCleaner] C:\Program Files\Sunbelt Software\CounterSpy Client\sunASCleaner.exe Sunbelt CounterSpy anti-spyware software http://www.superadblocker.com/S/SUNASCLEANER.EXE-4578.html Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\RunOnce: [GIANTAntiSpywareCleaner] C:\Program Files\Microsoft AntiSpyware\gcASCleaner.exe Microsoft AntiSpyWare removal tool. Windows ALL; discovered by nasdaq |
(L) O4 - HKLM\..\RunOnce: [MicrosoftAntiSpywareCleaner] C:\Program Files\Microsoft AntiSpyware\gcASCleaner.exe Microsoft AntiSpyWare removal tool. Windows ALL; discovered by nasdaq |
(Q) O4 - HKLM\..\RunOnce: [SpyFerret] C:\PROGRAM FILES\SPYFERRET\SFRT.EXE /autocheck This software is infringing on SpyBot and Destroy copyright. http://www.safer-networking.org/en/compatibility/spyferret.html Windows ALL; discovered by nasdaq |
This is a list of items that is designed to help with the analysis of HijackThis, DDS, OTL and FRST logs.
It is by no means exhaustive (in fact it is being added to all the time), and is intended
to complement other legitimate online lists.