Home / Spyware Encyclopedia / RiskTool.HideWindows << Back

Recommendation to Automatically remove RiskTool.HideWindows


Our products can remove RiskTool.HideWindows and thousands of other Virus and Spyware automatically and instantly.

RiskTool.HideWindows Details


  • Category RiskTool
  • Discovered 5/18/2016 6:58:48 AM
  • Modified 4/8/2024 6:13:57 PM
  • Threat Level High
  • Category Description
    This is an application that is not necessarily harmful if properly installed by the user or administrator of the PC, but which could be harmful or disruptive to the user, PC, or network if deployed by unauthorized parties for potentially malicious purposes

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
eguiepfwlang.dll 177408eset3.0.710.0f896ec5ea30a8366fcbaf95911bf9ace 
eplgoe.dll 247040eset3.0.710.0f726193bf5f67dbecc7a80a48927dfa8 
eplgoeemon.dll 185600eset3.0.710.0e9b74d2ae77f3861c47744fda8bbc2dd 
updater.dll 177408eset3.0.710.0dc67c628c70788407dcff7584d794280 
ekrnlang.dll 26880eset3.0.710.0d6e19faddfc7e7764b27506da9be3df4 
eguiemon.dll 107776eset3.0.710.0bcfc3717e1866d077a0bcbd6b2a412ad 
eguismonlang.dll 18688eset3.0.710.0bc446a1331f9295fa225da068f2ecb14 
eplgoutlooksmonlang.dll 17152eset3.0.710.0b89de7f3def207d241025149cd4c5bc2 
ehttpsrv.exe 19200eset3.0.710.0b61061b4ada15a45ec824b1724506a60 
eguimailpluginslang.dll 10496eset3.0.710.0b48665b63baefb41496927ca1f29cfd4 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"regedit"\"%das.au.ls%\temp\gsf4\zlip.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Sexya2"\"%WIN.SYS32%\SSSSSSSSSSSSS\Sexya2.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"WinReg"\"%PF%\cute\svchost.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"WinXPService"\"%ROOT%\winnt\system32\Lavan\system32.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"od-padr87"\"%PF%\Webdialer\792be032.exe -m"
..\Software\Microsoft\Windows\CurrentVersion\Uninstall\Webdialer_od-padr87\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"MSN"\"%DAS.AU%\UPDATE\MSN.EXE -D -E CMD.EXE 190.18.44.235 80"
..\System\CurrentControlSet\Services\SYNTPS\(Default)
..\Software\adrian lopez\(Default)
..\Software\webdialer\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware