Home / Spyware Encyclopedia / RiskTool.HideWindows << Back

Recommendation to Automatically remove RiskTool.HideWindows


Our products can remove RiskTool.HideWindows and thousands of other Virus and Spyware automatically and instantly.

RiskTool.HideWindows Details


  • Category RiskTool
  • Discovered 4/15/2010 5:05:31 PM
  • Modified 9/2/2024 11:33:47 AM
  • Threat Level High
  • Category Description
    This is an application that is not necessarily harmful if properly installed by the user or administrator of the PC, but which could be harmful or disruptive to the user, PC, or network if deployed by unauthorized parties for potentially malicious purposes

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
7E6BB941.EXE 3846144Xvision2.02605b1f7787bb1f860af539a6566978b7 
4faf1e1e.exe 687429welcome1.1.1.22e6da971957f081e2ef4d134bb5e9600 
8c581ad4.exe 1462669tobias schiek0.0.0.0d36613614fd748d6345a2b772715cbe6 
b18a4328.exe 18794765oleg n. scherbakov1.2.0.552  
af289ce2.exe 707778my came1.1.1.20048ece3ec8a74a392ac77b8956c7148 
devcheck.exe 24064GrT1.44dafd26a375df593a8d341ff5ec0c4cf9 
C1C109BB.EXE 1266229GLOBALSOFTWARE, INC.1.6.0.0412ebb2c71373fdac7fbf4e971b8e5ea 
bnetd_remove.exe 183808Garam2. 1. 0. 1cd15f0082bc240a55a23ff58990478e7 
bnetd_start.exe 185344Garam2. 1. 0. 1cbba947c7c8d817b67c0f9012e5ea9e3 
bnetd_reboot.exe 183808Garam2. 1. 0. 12bfc88a14affae0ff39cc4c8d7812ff9 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"regedit"\"%das.au.ls%\temp\gsf4\zlip.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Sexya2"\"%WIN.SYS32%\SSSSSSSSSSSSS\Sexya2.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"WinReg"\"%PF%\cute\svchost.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"WinXPService"\"%ROOT%\winnt\system32\Lavan\system32.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"od-padr87"\"%PF%\Webdialer\792be032.exe -m"
..\Software\Microsoft\Windows\CurrentVersion\Uninstall\Webdialer_od-padr87\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"MSN"\"%DAS.AU%\UPDATE\MSN.EXE -D -E CMD.EXE 190.18.44.235 80"
..\System\CurrentControlSet\Services\SYNTPS\(Default)
..\Software\adrian lopez\(Default)
..\Software\webdialer\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware