Home Forums Windows 7 Security Tips

Windows 7
Windows Vista
Windows XP

Security Tips
Keyboard Shortcuts


Internet Terms
Computer Terms

File Extensions (75)
File Extensions (15K+)

Startup Applications
Necessary Files
Useless Files
At Your Option Files
Dangerous Files
Browser Objects

DLL Files
SYS Files
INF Files
OCX Files
VXD Files

Virus Database
Virus Warnings

Easter Eggs
Tips and Tricks
Hot Downloads

Privacy Policy
Contact Us


Name %SysDir%\dx32cxlp.exe


Trojan Nemog.
To autostart uses the Registry Run keys and the services keys:
Creates the system service called "dx32cxel".
Hides its service and files by hooking several APIs and returning null results for any API calls.
Creates backdoor using ports 4661, 4242, 8080, 4646, 6565, and 3306.
Receives commands from a remote attacker through a backdoor to perform the following actions:
1) Uninstall itself
2) Update itself
3) Download a file

Overwrites the %System%\DRIVERS\ETC\HOSTS file with the text, which prevents access to certain security-related Web sites.
Go to
HKLM\SOFTWARE\Microsoft\Internet Explorer
Delete the values:
"mutexname" = "mSRMHED"
"vers" = "0x10050"

Delete the keys:

Restore "hosts" file.
Restart your computer.

Still have a problem? Ask for help at our discussion forum.

Search Dangerous Files :

: : Recent posts at Forums : :

Unencumbered galleries

My chill engagement

rpvxyq Prendi il vestito di Zooey Deschanel From Her Tommy Hilfiger Collection per

Latest site

Pictures from collective networks

New Protrude

Fresh lodgings stage after beetle out

Communal pictures

My brand-new website

Loose adult galleries

Delivered full-grown galleries

Pictures from community networks

Matured site

Pictures from social networks

My unfamiliar website

My unfamiliar website

Modern web invent

Recent spot

Latest install

Mature galleries

Experimental Job

My mod work

Stared unusual prepare

Alluring men photo blog

My up to date ascend

Free galleries

Updated project page

My supplementary website

Recent spot

Unshackle galleries

SoftwareTipsandTricks, All Rights Reserved.