windowxs.exe - Dangerous


Manual removal instructions:

Antivirus Report of windowxs.exe:
windowxs.exe Malware
windowxs.exeHigh Risk
This is an IRC backdoor Trojan and network worm which can run in the background as a service process and allow unauthorised remote access via the IRC channel.
It copies itself to the Windows System folder as WINDOWXS.EXE and creates the following registry entries so that this worm is run automatically on system restart:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\winlog = windowxs.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\winlog = windowxs.exe

W32/Sdbot-KT remains resident listening for commands from the remote hacker.
If the appropriate commands are received the worm will begin scanning the internet for network shares with weak administrator passwords and will attempt to copy itself to these shares.
This worm can also initiate SYNFlood attacks, exploit computers infected with W32/MyDoom and attempt to steal CD keys from several computer games.

Use RegRun Startup Optimizer to remove it from startup.

Remove windowxs.exe now!

Dmitry Sokolov:

I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.

Since that time I work every day to fix the issues that antiviruses cannot.

If your antivirus have not helped you solve the problem, you should try UnHackMe.

We are a small company and you can ask me directly, if you have any questions.


You can read UnHackMe testimonials here.