Click on screenshot to zoom
Danger level 8
Type: Trojans
Common infection symptoms:
  • Connects to the internet without permission
  • Slow internet connection
  • Slow Computer
Other mutations known as:
Trojan.SystemHijack.C

Trojan.SystemHijack

Trojan.SystemHijack is one of the latest Trojan infections wreaking only havoc to infected systems.
Trojan.SystemHijack, being a Trojan infection tends to be installed onto a computer via a security exploits, and without the user’s awareness.
Systems infected with the Trojan.SystemHijack parasite, also known as Trojan.SystemHijack.C, have been investigated, and the findings show that Trojan.SystemHijack tends to display the following characteristics:
• Downloads/requests other files from Internet.   
• Creates a startup registry entry
• Packed with a packer that is known to be used by malware (e.g. to complicate threat analysis or detection)
• Contains characteristics of an identified security risk.

Trojan.SystemHijack is particularly damaging to a computer system, once it has fully embedded itself within the PC’s system, therefore it is given a high priority security risk status by many computer analysts.
The fact that Trojan.SystemHijack can easily enter any PC system via security exploits and flaws, most times without the user’s interaction, means that it is that much easier for Trojan.SystemHijack to enter the system and ensure the system’s security is immensely compromised.
Once Trojan.SystemHijack is installed it may begin to download and install additional malware onto the infiltrated system, which may in turn cause serious issues and render the infected computer useless.
All financial and personal data may be at serious risk of being stolen, should a computer system have Trojan.SystemHijack.
Trojan.SystemHijack tends to allow a remote attacker to gain access to all personal information, which is highly capable of resulting in identity theft.
Risks which may affect the PC’s system functions include: the opening of illicit network connections, the use of polymorphic tactics to self-mutate, the disabling of already installed security software, modification of system files, and not forgetting the installation of additional malware.
It is highly recommended to make use of a reliable and legitimate anti-spyware application, to remove Trojan.SystemHijack and all its components from the infected computer system.

Download Spyware Removal Tool to Remove* Trojan.SystemHijack
  • Quick & tested solution for Trojan.SystemHijack removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Trojan.SystemHijack

Files associated with Trojan.SystemHijack infection:

WinHelp32.exe
svshost.exe
lcnss.exe
Antivirus.exe
360safe.exe
mrinet.exe
Game.exe
WinHelp64.exe
exqlorer.exe
wmptray.exe
userinit.exe
netcomms.exe
nsysrunex.exe
vmdetdhc.exe
Crypt16.exe
dionpis.exe
fiosectc.exe
bincdwsa.exe
ptshell.exe
dndsioc.exe
mciservice.exe
daudi.exe
anistio.exE
huifitc.exe
dbhlp32.exe
WINSvr64.exe
WinAvXX.exe
sa_exe.exe
338448W.exe
yuiabct.exe
mfchlp64.exe
tciocp64.exe
msauc.exe
fmsjhif.exe
winsysse.exe
winter.exe
explore.exe
portsv.exe
444.471
444.470

Trojan.SystemHijack processes to kill:

WinHelp32.exe
svshost.exe
lcnss.exe
Antivirus.exe
360safe.exe
mrinet.exe
Game.exe
WinHelp64.exe
exqlorer.exe
wmptray.exe
userinit.exe
netcomms.exe
nsysrunex.exe
vmdetdhc.exe
Crypt16.exe
dionpis.exe
fiosectc.exe
bincdwsa.exe
ptshell.exe
dndsioc.exe
mciservice.exe
daudi.exe
anistio.exE
huifitc.exe
dbhlp32.exe
WINSvr64.exe
WinAvXX.exe
sa_exe.exe
338448W.exe
yuiabct.exe
mfchlp64.exe
tciocp64.exe
msauc.exe
fmsjhif.exe
winsysse.exe
winter.exe
explore.exe
portsv.exe

Remove Trojan.SystemHijack registry entries:

HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN anistio
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN bincdwsa
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN dbhlp32
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN dionpis
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN dndsioc
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN fiosectc
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN fmsjhif
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN huifitc
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN lsass driver
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN mfchlp64
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN ptshell
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN sm
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN tciocp64
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN vmdetdhc.exe
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN WinAVX
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN WINSvr64
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN WinSys
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN yuiabct
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUNDaudi
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUNDoNotDelete
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUNUndefined
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSNTCURRENTVERSIONWINLOGONUSERINIT userinit
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesMonitoring LAN Service
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesMsSecurity Updated
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesPlug and Play (RPC)
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesWindows Network Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ anistio
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ bincdwsa
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ dbhlp32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ dionpis
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ dndsioc
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ explorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ fiosectc
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ fmsjhif
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ huifitc
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lsass driver
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mfchlp64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ptshell
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sm
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ tciocp64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vmdetdhc.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WinAVX
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WINSvr64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WinSys
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WmpTray
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ yuiabct
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Daudi
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\DoNotDelete
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Undefined
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Monitoring LAN Service
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MsSecurity Updated
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Plug and Play (RPC)
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Windows Network Service
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.