Solved! Use MICR0S0FT.EXE (Backdoor Maximus) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

MICR0S0FT.EXE – Backdoor Maximus removal

File MD5 Virus Alias
MICR0S0FT.EXE ad160b6138541565839702e7fea7b4e9 Backdoor Maximus
MICR0S0FT.EXE ad160b6138541565839702e7fea7b4e9 Trojan VBTrojan
MICR0S0FT.EXE ad160b6138541565839702e7fea7b4e9 Trojan SuspiciousFile
MICR0S0FT.EXE ad160b6138541565839702e7fea7b4e9 Trojan Rimecud
MICR0S0FT.EXE ad160b6138541565839702e7fea7b4e9 Trojan Crypt

MICR0S0FT.EXE size: 57632 bytes
MICR0S0FT.EXE hash: AD160B6138541565839702E7FEA7B4E9

Created files:

%SysDir%\Micr0s0ft.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{7BA01B33-5DC6-7EE3-1AC1-2D8D2C7C3D3E}\StubPath: %WinDir%\System32\Micr0s0ft.exe 2
HKLM\Software\Microsoft\Windows\CurrentVersion\run\Micr0s0ft: %WinDir%\System32\Micr0s0ft.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\run\Micr0s0ft: %WinDir%\System32\Micr0s0ft.exe

Detected by UnHackMe:

MICR0S0FT.EXE
Default location: %SYSDIR%\MICR0S0FT.EXE

Dropper information:
MD5: ad160b6138541565839702e7fea7b4e9
File size: 57632 bytes

Leave a Reply