CLOUD AV 2012V121.EXE – Rootkit ZeroAccess

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

CLOUD AV 2012V121.EXE – Rootkit ZeroAccess removal

File MD5 Virus Alias
CLOUD AV 2012V121.EXE a99ed12816a2a5c2cc2a530ac9e8ebed Rootkit ZeroAccess
CLOUD AV 2012V121.EXE a99ed12816a2a5c2cc2a530ac9e8ebed Trojan SuspiciousFile
CLOUD AV 2012V121.EXE a99ed12816a2a5c2cc2a530ac9e8ebed Trojan Malware.Obscu
CLOUD AV 2012V121.EXE a99ed12816a2a5c2cc2a530ac9e8ebed Trojan Generic
CLOUD AV 2012V121.EXE a99ed12816a2a5c2cc2a530ac9e8ebed Trojan Downloader
CLOUD AV 2012V121.EXE a99ed12816a2a5c2cc2a530ac9e8ebed Rootkit TDSS

CLOUD AV 2012V121.EXE size: 2795008 bytes
CLOUD AV 2012V121.EXE hash: A99ED12816A2A5C2CC2A530AC9E8EBED

Created files:

%SysDir%\Cloud AV 2012v121.exe
%AppData%\dwme.exe
%Temp%\dwme.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\R7ikWS6uQ5m4gL8234A: %WinDir%\System32\Cloud AV 2012v121.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\t55mPZ4gn3: %AppData%\dwme.exe

Detected by UnHackMe:

CLOUD AV 2012V121.EXE
Default location: %SYSDIR%\CLOUD AV 2012V121.EXE

Dropper information:
MD5: a99ed12816a2a5c2cc2a530ac9e8ebed
File size: 2795008 bytes

Leave a Reply