n – Rootkit ZeroAccess

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

n – Rootkit ZeroAccess removal

File Virus Alias
n Rootkit ZeroAccess
n Trojan Kryptik
n Trojan Birele
n Trojan FakeAV
n Trojan Agent
n Trojan Crypt

Created files:

C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\@ – Rootkit ZeroAccess
C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n – Rootkit ZeroAccess

Autostart registry keys:

HKCU\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32\ThreadingModel: Both
HKCU\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32 : C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n.

Detected by UnHackMe:

n
Default location: C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n

Dropper information:
SHA256: 7f31936c4cc17e97859ed130ff6cf76575dcfad0efd6bc77c1410dd15fb4445d
SHA1: 42b3d7f1af008454e16ab2874c3c913b619f7761
MD5: 13c46a82472a0234b3c9fa313ef489f6
File size: 203264 bytes

Leave a Reply