n – Rootkit ZeroAccess

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

n – Rootkit ZeroAccess removal

File Virus Alias
n Rootkit ZeroAccess
n Trojan Crypt

Created files:

C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\@ – Rootkit ZeroAccess
C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n – Rootkit ZeroAccess

Autostart registry keys:

HKCU\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32\ThreadingModel: Both
HKCU\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32 : C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n.

Detected by UnHackMe:

n
Default location: C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n

Dropper information:
SHA256: 821a98aa269938e210d6e0db073563bf7e166b63189b6a5f36b6ba7d0c6601c5
SHA1: f0120aea6deface69f9e93ae36a45fa0f73d9a9f
MD5: fce449990c9c8b0d2760137bef09c961
File size: 160768 bytes

Leave a Reply