ZSUP.EXE – Suspicious File

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

ZSUP.EXE – Suspicious File removal

File MD5 Virus Alias
ZSUP.EXE 3192675d5ad47fa6f3989410d200e828 Suspicious File
ZSUP.EXE 3192675d5ad47fa6f3989410d200e828 Trojan Generic

ZSUP.EXE size: 40960 bytes
ZSUP.EXE hash: 3192675D5AD47FA6F3989410D200E828

Created files:

%Program Files%\HuaCi\huaci\abhcop.sys
%Program Files%\HuaCi\huaci\hcalway.sys
%Program Files%\HuaCi\huaci\Mouse1.dll
%Program Files%\HuaCi\huaci\mUin.exe
%Program Files%\HuaCi\huaci\SearchM.dll
%Program Files%\HuaCi\huaci\zsearch.exe
%Program Files%\HuaCi\huaci\zsup.exe
%Program Files%\HuaCi\huaci\_uninstall
%TEMP%\9f3d75a2-a1e6-4b92-8190-54e9a0fa8369\flashplayer6installer.exe
%TEMP%\9f3d75a2-a1e6-4b92-8190-54e9a0fa8369\setup1209.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MoveSearch: %Program Files%\HuaCi\huaci\zsearch.exe

Detected by UnHackMe:

ZSUP.EXE
Default location: %PROGRAM FILES%\HUACI\HUACI\ZSUP.EXE

Dropper information:
MD5: 10a7cb364c27515446794cdcd80c3c26
File size: 1950518 bytes

Leave a Reply