sony.exe – Trojan FakeAV

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

sony.exe – Trojan FakeAV removal

File Virus Alias
sony.exe Trojan FakeAV
sony.exe Trojan Generic
sony.exe Fake Antivirus Winwebsec
sony.exe Trojan Eldorado
sony.exe Trojan Kryptik

Created files:

%WinDir%\sony.exe – Trojan FakeAV
%SysDir%\drivers\npf.sys – Trojan FakeAV

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\SonyAgent: %WinDir%\sony.exe

Detected by UnHackMe:

sony.exe
Default location: %WinDir%\sony.exe

Dropper information:
SHA256: ec58639afb30bbd270bdc009c5f8cd64f30d85418962ecf3ccbda1e1a01736cb
SHA1: dec4970a5c77bfd145dbc590d375b5d7847b6d1b
MD5: 79fea2152f042c96893f028489e7008a
File size: 1520098 bytes

Leave a Reply