SSAN.EXE – Worm Autoit

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SSAN.EXE – Worm Autoit removal

File MD5 Virus Alias
SSAN.EXE 5718c5a6aeebcb6446567a4eedc105c2 Worm Autoit
SSAN.EXE 5718c5a6aeebcb6446567a4eedc105c2 Trojan SuspiciousFile
SSAN.EXE 5718c5a6aeebcb6446567a4eedc105c2 Trojan Artemis
SSAN.EXE 5718c5a6aeebcb6446567a4eedc105c2 Trojan Downloader
SSAN.EXE 5718c5a6aeebcb6446567a4eedc105c2 Trojan CI
SSAN.EXE 5718c5a6aeebcb6446567a4eedc105c2 Trojan Jorik

SSAN.EXE size: 471552 bytes
SSAN.EXE hash: 5718C5A6AEEBCB6446567A4EEDC105C2

Created files:

%SysDir%\Ssam.exe
%SysDir%\Ssan.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\SampleService\Type: 10000000
HKLM\System\CurrentControlSet\Services\SampleService\Start: 02000000
HKLM\System\CurrentControlSet\Services\SampleService\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\SampleService\DisplayName: Sample Service
HKLM\System\CurrentControlSet\Services\SampleService\ImagePath: %WinDir%\System32\Ssan.exe
HKLM\System\CurrentControlSet\Services\SampleService\ObjectName: LocalSystem

Detected by UnHackMe:

SSAN.EXE
Default location: %SYSDIR%\SSAN.EXE

Dropper information:
MD5: 5718c5a6aeebcb6446567a4eedc105c2
File size: 471552 bytes

Leave a Reply