I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
TERMS.EXE.EXE – Trojan Downloader removal
File | MD5 | Virus Alias |
---|---|---|
TERMS.EXE.EXE | e41bf4bf4d2e26142b50531f259cbe48 | Trojan Downloader |
TERMS.EXE.EXE | e41bf4bf4d2e26142b50531f259cbe48 | Trojan Buzus |
TERMS.EXE.EXE | e41bf4bf4d2e26142b50531f259cbe48 | Trojan Magania |
TERMS.EXE.EXE | e41bf4bf4d2e26142b50531f259cbe48 | Trojan Agent |
TERMS.EXE.EXE size: 28672 bytes
TERMS.EXE.EXE hash: E41BF4BF4D2E26142B50531F259CBE48
Created files:
%Program Files%\AppPatch\NetSyst69.dll
%WinDir%\Terms.EXE.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\SuperProServer\DeleteFiles: E41BF4BF4D2E26142B50531F259CBE48.EXE
HKLM\System\CurrentControlSet\Services\SuperProServer\ConnectGroup: 4899
HKLM\System\CurrentControlSet\Services\SuperProServer\Type: 10010000
HKLM\System\CurrentControlSet\Services\SuperProServer\Start: 02000000
HKLM\System\CurrentControlSet\Services\SuperProServer\DisplayName: SuperProServer
HKLM\System\CurrentControlSet\Services\SuperProServer\ImagePath: %WinDir%\Terms.EXE.exe
Detected by UnHackMe:
TERMS.EXE.EXE
Default location: %WinDir%\TERMS.EXE.EXE
Dropper information:
MD5: e41bf4bf4d2e26142b50531f259cbe48
File size: 28672 bytes
…my pc is also infected by it .
it makes window account
1. administrator account / that i have deleted 3 times but again
2. many other named account / toatal 2 account excluding administrator acc .
what kind of info does it send , or why makes another accounts
may be for remote login and for data transfer ?
plz tell me about its solution .
my ntvirus detect sm other files too that created in windows/system32 folder i.e ” xpvip.exe “