{361E80BE-388B-4270-BF54-A10C2B756504} – Adware Yontoo

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

regsvr32.exe – Adware Yontoo removal

FileVirus Alias
regsvr32.exe Adware Yontoo
regsvr32.exe Trojan Agent

Created files:

%WinDir%\TEMP\30DDD87D3312B6D2D49C351B09A422F8-0740.exe – Adware Yontoo
%WinDir%\TEMP\70DF53EB\x64\regsvr32.exe – Adware Yontoo
%WinDir%\TEMP\70DF53EB\x86\regsvr32.exe – Adware Yontoo
%WinDir%\TEMP\YontooSetup-S-0EF8.exe – Adware Yontoo
%WinDir%\TEMP\YontooSetup-S.exe – Adware Yontoo
%Common AppData%\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.exe – Adware Yontoo

Detected by UnHackMe:

regsvr32.exe
Default location: %WinDir%\TEMP\70DF53EB\x64\regsvr32.exe

Dropper information:
SHA256: 0a341255e7e4405e51479214bf8728eca15da6a2aed9699d90256c932793d86c
SHA1: 6864a80bf5f02bf73db25d2e414c9188e695a8dd
MD5: 30ddd87d3312b6d2d49c351b09a422f8
File size: 1203408 bytes

Leave a Reply