FBDSVCMAN.EXE – Adware KorAd

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

FBDSVCMAN.EXE – Adware KorAd removal

FileMD5Virus Alias
FBDSVCMAN.EXE ea650435120595cbc6029c437ccfe582 Adware KorAd

FBDSVCMAN.EXE size: 79464 bytes
FBDSVCMAN.EXE hash: EA650435120595CBC6029C437CCFE582

Created files:

%AppData%\SpeedDownload\fbdchk.exe
%AppData%\SpeedDownload\FBDManager.exe
%AppData%\SpeedDownload\FBDMgr.dll
%AppData%\SpeedDownload\FBDSvcMan.exe
%AppData%\SpeedDownload\FBDUnist.exe
%AppData%\SpeedDownload\SpeedGet.exe
%AppData%\SpeedDownload\SpeedGet.tlb

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\SpeedDownload: %WinDir%\System32\config\Systemprofile\Application Data\SpeedDownload\FBDManager.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\rpga: %WinDir%\System32\config\Systemprofile\Application Data\SpeedDownload\rpgchk.exe
HKLM\System\CurrentControlSet\Services\FBDSvcman\Type: 10010000
HKLM\System\CurrentControlSet\Services\FBDSvcman\Start: 02000000
HKLM\System\CurrentControlSet\Services\FBDSvcman\DisplayName: FBDSvcman
HKLM\System\CurrentControlSet\Services\FBDSvcman\ImagePath: %WinDir%\System32\config\Systemprofile\Application Data\SpeedDownload\FBDSvcMan.exe

Detected by UnHackMe:

FBDSVCMAN.EXE
Default location: %APPDATA%\SPEEDDOWNLOAD\FBDSVCMAN.EXE

Dropper information:
MD5: eb1c785a2aedc5133d913d127b6a8d54
File size: 921848 bytes

Leave a Reply