GGT.EXE – Adware Rugo

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

GGT.EXE – Adware Rugo removal

FileMD5Virus Alias
GGT.EXE 9b7c743db061a231b74bcdcaec37a10f Adware Rugo
GGT.EXE 9b7c743db061a231b74bcdcaec37a10f Trojan Eldorado
GGT.EXE 9b7c743db061a231b74bcdcaec37a10f Trojan Adload
GGT.EXE 9b7c743db061a231b74bcdcaec37a10f Trojan Agent

GGT.EXE size: 380928 bytes

Created files:

C:\Windows\System32\DOWIRE.sys
C:\Windows\System32\ggt.exe
C:\Windows\System32\vic.exe
C:\Windows\System32\xinrui.exe
C:\Windows\System32\z2.exe
C:\Windows\System32\z4.exe
C:\Windows\System32\z5.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\DOWIRE\Type: 01000000
HKLM\System\CurrentControlSet\Services\DOWIRE\Start: 03000000
HKLM\System\CurrentControlSet\Services\DOWIRE\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\DOWIRE\DisplayName: DOWIRE
HKLM\System\CurrentControlSet\Services\DOWIRE\ImagePath: C:\Windows\System32\DOWIRE.sys

Detected by UnHackMe:

GGT.EXE
Default location: %SYSDIR%\GGT.EXE

Leave a Reply