Fake Antivirus SecurityTool – 41175839.exe – 35533195d6023c5fd533df5c0c833513

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

Fake Antivirus SecurityTool
Also known as: Trojan Crypt, Trojan FakeAV
SHA256: 07992cc14e0dd24703963c541d89007a1e60488817287ecedb0d9f8753f9793c
SHA1: d91d474b54a7d4c7ef8d76f3a65a7cd0a069619a
MD5: 35533195d6023c5fd533df5c0c833513
File size: 844288 bytes

Created files:

%SysDir%\config\systemprofile\Local Settings\Application Data\41175839.exe – Fake Antivirus SecurityTool
%WinDir%\TEMP\1579930.bat – Fake Antivirus SecurityTool

Fake Antivirus SecurityTool created autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\35533195D6023C5FD533DF5C0C833513: “%WinDir%\System32\config\Systemprofile\Local Settings\Application Data\41175839.exe” 0 35

Leave a Reply