@ – Rootkit ZeroAccess

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

@ – Rootkit ZeroAccess removal

File Virus Alias
@ Rootkit ZeroAccess
@ Trojan Agent

Created files:

C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\@ – Rootkit ZeroAccess
C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n – Rootkit ZeroAccess

Autostart registry keys:

HKCU\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32\ThreadingModel: Both
HKCU\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32 : C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\n.

Detected by UnHackMe:

@
Default location: C:\RECYCLER\S-1-5-21-515967899-854245398-1708537768-1003\$ae229ccd6a28e4e88a473737ee4e0fed\@

Dropper information:
SHA256: 63503c7081a4e4b13e56b47be30416e367ed777215f9bb78557553b073c2baab
SHA1: b590ccd0536805343673dde332a964fe5e2321f3
MD5: 754a4710a041f25f652688a1aebec2d4
File size: 165376 bytes

Leave a Reply