SkypePM.exe – Rootkit TDSS

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SkypePM.exe – Rootkit TDSS removal

File Virus Alias
SkypePM.exe Rootkit TDSS
SkypePM.exe Trojan Kryptik
SkypePM.exe Trojan Generic
SkypePM.exe Trojan Kazy
SkypePM.exe Trojan Agent
SkypePM.exe Trojan-Ransom Winlock

Created files:

%SysDir%\config\systemprofile\Local Settings\Application Data\Skype\SkypePM.exe – Rootkit TDSS

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SkypePM: %WinDir%\System32\config\Systemprofile\Local Settings\Application Data\Skype\SkypePM.exe

Detected by UnHackMe:

SkypePM.exe
Default location: %SysDir%\config\systemprofile\Local Settings\Application Data\Skype\SkypePM.exe

Dropper information:
SHA256: 0d131d74f97f3d118e9b24fab5cbdf44c210e2c3e0874138b12b645e6a9a6f70
SHA1: b23e761657604767a110a151a7f0be00a97bc33c
MD5: 0487532782b6b8eea70f1538c45b4788
File size: 47104 bytes

Leave a Reply