Solved! Use BOOTER.EXE (Trojan Downloader) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

BOOTER.EXE – Trojan Downloader removal

FileMD5Virus Alias
BOOTER.EXE 36d8190e7c1170c0c95fb05fc807ae32 Trojan Downloader
BOOTER.EXE 36d8190e7c1170c0c95fb05fc807ae32 Trojan, Suspicious File
BOOTER.EXE 36d8190e7c1170c0c95fb05fc807ae32 Trojan Generic
BOOTER.EXE 36d8190e7c1170c0c95fb05fc807ae32 Trojan Hllw
BOOTER.EXE 36d8190e7c1170c0c95fb05fc807ae32 Worm Viking
BOOTER.EXE 36d8190e7c1170c0c95fb05fc807ae32 Virus Part

BOOTER.EXE size: 408576 bytes
BOOTER.EXE hash: 36D8190E7C1170C0C95FB05FC807AE32

Created files:

C:\booter.exe
C:\DelInfo.bin
%TEMP%\Filet.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\bits\Start: 02000000
HKLM\System\CurrentControlSet\Services\Filet\Type: 01000000
HKLM\System\CurrentControlSet\Services\Filet\Start: 03000000
HKLM\System\CurrentControlSet\Services\Filet\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Filet\DisplayName: Filet
HKLM\System\CurrentControlSet\Services\Filet\ImagePath: %TEMP%\Filet.sys

Detected by UnHackMe:

BOOTER.EXE
Default location: C:\BOOTER.EXE

Dropper information:
MD5: 7bc9ef8e4d9e389f602ea35ae787d470
File size: 495616 bytes

Leave a Reply