mcshield.exe – Trojan Kazy

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

mcshield.exe – Trojan Kazy removal

FileVirus Alias
mcshield.exe Trojan Kazy
mcshield.exe Fake Antivirus Winwebsec
mcshield.exe Fake Antivirus SecurityTool
mcshield.exe Trojan Kryptik
mcshield.exe Trojan CI
mcshield.exe Trojan FakeAV

Created files:

%Program Files%\Internet Explorer\Connection Wizard\avguard.exe – Trojan Kazy
%WinDir%\mcshield.exe – Trojan Kazy

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\SonyAgent: %WinDir%\mcshield.exe

Detected by UnHackMe:

mcshield.exe
Default location: %WinDir%\mcshield.exe

Dropper information:
SHA256: f0603f52503c221eb809ff1d11dd55ff8cdd5ebdd277ec3e86aa42976a479f7e
SHA1: 4bb3cff44289a50089951e43c472e3b829e82ad8
MD5: abd3dfa49f3bdee25782bef3c5421d4d
File size: 832512 bytes

Leave a Reply