RouterPassView.exe – Trojan ADH

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

RouterPassView.exe – Trojan ADH removal

FileVirus Alias
RouterPassView.exe Trojan ADH
RouterPassView.exe Trojan Agent
RouterPassView.exe Trojan PWS
RouterPassView.exe Trojan Generic

Created files:

%Temp%\RarSFX0\ChromePass.exe – Trojan ADH
%Temp%\RarSFX0\Dialupass.exe – Trojan ADH
%Temp%\RarSFX0\iepv.exe – Trojan ADH
%Temp%\RarSFX0\Keys32.exe – Trojan ADH
%Temp%\RarSFX0\Keys64.exe – Trojan ADH
%Temp%\RarSFX0\mailpv.exe – Trojan ADH
%Temp%\RarSFX0\mspass.exe – Trojan ADH
%Temp%\RarSFX0\netpass.exe – Trojan ADH
%Temp%\RarSFX0\netpass64.exe – Trojan ADH
%Temp%\RarSFX0\open.exe – Trojan ADH
%Temp%\RarSFX0\OperaPassView.exe – Trojan ADH
%Temp%\RarSFX0\PasswordFox.exe – Trojan ADH
%Temp%\RarSFX0\Passwords.exe – Trojan ADH
%Temp%\RarSFX0\ProduKey.exe – Trojan ADH
%Temp%\RarSFX0\ProduKey64.exe – Trojan ADH
%Temp%\RarSFX0\RouterPassView.exe – Trojan ADH
%Temp%\RarSFX0\Update.exe – Trojan ADH
%Temp%\RarSFX0\WebBrowserPassView.exe – Trojan ADH
%Temp%\RarSFX0\wet.exe – Trojan ADH
%Temp%\RarSFX0\WirelessKeyView.exe – Trojan ADH
%Temp%\RarSFX0\WirelessKeyView64.exe – Trojan ADH
%Temp%\RarSFX0\__tmp_rar_sfx_access_check_841720 – Trojan ADH

Detected by UnHackMe:

RouterPassView.exe
Default location: %Temp%\RarSFX0\RouterPassView.exe

Dropper information:
SHA256: eeb22c281f6756ecbad644c116482f186e8bed26e38a86caab5f1fc249a1cd54
SHA1: abf6a334b6916064330ecafa5179158d1ead6a54
MD5: 15721d6cf896e1e3a58deb0f89d31e70
File size: 1392795 bytes

Leave a Reply