THEAM.EXE – Trojan SuspiciousFile

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

THEAM.EXE – Trojan SuspiciousFile removal

FileMD5Virus Alias
THEAM.EXE d072e1a06e3deb7bd028327a01d88213 Trojan SuspiciousFile

THEAM.EXE size: 274456 bytes
THEAM.EXE hash: D072E1A06E3DEB7BD028327A01D88213

Created files:

%AppData%\theam\common\bin\RemoveTAM.exe
%AppData%\theam\common\bin\TAMGuard.exe
%AppData%\theam\common\bin\TAMUpdate.exe
%AppData%\theam\common\bin\TheAM.exe
%SysDir%\mali.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\TheAM: %WinDir%\System32\config\Systemprofile\Application Data\theam\common\bin\TAMUpdate.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\guardtam: %WinDir%\System32\config\Systemprofile\Application Data\theam\common\bin\tamguard.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\tamgrd: %WinDir%\System32\config\Systemprofile\Application Data\theam\common\bin\TheAm.exe

Detected by UnHackMe:

THEAM.EXE
Default location: %APPDATA%\THEAM\COMMON\BIN\THEAM.EXE

Dropper information:
MD5: 04e09092f1d671c83ac911657c2aa8d1
File size: 839680 bytes

Leave a Reply