I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
KSCAN.EXE – Worm Autorun removal
File | MD5 | Virus Alias |
---|---|---|
KSCAN.EXE | d99e54f1d7af2039322110aff1dc3436 | Worm Autorun |
KSCAN.EXE | d99e54f1d7af2039322110aff1dc3436 | Trojan SuspiciousFile |
KSCAN.EXE | d99e54f1d7af2039322110aff1dc3436 | Trojan Eldorado |
KSCAN.EXE | d99e54f1d7af2039322110aff1dc3436 | Trojan CI |
KSCAN.EXE | d99e54f1d7af2039322110aff1dc3436 | Trojan Magania |
KSCAN.EXE | d99e54f1d7af2039322110aff1dc3436 | Trojan Siggen |
KSCAN.EXE size: 101376 bytes
KSCAN.EXE hash: D99E54F1D7AF2039322110AFF1DC3436
Created files:
%SysDir%\kscan.exe
Autostart registry keys:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run : %WinDir%\System32\kscan.exe
HKLM\System\CurrentControlSet\Services\Nationaljrq\Type: 10010000
HKLM\System\CurrentControlSet\Services\Nationaljrq\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nationaljrq\DisplayName: Nationalyta Instruments Domain Service
HKLM\System\CurrentControlSet\Services\Nationaljrq\ImagePath: %WinDir%\System32\kscan.exe
HKLM\System\CurrentControlSet\Services\Nationaljrq\Description: Providesmid a domain server for NI security.
Detected by UnHackMe:
KSCAN.EXE
Default location: %SYSDIR%\KSCAN.EXE
Dropper information:
MD5: d99e54f1d7af2039322110aff1dc3436
File size: 101376 bytes