SSAN.EXE – Worm Autoit

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SSAN.EXE – Worm Autoit removal

FileMD5Virus Alias
SSAN.EXE 312a4af6d0bbca67f1e68f59de886928 Worm Autoit
SSAN.EXE 312a4af6d0bbca67f1e68f59de886928 Trojan SuspiciousFile
SSAN.EXE 312a4af6d0bbca67f1e68f59de886928 Trojan Generic
SSAN.EXE 312a4af6d0bbca67f1e68f59de886928 Trojan Downloader
SSAN.EXE 312a4af6d0bbca67f1e68f59de886928 Trojan CI

SSAN.EXE size: 528879 bytes
SSAN.EXE hash: 312A4AF6D0BBCA67F1E68F59DE886928

Created files:

%SysDir%\Ssam.exe
%SysDir%\Ssan.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\SampleService\Type: 10000000
HKLM\System\CurrentControlSet\Services\SampleService\Start: 02000000
HKLM\System\CurrentControlSet\Services\SampleService\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\SampleService\DisplayName: Sample Service
HKLM\System\CurrentControlSet\Services\SampleService\ImagePath: %WinDir%\System32\Ssan.exe
HKLM\System\CurrentControlSet\Services\SampleService\ObjectName: LocalSystem

Detected by UnHackMe:

SSAN.EXE
Default location: %SYSDIR%\SSAN.EXE

Dropper information:
MD5: 312a4af6d0bbca67f1e68f59de886928
File size: 528879 bytes

Leave a Reply