SVIQ.EXE – Worm Brontok

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SVIQ.EXE – Worm Brontok removal

FileMD5Virus Alias
SVIQ.EXE 4cb54ebd30f21c3bc22270f79f2dbb10 Worm Brontok
SVIQ.EXE 4cb54ebd30f21c3bc22270f79f2dbb10 Trojan SuspiciousFile
SVIQ.EXE 4cb54ebd30f21c3bc22270f79f2dbb10 Trojan Hllw
SVIQ.EXE 4cb54ebd30f21c3bc22270f79f2dbb10 Trojan Eldorado
SVIQ.EXE 4cb54ebd30f21c3bc22270f79f2dbb10 Trojan CI
SVIQ.EXE 4cb54ebd30f21c3bc22270f79f2dbb10 Worm Autorun

SVIQ.EXE size: 192512 bytes
SVIQ.EXE hash: 4CB54EBD30F21C3BC22270F79F2DBB10

Created files:

%WinDir%\dc.exe
%WinDir%\Help\Other.exe
%WinDir%\inf\Other.exe
%WinDir%\SVIQ.EXE
%WinDir%\system\Fun.exe
%SysDir%\config\Win.exe
%SysDir%\WinSit.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe %WinDir%\System32\WinSit.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dc2k5: %WinDir%\SVIQ.EXE
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Fun: %WinDir%\System\Fun.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dc: %WinDir%\dc.exe
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\load: %WinDir%\inf\Other.exe

Detected by UnHackMe:

SVIQ.EXE
Default location: %WinDir%\SVIQ.EXE

Dropper information:
MD5: 4cb54ebd30f21c3bc22270f79f2dbb10
File size: 192512 bytes

Leave a Reply