WATERMARK.EXE – Worm AMN

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WATERMARK.EXE – Worm AMN removal

FileMD5Virus Alias
WATERMARK.EXE 1ae31b2089393e753e373194ce17c8cc Worm AMN
WATERMARK.EXE 1ae31b2089393e753e373194ce17c8cc Suspicious File
WATERMARK.EXE 1ae31b2089393e753e373194ce17c8cc Trojan XPACK
WATERMARK.EXE 1ae31b2089393e753e373194ce17c8cc Trojan Generic
WATERMARK.EXE 1ae31b2089393e753e373194ce17c8cc Trojan Eldorado
WATERMARK.EXE 1ae31b2089393e753e373194ce17c8cc Trojan Diple

WATERMARK.EXE size: 186368 bytes
WATERMARK.EXE hash: 1AE31B2089393E753E373194CE17C8CC

Created files:

%Program Files%\Microsoft\WaterMark.exe
%Common AppData%\Apple Computer\Installer Cache\Safari 5.34.52.7\SetupAdmin.exe
%UserProfile%\Local Settings\Application Data\Google\Chrome\Application\17.0.963.56\avcodec-53.dll
%UserProfile%\Local Settings\Application Data\Google\Chrome\Application\17.0.963.56\avformat-53.dll
%UserProfile%\Local Settings\Application Data\Google\Chrome\Application\17.0.963.56\avutil-51.dll
%UserProfile%\Local Settings\Application Data\Google\Chrome\Application\17.0.963.56\chrome.dll

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: c:\windows\System32\userinit.exe,,c:\program files\Microsoft\watermark.exe

Detected by UnHackMe:

WATERMARK.EXE
Default location: %PROGRAM FILES%\MICROSOFT\WATERMARK.EXE

Dropper information:
MD5: 08b2e8c1d5456628446921c1ca4b140e
File size: 375675 bytes

Leave a Reply