WATERMARK.EXE – Worm AMN

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

WATERMARK.EXE – Worm AMN removal

File MD5 Virus Alias
WATERMARK.EXE 94f2f6ffbba8e7644668b51b39983916 Worm AMN
WATERMARK.EXE 94f2f6ffbba8e7644668b51b39983916 Trojan SuspiciousFile
WATERMARK.EXE 94f2f6ffbba8e7644668b51b39983916 Trojan XPACK
WATERMARK.EXE 94f2f6ffbba8e7644668b51b39983916 Trojan Generic
WATERMARK.EXE 94f2f6ffbba8e7644668b51b39983916 Trojan Eldorado
WATERMARK.EXE 94f2f6ffbba8e7644668b51b39983916 Trojan Diple

WATERMARK.EXE size: 61869 bytes
WATERMARK.EXE hash: 94F2F6FFBBA8E7644668B51B39983916

Created files:

%Program Files%\Microsoft\WaterMark.exe
%SysDir%\rundll32mgr.exe
%Common AppData%\Apple Computer\Installer Cache\Safari 5.34.52.7\SetupAdmin.exe
%Local AppData%\Google\Chrome\Application\17.0.963.56\avcodec-53.dll
%Local AppData%\Google\Chrome\Application\17.0.963.56\avformat-53.dll
%Local AppData%\Google\Chrome\Application\17.0.963.56\avutil-51.dll

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: c:\windows\System32\userinit.exe,,c:\program files\Microsoft\watermark.exe

Detected by UnHackMe:

WATERMARK.EXE
Default location: %PROGRAM FILES%\MICROSOFT\WATERMARK.EXE

Dropper information:
MD5: 00fcf99fd6c8e5b4fcbd9a48c0376754
File size: 1266026 bytes

Leave a Reply