WATERMARK.EXE – Worm AMN

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WATERMARK.EXE – Worm AMN removal

FileMD5Virus Alias
WATERMARK.EXE 0e0f0ae845d89c22bb6385f64a6b85fd Worm AMN
WATERMARK.EXE 0e0f0ae845d89c22bb6385f64a6b85fd Trojan Generic
WATERMARK.EXE 0e0f0ae845d89c22bb6385f64a6b85fd Trojan Eldorado
WATERMARK.EXE 0e0f0ae845d89c22bb6385f64a6b85fd Trojan Krap
WATERMARK.EXE 0e0f0ae845d89c22bb6385f64a6b85fd Trojan Agent
WATERMARK.EXE 0e0f0ae845d89c22bb6385f64a6b85fd Trojan ZBot

WATERMARK.EXE size: 61357 bytes
WATERMARK.EXE hash: 0E0F0AE845D89C22BB6385F64A6B85FD

Created files:

%Program Files%\Microsoft\WaterMark.exe
%SysDir%\rundll32mgr.exe
%Common AppData%\Apple Computer\Installer Cache\Safari 5.34.52.7\SetupAdmin.exe
%Local AppData%\Google\Chrome\Application\17.0.963.56\avcodec-53.dll
%Local AppData%\Google\Chrome\Application\17.0.963.56\avformat-53.dll
%Local AppData%\Google\Chrome\Application\17.0.963.56\avutil-51.dll
%Local AppData%\Google\Chrome\Application\17.0.963.56\chrome.dll

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: c:\windows\System32\userinit.exe,,c:\program files\Microsoft\watermark.exe

Detected by UnHackMe:

WATERMARK.EXE
Default location: %PROGRAM FILES%\MICROSOFT\WATERMARK.EXE

Dropper information:
MD5: 6d77c3183d6ab2ed749423b947e05a11
File size: 106927 bytes

Leave a Reply