yadrive32.exe – Worm Pushbot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

yadrive32.exe – Worm Pushbot removal

FileVirus Alias
yadrive32.exe Worm Pushbot
yadrive32.exe Worm Autorun
yadrive32.exe Trojan Kazy
yadrive32.exe Trojan Generic
yadrive32.exe Backdoor IRCBot
yadrive32.exe Trojan Kryptik

Created files:

%WinDir%\yadrive32.exe – Worm Pushbot

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Microsoft Driver Setup: %WinDir%\yadrive32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Driver Setup: %WinDir%\yadrive32.exe

Detected by UnHackMe:

yadrive32.exe
Default location: %WinDir%\yadrive32.exe

Dropper information:
SHA256: a81a7f1cf8d3489544feae74157784ec87a36d46ccba36cd4cbd7ce6ba778036
SHA1: ce5cec52ed25e7ac5baa6382554c571c58ed516f
MD5: 0a84230a5f5a79f79474b556f7482208
File size: 58368 bytes

Leave a Reply