not-a-virus:RiskTool.Win32.StartPage.khy
not-a-virus:RiskTool.Win32.StartPage.khy also known as DR/Autoit.hjf, Dropper.AutoIt, W32.HfsAtITIST.DC24. Malware Analysis of not-a-virus:RiskTool.Win32.StartPage.khy – IJZRQAP.EXE Created files: %PROFILE%\FAVORITES\????.URL %Program Files%\360\360safe\deepscan\speedmem2.hg %TEMP%\IJZRQAP.EXE %PROFILE%\FAVORITES\9.9??.URL %PROFILE%\FAVORITES\LINKS\9.9??.URL Autostart registry keys: HKLM\Software\Classes\CLSID\{B5EAD1DB-7C18-4954-8820-01733BC08C82}\shell\Open\Command\: “”%Program Files%\Internet Explorer\iexplore.exe”” Detected by UnHackMe: IJZRQAP.EXE DEFAULT LOCATION: %TEMP%\IJZRQAP.EXE Dropper hash(md5): 08e611f02490d7caf28ae9727ff2e4cd UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most antivirus software. UnHackMe is 100%…