Dmitry Sokolov recommends UnHackMe!
UnHackMe is a powerful tool against malware.UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!
PUA.Tencent also known as a variant of Win32/Tencent.G potentially unwanted, malicious_confidence_88% (D), Win32:Malware-gen.
Malware Analysis of PUA.Tencent – N2U29.EXE
Created files:
%APPDATA%\NSFE3C8.ICO
%APPDATA%\NSFE3C8.TMP
%APPDATA%\TENCENT\QQPCMGR\DOWNLOAD\N2U29.EXE
%APPDATA%\ZNG.URL
%PROFILE%\DESKTOP\.LNK
Autostart registry keys:
HKLM\System\CurrentControlSet\services\QiyiService\ImagePath: “%Program Files%\IQIYI Video\LStyle\5.5.33.3550\QiyiService.exe”
HKLM\System\CurrentControlSet\services\QiyiService\DisplayName: “IQIYI Video Platform Service”
Detected by UnHackMe:
N2U29.EXE
DEFAULT LOCATION: %APPDATA%\TENCENT\QQPCMGR\DOWNLOAD\N2U29.EXE
Dropper hash(md5): ee27b964f0d19de0cbccee9e8cea2518
UnHackMe
removes malware invisible for your antivirus!
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.