Dmitry Sokolov recommends UnHackMe!
UnHackMe is a powerful tool against malware.UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!
TR/Rogue.8556460.13 also known as PE_QUERVAR.F-O, Dropper/Win32.Dorifel, Virus:Win32/Quervar.gen!B.
Malware Analysis of TR/Rogue.8556460.13 – 025888.EXE
Created files:
C:\sand-box\9d509a4672e9c49b7724aa53161cf268.exe–.doc
C:\sand-box\~$509a4672e9c49b7724aa53161cf268.exe–.doc
%Appdata%\00CCF8\025888.exe
%Appdata%\00CCF8\025888.exe.lnk
%Temp%\~DF696F.tmp
Autostart registry keys:
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\load: “C:\DOCUME~1\ADMINI~1\APPLIC~1\00CCF8\025888~1.LNK”
Detected by UnHackMe:
025888.EXE
Default location: %APPDATA%\00CCF8\025888.EXE
Dropper hash(md5): 9d509a4672e9c49b7724aa53161cf268
UnHackMe
removes malware invisible for your antivirus!
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.