Dmitry Sokolov recommends UnHackMe!
UnHackMe is a powerful tool against malware.UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!
TROJ_GEN.R01H1CR also known as Adware.BHO.WVC, Adware.BHO.WVC, Artemis!8F70BA199F52.
Malware Analysis of TROJ_GEN.R01H1CR – ONETAB.DLL
Created files:
%APPDATA%\MOZILLA\FIREFOX\PROFILES\RPORE73W.DEFAULT\EXTENSIONS.SQLITE
%APPDATA%\ONETAB\ONETAB.CRX
%APPDATA%\ONETAB\ONETAB.DLL
%APPDATA%\ONETAB\UNINSTALL.EXE
Autostart registry keys:
HKLM\SOFTWARE\CLASSES\CLSID\{16ADEA98-D215-4F51-80AF-5E5ED660B9C0}\INPROCSERVER32\: “%APPDATA%\ONETAB\ONETAB.DLL”
HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\CBNOCFNJKMLLJBFGPKBHEFNLPBIEMHIF\PATH: “%APPDATA%\ONETAB\ONETAB.CRX”
HKLM\Software\Google\Chrome\Extensions\cbnocfnjkmlljbfgpkbhefnlpbiemhif\version: “1.0”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\OneTab\DisplayName: “OneTab”
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ONETAB\UNINSTALLSTRING: “%APPDATA%\ONETAB\UNINSTALL.EXE”
Detected by UnHackMe:
ONETAB.DLL
DEFAULT LOCATION: %APPDATA%\ONETAB\ONETAB.DLL
Dropper hash(md5): ddcd092ead37353d87cc3ce20b0c1432
UnHackMe
removes malware invisible for your antivirus!
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.