Gen:Application.Heur.Dv0@mimPFTpO

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

Gen:Application.Heur.Dv0@mimPFTpO also known as Win32:Malware-gen, Trojan.Crossrider1.24006.

Malware Analysis of Gen:Application.Heur.Dv0@mimPFTpO – 6DE42FE3-7CB8-4DC0-8DFF-FA14838263F2-4.EXE

Created files:

%Appdata%\Mozilla\Firefox\Profiles\profile.default\extensions\d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com\skin\skin.css
%Appdata%\Mozilla\Firefox\Profiles\profile.default\extensions\d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com\skin\update.css
%Program Files%\HQCinema Pro 2.1V31.03\6de42fe3-7cb8-4dc0-8dff-fa14838263f2-4.exe
%Program Files%\HQCinema Pro 2.1V31.03\6de42fe3-7cb8-4dc0-8dff-fa14838263f2-5.exe
%Program Files%\HQCinema Pro 2.1V31.03\6de42fe3-7cb8-4dc0-8dff-fa14838263f2.xpi

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\HQCinema Pro 2.1V31.03\DisplayName: “HQCinema Pro 2.1V31.03”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\HQCinema Pro 2.1V31.03\UninstallString: “%Program Files%\HQCinema Pro 2.1V31.03\Uninstall.exe /fcp=1 ”

Detected by UnHackMe:

6DE42FE3-7CB8-4DC0-8DFF-FA14838263F2-4.EXE
Default location: %PROGRAM FILES%\HQCINEMA PRO 2.1V31.03\6DE42FE3-7CB8-4DC0-8DFF-FA14838263F2-4.EXE

Dropper hash(md5): bc0bc3501cfbbe2118a79c9655919f54

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

1
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera