Dmitry Sokolov recommends UnHackMe!
UnHackMe is a powerful tool against malware.UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!
TrojanDownloader.VB.ah also known as Downloader/Win32.VB, Downloader, Trojan.Win32.VB.
Malware Analysis of TrojanDownloader.VB.ah – 4CMD.EXE
Created files:
%WinDir%\$NtUninstallKB62478$\TxR\{6cced301-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
%Profile%\2cmd.exe
%Profile%\4cmd.exe
%Profile%\doxij.exe
%Profile%\yY6uXQd3.exe
Autostart registry keys:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\doxij: “%Profile%\doxij.exe /x”
Detected by UnHackMe:
4CMD.EXE
Default location: %PROFILE%\4CMD.EXE
Dropper hash(md5): c5dc79083114b5d3524b7b592cd73a92
UnHackMe
removes malware invisible for your antivirus!
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.