Home / Spyware Encyclopedia / IM.Hohack << Back

Recommendation to Automatically remove IM.Hohack


Our products can remove IM.Hohack and thousands of other Virus and Spyware automatically and instantly.

IM.Hohack Details


  • Category IM
  • Discovered 4/20/2022 11:52:59 AM
  • Modified 4/20/2022 3:17:35 PM
  • Threat Level Medium
  • Category Description
    A threat that is capable to cause Denial-Of-Service attacks against other instant messenger client systems.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
1c95983fc947a617b9f17f2ad8c85c99.vir.exe 143360Anti-Msn3.001c95983fc947a617b9f17f2ad8c85c99 
f29c4a8e25812972a029bf248177050f.exe 126976  f29c4a8e25812972a029bf248177050f20/04/2022
TROJAN-DROPPER.WIN32.SMALL.HT.EXE 1460  3f2c0887a4d5ea82c5848b442468d363 
TROJAN-DROPPER.WIN32.SMALL.HQ.EXE 24768  5165b716668fe69f75c097b61db92ed6 
TROJAN-DROPPER.WIN32.SMALL.HK.EXE 41256  82dc8400313f19876c8564ce0a96b2c5 
TROJAN-DROPPER.WIN32.SMALL.HJ.EXE 5122  9669035a7059f914f40309e5003466cb 
TROJAN-DROPPER.WIN32.SMALL.HS.EXE 28672 1.0.0.2f77dd5498e7d8421a29d6cf2ff6d2a84 
virtual girl working.exe 2162080Excellent5.1.2600.00fc27c5d93eebb9f95eb22d99a41a7b9 
winamp pro v5 final winall incl keymaker working.exe 2160080Excellent5.1.2600.0323ca2b3a62545ec0e3be368be4fbc5b 
virtual girl sasch_full working.exe 2160080Excellent5.1.2600.0323ca2b3a62545ec0e3be368be4fbc5b 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Windows Deafult Configuration"\"%WIN%\svchost.exe"
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"WinSvc32.exe"\"%DAS.AU.SM.P-STARTUP%\WinSvc32.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Services Process"\"%WIN.SYS32%\config\services.exe"
..\Software\Microsoft\Wisstg\(Default)
..\Software\Classes\Clsid\{E70ABC30-1800-44CB-BC5F-AE9E851FDB8B}\(Default)
..\Software\Classes\Clsid\{7E5124AB-5652-482D-A0B5-610541735F41}\(Default)
..\Software\Classes\Clsid\{3DCAF106-C7A6-4D4D-8C4C-00B918D4101B}\(Default)
..\Software\Microsoft\INTERNET EXPLORER\URLSEARCHHOOKS\"{FDE3577A-6254-181C-4E11-339E4F746BD3}"
..\Software\WEBSITEVIEWER\(Default)
..\Software\Classes\mailhook.mailto\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware