Home / Spyware Encyclopedia / Packed.pepatch.ju << Back

Recommendation to Automatically remove Packed.pepatch.ju


Our products can remove Packed.pepatch.ju and thousands of other Virus and Spyware automatically and instantly.

Packed.pepatch.ju Details


  • Category Packed
  • Discovered 6/12/2011 12:45:58 AM
  • Modified 10/3/2024 11:10:59 AM
  • Threat Level Medium
  • Category Description
    Spyware files which are compressed as they make their work undetectable by anti-virus products.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
5d365a10.exe 389171Microsoft Corporation4.72.3110.0889216131beca8a62e74e87bda965e54 
01A83E2B.EXE 303104  c7cf698535e60af1cc0fe908325a1641 
e284da3c.exe 871100  afc4b476ad331b319a9ea3d85923e5f6 
1a99995c.exe 715264  7ab842c04a51047c087beb735151e39a 
pack.exe 346112  6698b7e4b118c63d90cc0f40633b8d7e 
r.dll 15360  473b323ed4ab6baadcbf6c2b8ecdf9aa 
8196B066.EXE 30942  2421c0a7e3becc621f04e4aec4abcbc2 
58fd63c1.exe 65536noname. http://snake.gnuchina.org1.0.0.9d896703bb872513ed571c1185153d0ec 
2561cf12.exe 360448Microsoft Corporation6.0.3790.014904caf7d5c5fc24de102ae4d52e2e6 
11ea217b.exe 807526Microsoft Corporation6.0.2900.2180aeb94798983c0bc3d88cbead561b65c9 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"ilortgdg"\"%win.sys32%\keepsafe.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"dsfghjgj"\"%win.sys32%\keepsafe.exe"
..\System\CurrentControlSet\Enum\root\legacy_roxe\(Default)
..\System\CurrentControlSet\Enum\root\legacy_daohao\(Default)
..\System\CurrentControlSet\Services\daohao\(Default)
..\System\CurrentControlSet\Enum\root\legacy_graypigeonserver\(Default)
..\System\CurrentControlSet\Enum\root\legacy_rstray.exe\(Default)
..\System\CurrentControlSet\Services\rstray.exe\(Default)
..\System\CurrentControlSet\Enum\root\legacy_rcmdsvc\(Default)
..\System\CurrentControlSet\Enum\root\legacy_utilitymangerr\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware