Home / Spyware Encyclopedia / Rootkit.Protector << Back

Recommendation to Automatically remove Rootkit.Protector


Our products can remove Rootkit.Protector and thousands of other Virus and Spyware automatically and instantly.

Rootkit.Protector Details


  • Category Rootkit
  • Discovered 1/30/2009 10:30:33 AM
  • Modified 7/31/2023 5:21:35 PM
  • Threat Level Medium
  • Category Description
    A Rootkit is a collection of tools (programs) that enable administrator-level (root) access to a computer or computer network. A Rootkit may consist of spyware and other programs that: monitor traffic and keystrokes; create a "backdoor" into the system for the hacker's use; alter log files; attack other machines on the network; and alter existing system tools to escape detection. They are usually hidden and difficult to clean as they ingranulate deeply within the Registry and system files.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
90441BF5.EXE 39936  7239adbb77f5ec6a5d4c767e59199d8f 
312633C2.EXE 32768  304adcfc4861baed5166eb56771de890 
DE5F8ABF.EXE 32512  285971440e109e0ea9bd0548c775cfc2 
68d12904.exe 29696  e46db82ec25fa1588b99af19ad5b450730/12/2022
9ED47A67.EXE 46592  0557953dd6d65cbbd2a4ea2d9c4a64a6 
0BAB7002.EXE 32768  16abd8c7e038dde57aab331285564205 
B3D64194.EXE 32768  2afab2e394476337b86fa62594acfdf1 
AEE08DB2.EXE 32768  3e18aa38d7bbc273e7ef0877271b7643 
9298A771.EXE 32256  4cb6429cd45b5000f647e33ef11e4562 
09F4775C.EXE 46592  65626f446bd24ada91e132a9d98006de 

The following Registry Entries were created:
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Qrg04.sys\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\ati1ncxx.sys\(Default)
..\System\CurrentControlSet\Services\ati1ncxx\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Xnt06.sys\(Default)
..\System\CurrentControlSet\Services\Xnt06\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Bcp68.sys\(Default)
..\System\CurrentControlSet\Services\Bcp68\(Default)
..\System\CurrentControlSet\Services\ati0vjxx\(Default)
..\System\CurrentControlSet\Services\hpt3xxDummy\(Default)
..\System\CurrentControlSet\Services\mskserviceDummy\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware