videoati0.sys - Dangerous
%sysdir%\drivers\videoati0.sys
Manual removal instructions:
Antivirus Report of %sysdir%\drivers\videoati0.sys:
%sysdir%\drivers\videoati0.sys
VideoAti0.sys is rootkit Trojan.Nailuj-A.
VideoAti0.sys is used to hide files, processes and registry.
VideoAti0.sys is a kernel mode rootkit.
Rootkit contacts remote hacker server using HTTP session.
Related files:
%WinDir%\lib
%WinDir%\stdie.dll
%SysDir%\VideoAti0.dll
%SysDir%\VideoAti0.exe
%SysDir%\comctl3.srg
%SysDir%\delself.batd
%SysDir%\drivers\VideoAti0.sys
Added to registry:
HKCR\CLSID\(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Interface\(13D90754-C6BC-4C7E-9E9E-399C211136EF)
HKCR\TypeLib\(9FD6C9E2-54F8-48A9-BEF6-964F9C221AE4)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Gogo.IEhlprObj.1\CLSID
(default)
(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Gogo.IEhlprObj\CLSID
(default)
(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Gogo.IEhlprObj
%sysdir%\drivers\videoati0.sys | Malware |
%sysdir%\drivers\videoati0.sys | Dangerous |
%sysdir%\drivers\videoati0.sys | High Risk |
VideoAti0.sys is used to hide files, processes and registry.
VideoAti0.sys is a kernel mode rootkit.
Rootkit contacts remote hacker server using HTTP session.
Related files:
%WinDir%\lib
%WinDir%\stdie.dll
%SysDir%\VideoAti0.dll
%SysDir%\VideoAti0.exe
%SysDir%\comctl3.srg
%SysDir%\delself.batd
%SysDir%\drivers\VideoAti0.sys
Added to registry:
HKCR\CLSID\(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Interface\(13D90754-C6BC-4C7E-9E9E-399C211136EF)
HKCR\TypeLib\(9FD6C9E2-54F8-48A9-BEF6-964F9C221AE4)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Gogo.IEhlprObj.1\CLSID
(default)
(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Gogo.IEhlprObj\CLSID
(default)
(A3803141-3CF5-4D66-B7EA-8D2674FE152C)
HKCR\Gogo.IEhlprObj
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.