ZY2RMRCVL.EXE - Dangerous

ZY2RMRCVL.EXE

Manual removal instructions:

Antivirus Report of ZY2RMRCVL.EXE:
ZY2RMRCVL.EXE Trojan.Win32.Swisyn.bhee [Kaspersky Lab] Trojan-Spy.Win32.VB [Ikarus] packed with UPX [Kaspersky Lab].
ZY2RMRCVL.EXEDangerous
ZY2RMRCVL.EXEHigh Risk
zy2rmrcvl.exe
We suggest you to remove ZY2RMRCVL.EXE from your computer as soon as possible.
ZY2RMRCVL.EXE is known as: Trojan.Win32.Swisyn.bhee [Kaspersky Lab] Trojan-Spy.Win32.VB [Ikarus] packed with UPX [Kaspersky Lab].
MD5 of ZY2RMRCVL.EXE = 1AF296E06C91D9B375E84C7C5F46B88A
ZY2RMRCVL.EXE size is 128512 bytes.
Full path on a computer: %APPDATA%\ZY2RMRCVL.EXE
Related Files:
%APPDATA%\7ER44EQ.EXE
%APPDATA%\9FX1P.LOG
%APPDATA%\CONIMA.EXE
%WINDIR%\CFTNOM.EXE
%APPDATA%\INLOG
%APPDATA%\INPUT.BAT
%APPDATA%\LOCALACCOUNTAUTHORITY.BAT
%APPDATA%\LSSAS.EXE
%APPDATA%\MANAGER.EXE
%APPDATA%\MLOG
%APPDATA%\MOUSEDRIVER.BAT
%APPDATA%\PLUG.BAT
%APPDATA%\QUS0BCRS.EXE
%APPDATA%\YLOG
%APPDATA%\ZY2RMRCVL.EXE
%TEMP%\NSX2.TMP\SYSTEM.DLL
%PROGRAMS%\STARTUP\[FILENAME OF THE SAMPLE #1 WITHOUT EXTENSION].LNK
%WINDIR%\CFTNOM.BAT
%SYSTEM%\DRIVERS\[FILENAME OF THE SAMPLE #1]
%SYSTEM%\NWSAPAGENTS.DLL
%SYSTEM%\USER.INI
%WINDIR%\TEMP\VGX4.TMP
%WINDIR%\TEMP\VGX5.TMP
%WINDIR%\TEMP\VGX6.TMP
%WINDIR%\TEMP\VGX7.TMP
%WINDIR%\TEMP\VGX8.TMP
%WINDIR%\TEMP\VGX9.TMP
%WINDIR%\TEMP\VGXA.TMP
%WINDIR%\TEMP\VGXB.TMP
%WINDIR%\TEMP\X1JKFDSAL.INF

Remove ZY2RMRCVL.EXE now!

Dmitry Sokolov:

I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.

Since that time I work every day to fix the issues that antiviruses cannot.

If your antivirus have not helped you solve the problem, you should try UnHackMe.

We are a small company and you can ask me directly, if you have any questions.

Testimonials

You can read UnHackMe testimonials here.