U1010.EXE – UltraSurf 10.10

July 17, 2011 by NightWatcher
Filed under: Not-a-Virus 
: Solved!

You should Download Removal Tool here...

The file U1010.EXE is not a virus.
The program U1010.EXE is a system security tool.
But the U1010.EXE tool may be used to compromise computer security by the hacker.
Use the U1010.EXE file at your own risk!
You can delete the U1010.EXE program from your computer with problems.

Malware Analysis of “U1010.EXE”
Executed: U992.exe
Full path: %Temp%\IXP000.TMP\U1010.exe

U1010.EXE is known as:

Win32.UltraSurf, Win32.Themida!A2

U1010.EXE hash:

  • MD5: eb06c83f155a9991e7c030b0101fd6d
  • SHA1: a8661c9c8fdd5c2dc8b2a226632d0a6a11e3545
How to quickly detect U1010.EXE presence? 

Registry:
  • HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}\stubpath: “%System%\Bifrost\server.exe s”
Folders:
  • %Temp%\IXP000.TMP
  • %System%\Bifrost
Files:
  • %AppData%\addons.dat
  • %Temp%\Iizuokdmxemw7a5z
  • %System%\Bifrost\server.exe
  • %Temp%\IXP000.TMP\U1010.exe
  • %Temp%\IXP000.TMP\U992.exe
  • %Temp%\Kpaikahryyry8i9p
  • %Temp%\Modknzljimju8a4q
  • %Temp%\Scvcygkcdscp7r2h
  • %Temp%\Wqivhtsicliu7o2v
  • %UserProfile%\PUTTY.RND
  • %System%\Bifrost\logg.dat

Recommended software:
UnHackMe anti-rootkit and anti-malware
http://www.unhackme.com
RegRun Security Suite (Good choice for removal and protection)
http://www.regrun.com


Recommended: UnHackMe anti-rootkit and anti-malware

Premium software: RegRun Security Suite (Good choice for removal and protection)

Written by

Malware Hunter.

Comments

Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!

You must be logged in to post a comment.