U1010.EXE – UltraSurf 10.10

The file U1010.EXE is not a virus.
The program U1010.EXE is a system security tool.
But the U1010.EXE tool may be used to compromise computer security by the hacker.
Use the U1010.EXE file at your own risk!
You can delete the U1010.EXE program from your computer with problems.

Malware Analysis of “U1010.EXE”
Executed: U992.exe
Full path: %Temp%\IXP000.TMP\U1010.exe

U1010.EXE is known as:

Win32.UltraSurf, Win32.Themida!A2

U1010.EXE hash:

  • MD5: eb06c83f155a9991e7c030b0101fd6d
  • SHA1: a8661c9c8fdd5c2dc8b2a226632d0a6a11e3545
How to quickly detect U1010.EXE presence? 

Registry:
  • HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}\stubpath: “%System%\Bifrost\server.exe s”
Folders:
  • %Temp%\IXP000.TMP
  • %System%\Bifrost
Files:
  • %AppData%\addons.dat
  • %Temp%\Iizuokdmxemw7a5z
  • %System%\Bifrost\server.exe
  • %Temp%\IXP000.TMP\U1010.exe
  • %Temp%\IXP000.TMP\U992.exe
  • %Temp%\Kpaikahryyry8i9p
  • %Temp%\Modknzljimju8a4q
  • %Temp%\Scvcygkcdscp7r2h
  • %Temp%\Wqivhtsicliu7o2v
  • %UserProfile%\PUTTY.RND
  • %System%\Bifrost\logg.dat

Recommended software:
UnHackMe anti-rootkit and anti-malware
http://www.unhackme.com
RegRun Security Suite (Good choice for removal and protection)
http://www.regrun.com

Fix it immediately!

Free Download

UnHackMe removes malware invisible for your antivirus!

Leave a Reply