GICU4Z.EXE is virus Virut

August 24, 2011 by NightWatcher
Filed under: Virus 
: Solved!

Fix it immediately:

Is the file GICU4Z.EXE located on your computer? Then your computer is infected.
We do suggest you should remove GICU4Z.EXE from your computer as soon as possible.
GICU4Z.EXE is Trojan/Backdoor.
Kill the process GICU4Z.EXE and remove GICU4Z.EXE from the Windows startup.

Malware Analysis of GICU4Z.EXE
Full path on a computer: %AppData%\gicu4z.exe

Detected by UnHackMe:

%AppData%\gicu4z.exe

Removal Results: Success
Number of reboot: 1

GICU4Z.EXE is known as:

Virus Virut

GICU4Z.EXE hash:

  • MD5: EF9CBB94B586EEA81E4894578FB31F7D
  • SHA1: D9A456BDA4E9CB34EDCDC8BB2F92AC43750C7A3A
How to quickly detect GICU4Z.EXE presence? 

Registry:
  • HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\j949u33: “%AppData%\gicu4z.exe”
Files:
  • %AppData%\gicu4z.exe


Recommended: UnHackMe anti-rootkit and anti-malware

Premium software: RegRun Security Suite (Good choice for removal and protection)

Written by

Malware Hunter.

Comments

Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!

You must be logged in to post a comment.