SERVICE.SYS - Dangerous
%SysDir%\SERVICE.SYS
Manual removal instructions:
Antivirus Report of %SysDir%\SERVICE.SYS:
%sysdir%\service.sys
We suggest you to remove SERVICE.SYS from your computer as soon as possible.
MD5 of SERVICE.SYS = 2457BA85E30720D53C5C5E3418251340
SERVICE.SYS size is 40 bytes.
Full path on a computer: %SYSTEM%\SERVICE.SYS
Related Files:
%WINDIR%\TEMP\15.TMP
%WINDIR%\TEMP\ FB_SPAM_AB4.EXE
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\SUPPORT\FLASHPLAYER\SYS\#CANDYSTAND.COM\SETTINGS.SOL
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\SUPPORT\FLASHPLAYER\SYS\SETTINGS.SOL
%WINDIR%\TEMP\ RES_AB4.EXE
%WINDIR%\TEMP\ MAIN.EXE
%DESKTOPDIR%\RAILA ODINGA.GIF
%WINDIR%\TEMP\6.TMP
%TEMP%\34BYL.EXE
%TEMP%\4.TMP
%TEMP%\9.TMP
%TEMP%\9CHO4.LOG
%TEMP%\NSW2.TMP\SYSTEM.DLL
%TEMP%\O6JV.EXE
%PROGRAMS%\STARTUP\[FILENAME OF THE SAMPLE #1 WITHOUT EXTENSION].LNK
%WINDIR%\DUMP28E4.TMP
%FONTSDIR%\SERVICES.EXE
%WINDIR%\TEMP\6H0ZB460H.EXE
%SYSTEM%\6C6S4.LOG
%SYSTEM%\ANGYAOO.LOG
%SYSTEM%\COMSATS.SYS
%SYSTEM%\DRIVERS\[FILENAME OF THE SAMPLE #1]
%SYSTEM%\GUYIK45HBH.EXE
%SYSTEM%\GUYIK45HBH.TXT
%WINDIR%\TEMP\QTJEJ4DC.EXE
%SYSTEM%\INSTALL.TXT
%SYSTEM%\NWCWKS.DLL
%SYSTEM%\SERVICE.SYS
%SYSTEM%\UPDATA.EXE
%WINDIR%\TEMP\486EQ056D.EXE
%WINDIR%\TASKS\FBAGENT.JOB
%WINDIR%\TEMP\1.JPG
%WINDIR%\TEMP\2.JPG
%WINDIR%\TEMP\5RNONQGB.EXE
%WINDIR%\TEMP\7.TMP
%WINDIR%\TEMP\8.TMP
%WINDIR%\TEMP\9CHO4.LOG
%WINDIR%\TEMP\9RX6P3P5I.EXE
%WINDIR%\TEMP\A.TMP
%WINDIR%\TEMP\C.TMP
%WINDIR%\TEMP\FILE.EXE
%WINDIR%\TEMP\INDEX.HTML
%SysDir%\SERVICE.SYS | Malware |
%SysDir%\SERVICE.SYS | Dangerous |
%SysDir%\SERVICE.SYS | High Risk |
MD5 of SERVICE.SYS = 2457BA85E30720D53C5C5E3418251340
SERVICE.SYS size is 40 bytes.
Full path on a computer: %SYSTEM%\SERVICE.SYS
Related Files:
%WINDIR%\TEMP\15.TMP
%WINDIR%\TEMP\ FB_SPAM_AB4.EXE
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\SUPPORT\FLASHPLAYER\SYS\#CANDYSTAND.COM\SETTINGS.SOL
%APPDATA%\MACROMEDIA\FLASH PLAYER\MACROMEDIA.COM\SUPPORT\FLASHPLAYER\SYS\SETTINGS.SOL
%WINDIR%\TEMP\ RES_AB4.EXE
%WINDIR%\TEMP\ MAIN.EXE
%DESKTOPDIR%\RAILA ODINGA.GIF
%WINDIR%\TEMP\6.TMP
%TEMP%\34BYL.EXE
%TEMP%\4.TMP
%TEMP%\9.TMP
%TEMP%\9CHO4.LOG
%TEMP%\NSW2.TMP\SYSTEM.DLL
%TEMP%\O6JV.EXE
%PROGRAMS%\STARTUP\[FILENAME OF THE SAMPLE #1 WITHOUT EXTENSION].LNK
%WINDIR%\DUMP28E4.TMP
%FONTSDIR%\SERVICES.EXE
%WINDIR%\TEMP\6H0ZB460H.EXE
%SYSTEM%\6C6S4.LOG
%SYSTEM%\ANGYAOO.LOG
%SYSTEM%\COMSATS.SYS
%SYSTEM%\DRIVERS\[FILENAME OF THE SAMPLE #1]
%SYSTEM%\GUYIK45HBH.EXE
%SYSTEM%\GUYIK45HBH.TXT
%WINDIR%\TEMP\QTJEJ4DC.EXE
%SYSTEM%\INSTALL.TXT
%SYSTEM%\NWCWKS.DLL
%SYSTEM%\SERVICE.SYS
%SYSTEM%\UPDATA.EXE
%WINDIR%\TEMP\486EQ056D.EXE
%WINDIR%\TASKS\FBAGENT.JOB
%WINDIR%\TEMP\1.JPG
%WINDIR%\TEMP\2.JPG
%WINDIR%\TEMP\5RNONQGB.EXE
%WINDIR%\TEMP\7.TMP
%WINDIR%\TEMP\8.TMP
%WINDIR%\TEMP\9CHO4.LOG
%WINDIR%\TEMP\9RX6P3P5I.EXE
%WINDIR%\TEMP\A.TMP
%WINDIR%\TEMP\C.TMP
%WINDIR%\TEMP\FILE.EXE
%WINDIR%\TEMP\INDEX.HTML
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.