hidn1.exe - Dangerous
hidn1.exe
Manual removal instructions:
Antivirus Report of hidn1.exe:
hidn1.exe
hidn1.exe is rootkit W32/Bagle-KN.
hidn1.exe is used to hide files, processes and registry.
hidn1.exe is a kernel mode rootkit.
hidn1.exe spreads by e-mail.
hidn1.exe tries to terminate antiviral programs installed on a user computer.
Related files:
\Application Data\hidn\m_hook.sys
\Application Data\hidn\hidn1.exe
C:\error.gif
m_hook.sys is created new system driver:
service name: "m_hook"
display name: "Empty"
Adds the value:
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_HOOK\
HKLM\SYSTEM\CurrentControlSet\Services\m_hook\
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
drv_st_key
to the Windows startup registry keys.
Added to registry:
HKCU\Software\FirstRuxzx
FirstRun
1
hidn1.exe | Malware |
hidn1.exe | Dangerous |
hidn1.exe | High Risk |
hidn1.exe is used to hide files, processes and registry.
hidn1.exe is a kernel mode rootkit.
hidn1.exe spreads by e-mail.
hidn1.exe tries to terminate antiviral programs installed on a user computer.
Related files:
C:\error.gif
m_hook.sys is created new system driver:
service name: "m_hook"
display name: "Empty"
Adds the value:
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_HOOK\
HKLM\SYSTEM\CurrentControlSet\Services\m_hook\
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
drv_st_key
to the Windows startup registry keys.
Added to registry:
HKCU\Software\FirstRuxzx
FirstRun
1
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.