We checked up the file NOTIFICATOIN_1.0.0.CRX and found it hazardous.
The file NOTIFICATOIN_1.0.0.CRX must be deleted from the system immediately.
Kill the process NOTIFICATOIN_1.0.0.CRX and remove NOTIFICATOIN_1.0.0.CRX from the Windows startup.
Malware Analysis of NOTIFICATOIN_1.0.0.CRX
Full path on a computer: %SYSTEMDRIVE%\PROGRAMDATA\MICROSOFT\WINDOWS\DRM\SERVER\NOTIFICATOIN_1.0.0.CRX
Detected by UnHackMe:
NOTIFICATOIN_1.0.0.CRX
Default location: %SYSTEMDRIVE%\PROGRAMDATA\MICROSOFT\WINDOWS\DRM\SERVER\NOTIFICATOIN_1.0.0.CRX
Removal Results: Success
Number of reboot: 1
NOTIFICATOIN_1.0.0.CRX is known as:
Trojan.Muldrop5
How to quickly detect NOTIFICATOIN_1.0.0.CRX presence?
Files:
- %APPDATA%\MOZILLA\FIREFOX\PROFILES\CWDGT0Y8.DEFAULT\EXTENSIONS\{941E9C01-F8E0-493E-B814-E693BC99A1A1}\KANGO\LANG.JS
- %APPDATA%\MOZILLA\FIREFOX\PROFILES\CWDGT0Y8.DEFAULT\EXTENSIONS\{941E9C01-F8E0-493E-B814-E693BC99A1A1}\KANGO\LEGACY.JS
- %APPDATA%\MOZILLA\FIREFOX\PROFILES\CWDGT0Y8.DEFAULT\EXTENSIONS\{941E9C01-F8E0-493E-B814-E693BC99A1A1}\KANGO\MESSAGE_TARGET.JS
- %APPDATA%\MOZILLA\FIREFOX\PROFILES\CWDGT0Y8.DEFAULT\EXTENSIONS\{941E9C01-F8E0-493E-B814-E693BC99A1A1}\KANGO\KANGO.JS
- %SYSTEMDRIVE%\PROGRAMDATA\MICROSOFT\WINDOWS\DRM\SERVER\NOTIFICATOIN_1.0.0.CRX