Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

SEARCHLIKEEX.EXE is Trojan Badur.fumk

$
0
0

The file SEARCHLIKEEX.EXE is identified as a virus dropper.
The dropper SEARCHLIKEEX.EXE is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
The file SEARCHLIKEEX.EXE loads into the computer memory and tries to connect to the dangerous web site.
Usually the SEARCHLIKEEX.EXE dropper does not infect the files on the computer and does not replicate itself on other computers.
Kill the SEARCHLIKEEX.EXE process and delete the file SEARCHLIKEEX.EXE.

Malware Analysis of SEARCHLIKEEX.EXE
Full path on a computer: %Local Appdata%\searchlike\searchlikeex.exe

Detected by UnHackMe:

SEARCHLIKEEX.EXE
Default location: %Local Appdata%\searchlike\searchlikeex.exe

Removal Results: Success
Number of reboot: 1

SEARCHLIKEEX.EXE is known as:

Trojan.Badur.fumk, Adware.Agent.978896, ApplicUnwnt, Trojan.Click3.4590, TR.Strictor.46228.6, Troj.Badur.fu.(kcloud), PUP.WebLink, a variant of Win32.Adware.Kraddare.HH, Trojan-Spy.Banker.JU

SEARCHLIKEEX.EXE hash:

  • MD5: 4f8e18c8bf5d4a20813acb332d74bdb7
The file tries to download information from some web sites.
How to quickly detect SEARCHLIKEEX.EXE presence?
Registry:
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run\searchlike: “%Local Appdata%\searchlike\searchlike.exe”
Folders:
  • %Local Appdata%\searchlike
Files:
  • %Local Appdata%\searchlike\scun.exe
  • %Local Appdata%\searchlike\searchlike.exe
  • %Local Appdata%\searchlike\searchlikeex.exe
  • %Local Appdata%\searchlike\ts4.dll


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>