The file RESEARCHSERVICE.EXE is identified as the Trojan Program that is used for stealing bank information and users passwords.
To delete RESEARCHSERVICE.EXE we suggest you should use UnHackMe:
http://www.unhackme.com
Malware Analysis of RESEARCHSERVICE.EXE
Full path on a computer: %WinDir%\ReSearchService.exe
Detected by UnHackMe:
Item Name: ReSearchSvc
Author:
Current Setting: %WinDir%\ReSearchService.exe
Type: Auto Services
Removal Results: Success
Number of reboot: 1
RESEARCHSERVICE.EXE is known as:
Trojan.Delf
RESEARCHSERVICE.EXE hash:
- MD5: 11bdc6b793bbb756690a04465d746761
How to quickly detect RESEARCHSERVICE.EXE presence?
Registry:
- HKLM\System\CurrentControlSet\Services\ReSearchSvc\ImagePath: “%WinDir%\ReSearchService.exe”
- HKLM\System\CurrentControlSet\Services\ReSearchSvc\DisplayName: “ReSearch Service”
Files:
- %WinDir%\ReSearchService.exe