Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

INTREN0T.EXE is Trojan PSW.QQPass.ak

$
0
0

Is the file INTREN0T.EXE located on your computer? Then your computer is infected.
We do suggest you should remove INTREN0T.EXE from your computer as soon as possible.
INTREN0T.EXE is Trojan/Backdoor.
Kill the process INTREN0T.EXE and remove INTREN0T.EXE from the Windows startup.

Malware Analysis of INTREN0T.EXE
Full path on a computer: %WinDir%\intren0t.exe

Detected by UnHackMe:

INTREN0T.EXE
Default location: %WinDir%\intren0t.exe

Removal Results: Success
Number of reboot: 1

INTREN0T.EXE is known as:

Trojan.PSW.QQPass.ak, W32.Legendmir.IF, Win32.Lemir.H, Trojan-PSW.QQPass.ak, Trojan.PWS.Legendmir.QGXeQu61GWU, TrojWare.PSW.Legendmir.BY, Trojan.PWS.Legmir, BehavesLike.Malware.wsc (mx-v), W32.LegMir-AD, Trojan.PSW.QQPass.pdl, Troj.mirPSWqsn.(kcloud), PWS.Lmir.CN, Win-Trojan.QQPass.37888.B, 2219, Win32.PSW.QQPass.AK, Trojan.PSW.LMir.gs, Trojan-PWS.QQPass, W32.LegMir.tr, Trj.Legmir.D

INTREN0T.EXE hash:

  • MD5: 1d1fa98ac3f41f97cf6b64a0c50e669f
How to quickly detect INTREN0T.EXE presence?
Registry:
  • HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Intren0t: “%WinDir%\intren0t.exe”
  • HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\Intren0t: “%WinDir%\intren0t.exe”
Files:
  • %SysDir%\WinSocks.dll
  • %WinDir%\intren0t.exe


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>