We checked some samples of ADOBE ARM.EXE and detected the file ADOBE ARM.EXE as threat.
Remove the ADOBE ARM.EXE file from your computer right now.
Removal tool: http://www.unhackme.com
Malware Analysis of ADOBE ARM.EXE
Full path on a computer: %Appdata%\altdata\Adobe ARM.exe
Detected by UnHackMe:
ADOBE ARM.EXE
Default location: %Appdata%\altdata\Adobe ARM.exe
Removal Results: Success
Number of reboot: 1
ADOBE ARM.EXE is known as:
Trojan.CoinMiner, Trojan.BtcMine.254, TR.Crypt.Xpack.53620, Trojan.Agent, Trojan.Sysn, TScope.Trojan.MSIL, MSIL.CoinMiner.GY, W32.Agent.ADYDF.tr, Agent4.BNRG, Trojan.Agent.APK
ADOBE ARM.EXE hash:
- MD5: 3e6557dc2fae36605d9377c7d1417022
How to quickly detect ADOBE ARM.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\AdobeARM: “%Appdata%\altdata\Adobe ARM.exe”
Folders:
- %Appdata%\altdata
Files:
- %Appdata%\altdata\Adobe ARM.exe
- %Appdata%\altdata\svhost.exe
- %Temp%\evb1.tmp
- %Temp%\evb2.tmp
- %Temp%\evb3.tmp