Is the file GOOGLE.SS.EXE located on your computer? Then your computer is infected.
We do suggest you should remove GOOGLE.SS.EXE from your computer as soon as possible.
GOOGLE.SS.EXE is Trojan/Backdoor.
Kill the process GOOGLE.SS.EXE and remove GOOGLE.SS.EXE from the Windows startup.
Malware Analysis of GOOGLE.SS.EXE
Full path on a computer: %Appdata%\google.ss.exe
Detected by UnHackMe:
GOOGLE.SS.EXE
Default location: %Appdata%\google.ss.exe
Removal Results: Success
Number of reboot: 1
GOOGLE.SS.EXE is known as:
Trojan.Blocker, Trojan.Jorik2.bcljls, Trojan-Ransom.Blocker.dpbm, HLLW.Autoruner.25074, Troj.Undef.(kcloud), W32.Trojan.MGTD-1352, Trojan.Ransomlock.Aa, Win32.CoinMiner.KO, Virus.CeeInject, W32.Blocker.DPBM.tr
GOOGLE.SS.EXE hash:
- MD5: 0e4b3854cb9aada078285003332c5d81
How to quickly detect GOOGLE.SS.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Google Security: “%Appdata%\google.ss.exe”
- HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: “%Appdata%\google.ss.exe”
Files:
- %Appdata%\google.ss.exe
- %Temp%\jansson.dll
- %Temp%\msvcr100.dll
- %Temp%\pthreadVC2.dll
- %Temp%\subsystem.exe