Is the file FSB_POC_HIDDEN.EXE located on your computer? Then your computer is infected.
We do suggest you should remove FSB_POC_HIDDEN.EXE from your computer as soon as possible.
FSB_POC_HIDDEN.EXE is Trojan/Backdoor.
Kill the process FSB_POC_HIDDEN.EXE and remove FSB_POC_HIDDEN.EXE from the Windows startup.
Malware Analysis of FSB_POC_HIDDEN.EXE
Full path on a computer: %WinDir%\fsb_poc_hidden.exe
Detected by UnHackMe:
Item Name: fsb_poc
Author:
Current Setting: %WinDir%\FSB_POC_HIDDEN.EXE
Type: Registry Run
Removal Results: Success
Number of reboot: 1
FSB_POC_HIDDEN.EXE is known as:
Trojan.DownLoader9.41368, Troj.Undef.(kcloud), Win32.DH{ICIjA2cJDwo}
FSB_POC_HIDDEN.EXE hash:
- MD5: 4a46a0161a91aca12a5c9b67124b2358
How to quickly detect FSB_POC_HIDDEN.EXE presence?
Registry:
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run\fsb_poc: “%WinDir%\fsb_poc_hidden.exe”
Files:
- %WinDir%\fsb_poc_hidden.exe
- C:\clean_file.txt