The file FSG.EXE can destroy your system, thus making the computer to work abnormally.
FSG.EXE is a dangerous file.
Remove FSG.EXE from your computer immediately.
Kill the process FSG.EXE and remove FSG.EXE from the Windows startup.
Malware Analysis of FSG.EXE
Full path on a computer: %WinDir%\iGator\FSG.exe
Detected by UnHackMe:
Item Name: Trickler
Author:
Related File: %WinDir%\IGATOR\FSG.EXE
Type: Registry Run
Item Name: fsg.exe
Author:
Related File: %WinDir%\IGATOR\FSG.EXE
Type: Running Processes
Item Name: FSG.EXE
Author:
Related File: %WinDir%\IGATOR\FSG.EXE
Type: Multi AV Detected Files
Removal Results: Success
Number of reboot: 1
FSG.EXE is known as:
Trojan.Gator.168058.B, Adware.Clariagain.B5, Adware-GAIN, Adware.Gator, W32.Adware.FHO, Adware.GAIN, Adware_Gain, Win32:Gator-P [PUP], Adware.Agent-1481, not-a-virus:AdWare.Gator.1050, Adware.Agent.oHjR18.q4C8, Adware.GAIN.Gator, Application.Adware.Gator.Trickler, Adware:W32.Gator.B, BehavesLike.Malware.bsc (vs), GAIN, AdWare.Gator.cd, Adware.Gator.10.(kcloud), Adware.Clariagain.B, Trojan.Gator, Adware.GAIN.rem, Win32.Adware.Gator.Trickler, AdWare.Gator, Adware.Gain
FSG.EXE hash:
- MD5: 69d10f11cb98c97e7c36ea7b1edc12ef
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Trickler: “”c:\windows\igator\fsg.exe”"
- %Local Appdata%\Google\Chrome\User Data\Default\Session Storage
- %Temp%\fsg_tmp
- %Temp%\fsg_tmp\accum
- %Temp%\fsg_tmp\files
- %Programs%\iBoost
- %Program Files%\Plus!
- %Program Files%\Plus!\Themes
- %Program Files%\Plus!\Themes\Beachside Memories
- %Program Files%\Plus!\Themes\System
- %WinDir%\iGator
- %Desktop%\FREE BonziBUDDY.url
- %Local Appdata%\Google\Chrome\User Data\Default\README
- %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\000003.log
- %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\CURRENT
- %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\LOCK
- %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\LOG
- %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000002
- %Programs%\iBoost\Uninstall Beachside Memories.lnk
- %Startmenu%\FREE BonziBUDDY.url
- %Program Files%\Plus!\Themes\3drbusy5.ani
- %Program Files%\Plus!\Themes\alarm02.wav
- %Program Files%\Plus!\Themes\Beachside Memories\iBoost.ico
- %Program Files%\Plus!\Themes\Beachside Memories\INSTALL.LOG
- %Program Files%\Plus!\Themes\Beachside Memories\UNWISE.EXE
- %Program Files%\Plus!\Themes\Beachside Memories\UNWISE.INI
- %Program Files%\Plus!\Themes\beachside.jpg
- %Program Files%\Plus!\Themes\BFLY.ANI
- %Program Files%\Plus!\Themes\bonzi.exe
- %Program Files%\Plus!\Themes\BSBC.ico
- %Program Files%\Plus!\Themes\BSCOM.ico
- %Program Files%\Plus!\Themes\BSDOC.ico
- %Program Files%\Plus!\Themes\BSEMP.ico
- %Program Files%\Plus!\Themes\BSFULL.ico
- %Program Files%\Plus!\Themes\BSMtheme.Theme
- %Program Files%\Plus!\Themes\BSNET.ico
- %Program Files%\Plus!\Themes\ocean[1].wav
- %Program Files%\Plus!\Themes\P Alternate select.cur
- %Program Files%\Plus!\Themes\P alternate.cur
- %Program Files%\Plus!\Themes\P Diagonal resize 1.ani
- %Program Files%\Plus!\Themes\P Diagonal resize 2.ani
- %Program Files%\Plus!\Themes\P Handwriting.cur
- %Program Files%\Plus!\Themes\P Help.cur
- %Program Files%\Plus!\Themes\P Horizontal resize.ani
- %Program Files%\Plus!\Themes\P Move.cur
- %Program Files%\Plus!\Themes\P Precision select.cur
- %Program Files%\Plus!\Themes\P Text select.cur
- %Program Files%\Plus!\Themes\P Unavailable.cur
- %Program Files%\Plus!\Themes\P Vertical resize.ani
- %Program Files%\Plus!\Themes\PC_beep[1].wav
- %Program Files%\Plus!\Themes\sea.wav
- %Program Files%\Plus!\Themes\surf[1].wav
- %Program Files%\Plus!\Themes\System\Beachside Memories.scr
- %Program Files%\Plus!\Themes\Water4.wav
- %WinDir%\iGator\FSG.exe
- C:\bbicon.ico