Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

FSG.EXE is Trojan Gator.168058.B

$
0
0

The file FSG.EXE can destroy your system, thus making the computer to work abnormally.
FSG.EXE is a dangerous file.
Remove FSG.EXE from your computer immediately.
Kill the process FSG.EXE and remove FSG.EXE from the Windows startup.

Malware Analysis of FSG.EXE
Full path on a computer: %WinDir%\iGator\FSG.exe

Detected by UnHackMe:

Item Name: Trickler
Author:
Related File: %WinDir%\IGATOR\FSG.EXE
Type: Registry Run

Item Name: fsg.exe
Author:
Related File: %WinDir%\IGATOR\FSG.EXE
Type: Running Processes

Item Name: FSG.EXE
Author:
Related File: %WinDir%\IGATOR\FSG.EXE
Type: Multi AV Detected Files

Removal Results: Success
Number of reboot: 1

FSG.EXE is known as:

Trojan.Gator.168058.B, Adware.Clariagain.B5, Adware-GAIN, Adware.Gator, W32.Adware.FHO, Adware.GAIN, Adware_Gain, Win32:Gator-P [PUP], Adware.Agent-1481, not-a-virus:AdWare.Gator.1050, Adware.Agent.oHjR18.q4C8, Adware.GAIN.Gator, Application.Adware.Gator.Trickler, Adware:W32.Gator.B, BehavesLike.Malware.bsc (vs), GAIN, AdWare.Gator.cd, Adware.Gator.10.(kcloud), Adware.Clariagain.B, Trojan.Gator, Adware.GAIN.rem, Win32.Adware.Gator.Trickler, AdWare.Gator, Adware.Gain

FSG.EXE hash:

  • MD5: 69d10f11cb98c97e7c36ea7b1edc12ef
The file tries to connect to the dangerous web site.
How to quickly detect FSG.EXE presence?
Registry:
  • HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Trickler: “”c:\windows\igator\fsg.exe”"
Folders:
  • %Local Appdata%\Google\Chrome\User Data\Default\Session Storage
  • %Temp%\fsg_tmp
  • %Temp%\fsg_tmp\accum
  • %Temp%\fsg_tmp\files
  • %Programs%\iBoost
  • %Program Files%\Plus!
  • %Program Files%\Plus!\Themes
  • %Program Files%\Plus!\Themes\Beachside Memories
  • %Program Files%\Plus!\Themes\System
  • %WinDir%\iGator
Files:
  • %Desktop%\FREE BonziBUDDY.url
  • %Local Appdata%\Google\Chrome\User Data\Default\README
  • %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\000003.log
  • %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\CURRENT
  • %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\LOCK
  • %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\LOG
  • %Local Appdata%\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000002
  • %Programs%\iBoost\Uninstall Beachside Memories.lnk
  • %Startmenu%\FREE BonziBUDDY.url
  • %Program Files%\Plus!\Themes\3drbusy5.ani
  • %Program Files%\Plus!\Themes\alarm02.wav
  • %Program Files%\Plus!\Themes\Beachside Memories\iBoost.ico
  • %Program Files%\Plus!\Themes\Beachside Memories\INSTALL.LOG
  • %Program Files%\Plus!\Themes\Beachside Memories\UNWISE.EXE
  • %Program Files%\Plus!\Themes\Beachside Memories\UNWISE.INI
  • %Program Files%\Plus!\Themes\beachside.jpg
  • %Program Files%\Plus!\Themes\BFLY.ANI
  • %Program Files%\Plus!\Themes\bonzi.exe
  • %Program Files%\Plus!\Themes\BSBC.ico
  • %Program Files%\Plus!\Themes\BSCOM.ico
  • %Program Files%\Plus!\Themes\BSDOC.ico
  • %Program Files%\Plus!\Themes\BSEMP.ico
  • %Program Files%\Plus!\Themes\BSFULL.ico
  • %Program Files%\Plus!\Themes\BSMtheme.Theme
  • %Program Files%\Plus!\Themes\BSNET.ico
  • %Program Files%\Plus!\Themes\ocean[1].wav
  • %Program Files%\Plus!\Themes\P Alternate select.cur
  • %Program Files%\Plus!\Themes\P alternate.cur
  • %Program Files%\Plus!\Themes\P Diagonal resize 1.ani
  • %Program Files%\Plus!\Themes\P Diagonal resize 2.ani
  • %Program Files%\Plus!\Themes\P Handwriting.cur
  • %Program Files%\Plus!\Themes\P Help.cur
  • %Program Files%\Plus!\Themes\P Horizontal resize.ani
  • %Program Files%\Plus!\Themes\P Move.cur
  • %Program Files%\Plus!\Themes\P Precision select.cur
  • %Program Files%\Plus!\Themes\P Text select.cur
  • %Program Files%\Plus!\Themes\P Unavailable.cur
  • %Program Files%\Plus!\Themes\P Vertical resize.ani
  • %Program Files%\Plus!\Themes\PC_beep[1].wav
  • %Program Files%\Plus!\Themes\sea.wav
  • %Program Files%\Plus!\Themes\surf[1].wav
  • %Program Files%\Plus!\Themes\System\Beachside Memories.scr
  • %Program Files%\Plus!\Themes\Water4.wav
  • %WinDir%\iGator\FSG.exe
  • C:\bbicon.ico


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>