We checked some samples of CACHE.DAT and detected the file CACHE.DAT as threat.
Remove the CACHE.DAT file from your computer right now.
Removal tool: http://www.unhackme.com
Malware Analysis of CACHE.DAT
Full path on a computer: %Appdata%\cache.dat
Detected by RegRun Warrior:
Item Name: shell
Author: Unknown
Related File: explorer.exe,%Appdata%\cache.dat
Type: User Shell
Removal Results: Success
Number of reboot: 1
CACHE.DAT is known as:
Trojan.Winlock.9260, Troj.Ransom-MW, Trojan.Urausy.E, BScope.Malware-Cryptor.Mystig, a variant of Win32.LockScreen.AQD
CACHE.DAT hash:
- MD5: 6418bb33e8b7e6c0338ee73ba148ec3c
The file tries to connect to the dangerous web site.
How to quickly detect CACHE.DAT presence?
Registry:
- HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: “explorer.exe,%Appdata%\cache.dat”
Files:
- %Appdata%\cache.dat