We checked up the file HEIMAI.EXE and found it hazardous.
The file HEIMAI.EXE must be deleted from the system immediately.
Kill the process HEIMAI.EXE and remove HEIMAI.EXE from the Windows startup.
Malware Analysis of HEIMAI.EXE
Full path on a computer: %PROGRAM FILES COMMON%\HEIMAI.EXE
Detected by UnHackMe:
HEIMAI.EXE
Default location: %PROGRAM FILES COMMON%\HEIMAI.EXE
Removal Results: Success
Number of reboot: 1
HEIMAI.EXE is known as:
Trojan Downloader
How to quickly detect HEIMAI.EXE presence?
Files:
- %SYSTEMDRIVE%\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\CJCTQ25G\561416[1]
- %SYSTEMDRIVE%\8000.VBS
- %PROGRAM FILES COMMON%\HEIMAI.EXE