Virus.Win32.HideProc.E
Virus.Win32.HideProc.E Description
Virus.Win32.HideProc.E is a Windows platform Trojan infection. Virus.Win32.HideProc.E is used by hackers to hide malicious processes. Virus.Win32.HideProc.E can prevent itself and other malware from being listed on the Windows Task Manager. On entering a PC, Virus.Win32.HideProc.E will attempt to steal a user’s sensitive information such as passwords and usernames. Virus.Win32.HideProc.E is a privacy threat that should not be left on a PC after detection.
Type: Trojans
How Can You Detect Virus.Win32.HideProc.E?
Virus.Win32.HideProc.E has typically the following processes in memory:
- %System%\drivers\hideproc.sys
Virus.Win32.HideProc.E creates the following registry entries:
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hideproc\Enum]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HIDEPROC\0000\Control]
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hideproc\Enum]
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HIDEPROC\0000\Control]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hideproc\Security]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HIDEPROC\0000]
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hideproc\Security]
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HIDEPROC\0000]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hideproc]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HIDEPROC]
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hideproc]
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HIDEPROC]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.uab\Excel2EXE7.0]
Important Article Disclaimer
This entry was posted on 07/30/10 and is filed under Trojans.
You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Virus.Win32.HideProc.E 










