Threat Database Viruses Hacktool.Generic

Hacktool.Generic

By LoneStar in Viruses

Hacktool.Generic is a dangerous computer infection that can corrupt your computer system and make it almost unusable. Hacktool.Generic could be used by criminals to break into a PC system. Once Hacktool.Generic gets installed on your computer, it imitates to be a trustworthy anti-virus program that can really secure your Internet surfing from various malwarethreats that can harm your computer. In fact, Hacktool.Generic can only damage your computer by bringing down the operating of your machine. Hacktool.Generic begins creating bogus error reports through its fraudulent scanner that runs automatically each time when user restarts their PC system.

File System Details

Hacktool.Generic may create the following file(s):
# File Name Detections
1. %System%\getweb.dll
2. %System%\0kl.dll
3. %System%\MOS.exe
4. %CommonPrograms%\Startup\Micorsoft Office Startup.lnk
5. %Temp%\ms2703.tmp

Registry Details

Hacktool.Generic may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Settings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Options
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469F124F-C01C-4B01-A388-66386E7FA41D}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469F124F-C01C-4B01-A388-66386E7FA41D}\VersionIndependentProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469F124F-C01C-4B01-A388-66386E7FA41D}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EA1C80A8-350A-4905-855B-41FE1A252E52}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EA1C80A8-350A-4905-855B-41FE1A252E52}\1.0\0\win32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B6AE8420-23F6-41BD-84E4-9C347378FC9D}\TypeLib
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SendMail.Sender
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\RTF
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\IP
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Word6
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SendMail.Sender.2\CLSID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469F124F-C01C-4B01-A388-66386E7FA41D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469F124F-C01C-4B01-A388-66386E7FA41D}\Programmable
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EA1C80A8-350A-4905-855B-41FE1A252E52}\1.0\0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B6AE8420-23F6-41BD-84E4-9C347378FC9D}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EA1C80A8-350A-4905-855B-41FE1A252E52}\1.0\HELPDIR
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SendMail.Sender\CurVer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Text
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SendMail.Sender.2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B6AE8420-23F6-41BD-84E4-9C347378FC9D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{469F124F-C01C-4B01-A388-66386E7FA41D}\ProgID
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EA1C80A8-350A-4905-855B-41FE1A252E52}\1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B6AE8420-23F6-41BD-84E4-9C347378FC9D}\ProxyStubClsid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EA1C80A8-350A-4905-855B-41FE1A252E52}\1.0\FLAGS
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SendMail.Sender\CLSID

Trending

Most Viewed

Loading...