hekgcycm.exe - Dangerous
hekgcycm.exe
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
Hekgcycm.exe is Trojan/Backdoor.
Kill the process hekgcycm.exe and remove hekgcycm.exe from Windows startup.
Malware: C:\sand-box\135aefe8b2690d7b9d479e0951f61a20.exe
Removed: C:\Documents and Settings\Administrator\Application Data\hekgcycm.exe
C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\healm_kgni.lnk
Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.02.18 Gen:Trojan.Heur.hi0@rjfPRgeaz
Kaspersky 7.0.0.125 2010.02.17 -
McAfee 5895 2010.02.17 -
Microsoft 1.5406 2010.02.18 -
NOD32 4876 2010.02.18 -
Symantec 20091.2.0.41 2010.02.18 Suspicious.Insight
Additional information
File size: 123889 bytes
MD5 : 2c1531158b0889ae30b55822aceaa594
SHA1 : 1a5999c67143a2ecd065faf5ee95808f99276346
SHA256: cd0ff4be33cc731830dc2f998439cb4abba7cbbc75bbb4dc16960d1d9268248f
http://greatis.com/blog/how-to-remove-ma...