PSHHA.EXE - Dangerous
PSHHA.EXE
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
PSHHA.EXE is known as: Downloader.Ertfor [Symantec] Trojan-Downloader.Win32.Suurch.csq [Kaspersky Lab] Mal/Behav-112 , Mal/Packer [Sophos] Trojan-Downloader.Win32.Frethog [Ikarus] packed with FSG [Kaspersky Lab].
MD5 of PSHHA.EXE = 17264D7589AA42A5E53E10DAA0C8EA13
PSHHA.EXE size is 27056 bytes.
Full path on a computer: %TEMP%\PSHHA.EXE
Related Files:
%TEMPLATES%\A7UGG541A07H1124VWC0W70VLVT6U71GIP8RF65
%APPDATA%\AKTAA\TELI.EXE
%APPDATA%\CLEANHDM.DLL
%APPDATA%\CLEANHDM.EXE
%APPDATA%\EWOQ\OCYZ.QIE
%TEMP%\TMP19.TMP
%APPDATA%\HSD.EXE
%TEMP%\C.TMP
%WINDIR%\GDI32.EXE
%SYSTEM%\SYSTEM.EXE
%TEMP%\CSRSS.EXE
%TEMP%\DDORA.EXE
%TEMP%\E.EXE
%TEMP%\INSTALL.EXE
%TEMP%\NSD7.TMP\1EUROP.EXE
%TEMP%\NSD7.TMP\6TBP.EXE
%TEMP%\NSD7.TMP\IR.EXE
%TEMP%\NSF3.TMP\IC1.EXE
%TEMP%\NSF3.TMP\PUZZLE QUEST.EXE
%TEMP%\P2HHR.BAT
%TEMP%\PSHHA.EXE
%TEMP%\QWUTU.EXE
%TEMP%\TCOMFPAG.EXE
%TEMP%\TMP14.TMP.DLL
%TEMP%\TMP19.TMP.EXE
%TEMP%\VRLWNUQA8CI8TR3.EXE
%TEMP%\YTTWULHW.EXE
%WINDIR%\LOGIN.EXE
%WINDIR%\SLETREMS.DLL
%WINDIR%\SPOOLSV.EXE
%SYSTEM%\KLX8HZOW.DLL
%WINDIR%\TASKS\DNE.JOB
%WINDIR%\WINLOGON.EXE