Home / Spyware Encyclopedia / Rootkit.Protector << Back

Recommendation to Automatically remove Rootkit.Protector


Our products can remove Rootkit.Protector and thousands of other Virus and Spyware automatically and instantly.

Rootkit.Protector Details


  • Category Rootkit
  • Discovered 1/30/2009 10:30:33 AM
  • Modified 7/31/2023 5:21:35 PM
  • Threat Level Medium
  • Category Description
    A Rootkit is a collection of tools (programs) that enable administrator-level (root) access to a computer or computer network. A Rootkit may consist of spyware and other programs that: monitor traffic and keystrokes; create a "backdoor" into the system for the hacker's use; alter log files; attack other machines on the network; and alter existing system tools to escape detection. They are usually hidden and difficult to clean as they ingranulate deeply within the Registry and system files.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
AC5104C8.EXE 32768  fd65b15558e70080e1b69c72f2bc4e07 
fe8dce11.exe 47104  fd2a9a417e9fb3bdb4b1db5478e4245e 
43DC5289.EXE 47104  c0c3f88f4c93b06388bc0a449b5f1697 
601C8FF6.EXE 40960  662b026768693aa4feb9006d1e5fc122 
B3D64194.EXE 32768  2afab2e394476337b86fa62594acfdf1 
68d12904.exe 29696  e46db82ec25fa1588b99af19ad5b450730/12/2022
1EF8BCCD.EXE 32512  04ee45fca34eac865bd6ab74a7ff9d08 
9ED47A67.EXE 46592  0557953dd6d65cbbd2a4ea2d9c4a64a6 
0BAB7002.EXE 32768  16abd8c7e038dde57aab331285564205 
DE5F8ABF.EXE 32512  285971440e109e0ea9bd0548c775cfc2 

The following Registry Entries were created:
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Qrg04.sys\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\ati1ncxx.sys\(Default)
..\System\CurrentControlSet\Services\ati1ncxx\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Xnt06.sys\(Default)
..\System\CurrentControlSet\Services\Xnt06\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Bcp68.sys\(Default)
..\System\CurrentControlSet\Services\Bcp68\(Default)
..\System\CurrentControlSet\Services\ati0vjxx\(Default)
..\System\CurrentControlSet\Services\hpt3xxDummy\(Default)
..\System\CurrentControlSet\Services\mskserviceDummy\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware