Home / Spyware Encyclopedia / Rootkit.Protector << Back

Recommendation to Automatically remove Rootkit.Protector


Our products can remove Rootkit.Protector and thousands of other Virus and Spyware automatically and instantly.

Rootkit.Protector Details


  • Category Rootkit
  • Discovered 1/30/2009 10:30:33 AM
  • Modified 7/31/2023 5:21:35 PM
  • Threat Level Medium
  • Category Description
    A Rootkit is a collection of tools (programs) that enable administrator-level (root) access to a computer or computer network. A Rootkit may consist of spyware and other programs that: monitor traffic and keystrokes; create a "backdoor" into the system for the hacker's use; alter log files; attack other machines on the network; and alter existing system tools to escape detection. They are usually hidden and difficult to clean as they ingranulate deeply within the Registry and system files.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
F6B46D69.EXE 30720  cd90af7b0be4d435c3358cc20fc4def1 
AEE08DB2.EXE 32768  3e18aa38d7bbc273e7ef0877271b7643 
9ED47A67.EXE 46592  0557953dd6d65cbbd2a4ea2d9c4a64a6 
68d12904.exe 29696  e46db82ec25fa1588b99af19ad5b450730/12/2022
1EF8BCCD.EXE 32512  04ee45fca34eac865bd6ab74a7ff9d08 
0733A4AD.EXE 32768  fa2e951663a14f2236c8737e558b42f5 
0BAB7002.EXE 32768  16abd8c7e038dde57aab331285564205 
B3D64194.EXE 32768  2afab2e394476337b86fa62594acfdf1 
312633C2.EXE 32768  304adcfc4861baed5166eb56771de890 
89756F47.EXE 32768  6a5c783340b781029dfe161defa0c5b3 

The following Registry Entries were created:
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Qrg04.sys\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\ati1ncxx.sys\(Default)
..\System\CurrentControlSet\Services\ati1ncxx\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Xnt06.sys\(Default)
..\System\CurrentControlSet\Services\Xnt06\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Bcp68.sys\(Default)
..\System\CurrentControlSet\Services\Bcp68\(Default)
..\System\CurrentControlSet\Services\ati0vjxx\(Default)
..\System\CurrentControlSet\Services\hpt3xxDummy\(Default)
..\System\CurrentControlSet\Services\mskserviceDummy\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware