Home / Spyware Encyclopedia / Rootkit.Protector << Back

Recommendation to Automatically remove Rootkit.Protector


Our products can remove Rootkit.Protector and thousands of other Virus and Spyware automatically and instantly.

Rootkit.Protector Details


  • Category Rootkit
  • Discovered 1/30/2009 10:30:33 AM
  • Modified 7/31/2023 5:21:35 PM
  • Threat Level Medium
  • Category Description
    A Rootkit is a collection of tools (programs) that enable administrator-level (root) access to a computer or computer network. A Rootkit may consist of spyware and other programs that: monitor traffic and keystrokes; create a "backdoor" into the system for the hacker's use; alter log files; attack other machines on the network; and alter existing system tools to escape detection. They are usually hidden and difficult to clean as they ingranulate deeply within the Registry and system files.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
AC5104C8.EXE 32768  fd65b15558e70080e1b69c72f2bc4e07 
0733A4AD.EXE 32768  fa2e951663a14f2236c8737e558b42f5 
477C8BE7.EXE 32256  f541309731b348630834be0121ee7995 
D19B2E5D.EXE 32768  ef70cddb8c28032dfef60a00caae9ca1 
68d12904.exe 29696  e46db82ec25fa1588b99af19ad5b4507 
54351694.EXE 32768  c22c314c1d1b587cbf633af053efbdcc 
9EBBA889.EXE 32768  af444daf1fc82a1015fb0076f7fe14f4 
989C05C5.EXE 32768  9cf9c1692548cad8001c1459d93829f9 
43A1FE37.EXE 32256  737df4b32085b88494da3e4cd87c8df2 
0C9F1800.EXE 40960  6f842db77a24e456ddb7eedacaf2c69a 

The following Registry Entries were created:
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Qrg04.sys\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\ati1ncxx.sys\(Default)
..\System\CurrentControlSet\Services\ati1ncxx\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Xnt06.sys\(Default)
..\System\CurrentControlSet\Services\Xnt06\(Default)
..\System\CurrentControlSet\Control\SafeBoot\Minimal\Bcp68.sys\(Default)
..\System\CurrentControlSet\Services\Bcp68\(Default)
..\System\CurrentControlSet\Services\ati0vjxx\(Default)
..\System\CurrentControlSet\Services\hpt3xxDummy\(Default)
..\System\CurrentControlSet\Services\mskserviceDummy\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware