Solved! Use WISEMAN.EXE (Trojan Graftor) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

WISEMAN.EXE – Trojan Graftor removal

File MD5 Virus Alias
WISEMAN.EXE 8f242369cf14f2b26ced131d7dd67144 Trojan Graftor
WISEMAN.EXE 8f242369cf14f2b26ced131d7dd67144 Trojan Artemis
WISEMAN.EXE 8f242369cf14f2b26ced131d7dd67144 Trojan Generic
WISEMAN.EXE 8f242369cf14f2b26ced131d7dd67144 Trojan Siggen
WISEMAN.EXE 8f242369cf14f2b26ced131d7dd67144 Trojan Agent

WISEMAN.EXE size: 387912 bytes
WISEMAN.EXE hash: 8F242369CF14F2B26CED131D7DD67144

Created files:

D:\Program Files\Goog\Googlly.exe
D:\Program Files\Goog\PotPlayer.dll
D:\Program Files\Goog\Wiseman.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Goog: 44003A005C00500072006F006700720061006D002000460069006C00650073005C0047006F006F0067005C0047006F006F0067006C006C0079002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Wiseman: D:\Program Files\Goog\Wiseman.exe

Detected by UnHackMe:

WISEMAN.EXE
Default location: D:\PROGRAM FILES\GOOG\WISEMAN.EXE

Dropper information:
MD5: ef5c67f76a384c8917eaf28fcacd7f27
File size: 332085 bytes

Leave a Reply