Unknown file. It may be legitimate. – xinstall1427900.dll – c2064ca543d3d3570371b8c9ed4265e5

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

Unknown file. It may be legitimate.
SHA256: bf5ff5aeb2d9e0a185fb9dff7ced4eeeb967103e2b710fd94a287495c07ba807
SHA1: 4a8f4dda8165ded094a09d9bcc2a52489d64b784
MD5: c2064ca543d3d3570371b8c9ed4265e5
File size: 278528 bytes

Created files:

C:\windows\xinstall1427900.dll – Unknown file. It may be legitimate.

Unknown file. It may be legitimate. created autostart registry keys:

HKLM\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ip\DLLPath: 43003A005C00770069006E0064006F00770073005C00780069006E007300740061006C006C0031003400320037003900300030002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\Vxbpxv Lefllehx Hqv\Type: 10010000
HKLM\System\CurrentControlSet\Services\Vxbpxv Lefllehx Hqv\Start: 02000000
HKLM\System\CurrentControlSet\Services\Vxbpxv Lefllehx Hqv\DisplayName: Edlnpc Qqpjmifu Kvbtinbm Ncfm
HKLM\System\CurrentControlSet\Services\Vxbpxv Lefllehx Hqv\ImagePath: %SystemRoot%\System32\svchost.exe -k sougou

Leave a Reply