Solved! Use GREENSTONE.EXE (Worm Autorun) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

GREENSTONE.EXE – Worm Autorun removal

File MD5 Virus Alias
GREENSTONE.EXE 85bc95791634c1ff0d001f468ab953da Worm Autorun
GREENSTONE.EXE 85bc95791634c1ff0d001f468ab953da Trojan Generic
GREENSTONE.EXE 85bc95791634c1ff0d001f468ab953da Trojan Siggen
GREENSTONE.EXE 85bc95791634c1ff0d001f468ab953da Trojan Agent

GREENSTONE.EXE size: 93332 bytes
GREENSTONE.EXE hash: 85BC95791634C1FF0D001F468AB953DA

Created files:

C:\FOUND.007.exe
C:\Msvbvm60.dll
%WinDir%\AE 0124 BE.exe
%WinDir%\Blue Lace 16.exe
%WinDir%\Coffee Bean.exe
%WinDir%\explorer.exe
%WinDir%\explorer.scf
%WinDir%\FeatherTexture.exe
%WinDir%\Gone Fishing.exe
%WinDir%\Greenstone.exe
%WinDir%\hh.exe
%WinDir%\imsins.BAK
%WinDir%\Msvbvm60.dll
%WinDir%\NOTEPAD.EXE
%WinDir%\Prairie Wind.exe
%WinDir%\regedit.exe
%WinDir%\REGLOCS.OLD
%WinDir%\Rhododendron.exe
%WinDir%\River Sumida.exe
%WinDir%\Santa Fe Stucco.exe
%WinDir%\Soap Bubbles.exe
%SysDir%\drivers\Msvbvm60.dll
%SysDir%\drivers\winlogon.exe
%SysDir%\Msvbvm60.dlll
%WinDir%\TASKMAN.EXE
D:\FOUND.007.exe
D:\Msvbvm60.dll

Detected by UnHackMe:

GREENSTONE.EXE
Default location: %WinDir%\GREENSTONE.EXE

Dropper information:
MD5: 5f860c051302ca649cafc5a18e5ca280
File size: 134689 bytes

Leave a Reply