I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
PWDUMP.EXE – Suspicious File removal
File | MD5 | Virus Alias |
---|---|---|
PWDUMP.EXE | e883fdbf589d0b801a5e0f920ec16513 | Suspicious File |
PWDUMP.EXE size: 188416 bytes
PWDUMP.EXE hash: E883FDBF589D0B801A5E0F920EC16513
Created files:
%TEMP%\cachedump.exe
%TEMP%\fgexec.exe
%TEMP%\lsaext.dll
%TEMP%\pstgdump.exe
%TEMP%\pwdump.exe
%TEMP%\pwservice.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\CacheDump\Type: 10000000
HKLM\System\CurrentControlSet\Services\CacheDump\Start: 03000000
HKLM\System\CurrentControlSet\Services\CacheDump\DisplayName: CacheDump
HKLM\System\CurrentControlSet\Services\CacheDump\ImagePath: %TEMP%\cachedump.exe -s
Detected by UnHackMe:
PWDUMP.EXE
Default location: %TEMP%\PWDUMP.EXE
Dropper information:
MD5: b6c171adc5cffb3f6386778701bd1ba5
File size: 573440 bytes