I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
E12ADJZ0.EXE – Trojan Agent removal
File | MD5 | Virus Alias |
---|---|---|
E12ADJZ0.EXE | 1d83db28a6c9c8dd866d66369844b697 | Trojan Agent |
E12ADJZ0.EXE | 1d83db28a6c9c8dd866d66369844b697 | Trojan SuspiciousFile |
E12ADJZ0.EXE | 1d83db28a6c9c8dd866d66369844b697 | Trojan Generic |
E12ADJZ0.EXE | 1d83db28a6c9c8dd866d66369844b697 | Trojan Genome |
E12ADJZ0.EXE | 1d83db28a6c9c8dd866d66369844b697 | Trojan Eldorado |
E12ADJZ0.EXE | 1d83db28a6c9c8dd866d66369844b697 | Trojan Downloader |
E12ADJZ0.EXE size: 73728 bytes
E12ADJZ0.EXE hash: 1D83DB28A6C9C8DD866D66369844B697
Created files:
%Program Files%\PH9YA.exe
%Program Files%\QX73WN8\E12ADJZ0.exe
%WinDir%\OXK2ZF52I44B.exe
D:\cert\VBoxCertUtil.exe
D:\VBoxWindowsAdditions-x86.exe
D:\VBoxWindowsAdditions.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\PLW4L\Type: 10010000
HKLM\System\CurrentControlSet\Services\PLW4L\Start: 02000000
HKLM\System\CurrentControlSet\Services\PLW4L\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\PLW4L\DisplayName: PLW4L
HKLM\System\CurrentControlSet\Services\PLW4L\ImagePath: %WinDir%\OXK2ZF52I44B.exe -4I9T8W63KYX1
Detected by UnHackMe:
E12ADJZ0.EXE
Default location: %PROGRAM FILES%\QX73WN8\E12ADJZ0.EXE
Dropper information:
MD5: 1d83db28a6c9c8dd866d66369844b697
File size: 73728 bytes