WINX.EXE – Trojan Generic.KD

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WINX.EXE – Trojan Generic.KD removal

FileMD5Virus Alias
WINX.EXE 1f27979d5ba770c13be756c577de6d81 Trojan Generic.KD
WINX.EXE 1f27979d5ba770c13be756c577de6d81 Trojan Btcmine
WINX.EXE 1f27979d5ba770c13be756c577de6d81 Trojan Dropper.Generic7
WINX.EXE 1f27979d5ba770c13be756c577de6d81 Trojan Generic
WINX.EXE 1f27979d5ba770c13be756c577de6d81 Trojan CoinMiner
WINX.EXE 1f27979d5ba770c13be756c577de6d81 Trojan Agent

WINX.EXE size: 291840 bytes
WINX.EXE hash: 1F27979D5BA770C13BE756C577DE6D81

Created files:

%Temporary Internet Files%\Content.IE5\9ZXDM8KN\phatk[1].cl
%SysDir%\config\systemprofile\My Documents\Windows\B\miner.dll
%SysDir%\config\systemprofile\My Documents\Windows\B\phatk.cl
%SysDir%\config\systemprofile\My Documents\Windows\B\phatk.ptx
%SysDir%\config\systemprofile\My Documents\Windows\B\usft_ext.dll
%SysDir%\config\systemprofile\My Documents\Windows\B\winsvchost.exe
%SysDir%\config\systemprofile\My Documents\Windows\U\miner.dll
%SysDir%\config\systemprofile\My Documents\Windows\U\phatk.cl
%SysDir%\config\systemprofile\My Documents\Windows\U\phatk.ptx
%SysDir%\config\systemprofile\My Documents\Windows\U\usft_ext.dll
%SysDir%\config\systemprofile\My Documents\Windows\U\winx.exe

Detected by UnHackMe:

WINX.EXE
Default location: %SYSDIR%\CONFIG\SYSTEMPROFILE\MY DOCUMENTS\WINDOWS\U\WINX.EXE

Dropper information:
MD5: c9af110d33e56ddc454d0193c85f6991
File size: 47104 bytes

Leave a Reply