FACEBOOKUPDATE.EXE – Worm Palevo

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

FACEBOOKUPDATE.EXE – Worm Palevo removal

FileMD5Virus Alias
FACEBOOKUPDATE.EXE d3a349bc097b7872b543c38804c741e4 Worm Palevo
FACEBOOKUPDATE.EXE d3a349bc097b7872b543c38804c741e4 Trojan SuspiciousFile
FACEBOOKUPDATE.EXE d3a349bc097b7872b543c38804c741e4 Trojan Artemis
FACEBOOKUPDATE.EXE d3a349bc097b7872b543c38804c741e4 Trojan Generic
FACEBOOKUPDATE.EXE d3a349bc097b7872b543c38804c741e4 Worm AMN
FACEBOOKUPDATE.EXE d3a349bc097b7872b543c38804c741e4 Worm Autoit

FACEBOOKUPDATE.EXE size: 370581 bytes
FACEBOOKUPDATE.EXE hash: D3A349BC097B7872B543C38804C741E4

Created files:

%AppData%\Microsoft\facebookupdate.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{0M146JUO-600I-5PO0-R2UP-CDDSE8Q868IA}\StubPath: “D3A349BC097B7872B543C38804C741E4.EXE”
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\windows: D3A349BC097B7872B543C38804C741E4.EXE

Detected by UnHackMe:

FACEBOOKUPDATE.EXE
Default location: %APPDATA%\MICROSOFT\FACEBOOKUPDATE.EXE

Dropper information:
MD5: d3a349bc097b7872b543c38804c741e4
File size: 370581 bytes

Leave a Reply