S_INST.EXE – Trojan SuspiciousFile

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

S_INST.EXE – Trojan SuspiciousFile removal

FileMD5Virus Alias
S_INST.EXE 7ed5dfd2f98461a04b3efac090c7f73e Trojan SuspiciousFile

S_INST.EXE size: 92664 bytes
S_INST.EXE hash: 7ED5DFD2F98461A04B3EFAC090C7F73E

Created files:

%AppData%\newSI_2\chrome\dolka\config.json
%AppData%\newSI_2\chrome\dolka\hmoibobbgceninnjaoadkgaceabjjeab\extension_info.json
%AppData%\newSI_2\chrome\dolka\hmoibobbgceninnjaoadkgaceabjjeab\manifest.json
%AppData%\newSI_2\s_inst.exe
%TEMP%\7z807911F8\chrome\dolka\config.json
%TEMP%\7z807911F8\chrome\dolka\hmoibobbgceninnjaoadkgaceabjjeab\extension_info.json
%TEMP%\7z807911F8\chrome\dolka\hmoibobbgceninnjaoadkgaceabjjeab\manifest.json
%TEMP%\7z807911F8\s_inst.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\newSI_2: “%WinDir%\System32\config\Systemprofile\Application Data\newSI_2\s_inst.exe” –continue

Detected by UnHackMe:

S_INST.EXE
Default location: %APPDATA%\NEWSI_2\S_INST.EXE

Dropper information:
MD5: 3af8f51ea4b9d6d6268a10da8523ce5b
File size: 168136 bytes

Leave a Reply