TRAYMONITOR.EXE – Backdoor IRCBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

TRAYMONITOR.EXE – Backdoor IRCBot removal

FileMD5Virus Alias
TRAYMONITOR.EXE 81b3d5051aea78a751c84e0eb7dc4540 Backdoor IRCBot
TRAYMONITOR.EXE 81b3d5051aea78a751c84e0eb7dc4540 Trojan Bitcoin
TRAYMONITOR.EXE 81b3d5051aea78a751c84e0eb7dc4540 Trojan XPACK
TRAYMONITOR.EXE 81b3d5051aea78a751c84e0eb7dc4540 Trojan CoinMiner

TRAYMONITOR.EXE size: 1246816 bytes
TRAYMONITOR.EXE hash: 81B3D5051AEA78A751C84E0EB7DC4540

Created files:

%Program Files%\Windows Codec Pack\deinstaller.exe
%Program Files%\Windows Codec Pack\Installer.exe
%Program Files%\Windows Codec Pack\lua5.1.dll
%Program Files%\Windows Codec Pack\plg0.dll
%Program Files%\Windows Codec Pack\plg1.dll
%Program Files%\Windows Codec Pack\Traymonitor.exe
%Program Files%\Windows Codec Pack\uninstall.exe
%TEMP%\_ir_sf_temp_0\lua5.1.dll

Detected by UnHackMe:

TRAYMONITOR.EXE
Default location: %PROGRAM FILES%\WINDOWS CODEC PACK\TRAYMONITOR.EXE

Dropper information:
MD5: 46d02ebc87bc17ddc12dd1aa606c9a77
File size: 7557920 bytes

Leave a Reply