X28.EXE – Backdoor Prosti

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

X28.EXE – Backdoor Prosti removal

FileMD5Virus Alias
X28.EXE 1cf6fb50765a12051b91dd7056905af9 Backdoor Prosti
X28.EXE 1cf6fb50765a12051b91dd7056905af9 Trojan SuspiciousFile
X28.EXE 1cf6fb50765a12051b91dd7056905af9 Trojan Artemis
X28.EXE 1cf6fb50765a12051b91dd7056905af9 Backdoor RBot
X28.EXE 1cf6fb50765a12051b91dd7056905af9 Trojan Agent
X28.EXE 1cf6fb50765a12051b91dd7056905af9 Trojan Delf

X28.EXE size: 137730 bytes
X28.EXE hash: 1CF6FB50765A12051B91DD7056905AF9

Created files:

%WinDir%\svcr.exe
%TEMP%\X28.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{2bf41070-b2b1-21d1-b5c1-0305f4055515}\StubPath: 43003A005C00770069006E0064006F00770073005C0073007600630072002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\System: %WinDir%\svcr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\System: %WinDir%\svcr.exe

Detected by UnHackMe:

X28.EXE
Default location: %TEMP%\X28.EXE

Dropper information:
MD5: 337651f545cc6f033db236cf6c7c4c9b
File size: 226816 bytes

Leave a Reply