FTXFQHLQWGPBRNAOHPR.EXE is Trojan BitCoinMiner

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

We checked up the file FTXFQHLQWGPBRNAOHPR.EXE and found it hazardous.
The file FTXFQHLQWGPBRNAOHPR.EXE must be deleted from the system immediately.
Kill the process FTXFQHLQWGPBRNAOHPR.EXE and remove FTXFQHLQWGPBRNAOHPR.EXE from the Windows startup.

Malware Analysis of FTXFQHLQWGPBRNAOHPR.EXE
Full path on a computer: %AppData%\ftxfqhlqwgpbrnaohpr.exe

Detected by UnHackMe:

FTXFQHLQWGPBRNAOHPR.EXE
Default location: %AppData%\ftxfqhlqwgpbrnaohpr.exe

Removal Results: Success
Number of reboot: 1

FTXFQHLQWGPBRNAOHPR.EXE is known as:

Trojan.BitCoinMiner

FTXFQHLQWGPBRNAOHPR.EXE hash:

  • MD5: e0eb3031ca6b7698a7f905e535abd9e8
The file is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
How to quickly detect FTXFQHLQWGPBRNAOHPR.EXE presence?

Registry:
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ftxfqhlqwgpbrnaohpr: “%AppData%\ftxfqhlqwgpbrnaohpr.exe”
Files:
  • %AppData%\ftxfqhlqwgpbrnaohpr.exe
  • %Temp%\npeaurioc.exe
  • %Temp%\ocwtotnba.exe

Leave a Reply