I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
BOVXDYYO.EXE – Trojan-Ransom Winlock removal
File | MD5 | Virus Alias |
---|---|---|
BOVXDYYO.EXE | ccbf0631fed00d242f1ea699c4250762 | Trojan-Ransom Winlock |
BOVXDYYO.EXE | ccbf0631fed00d242f1ea699c4250762 | Trojan FrauDrop |
BOVXDYYO.EXE | ccbf0631fed00d242f1ea699c4250762 | Trojan SuspiciousFile |
BOVXDYYO.EXE | ccbf0631fed00d242f1ea699c4250762 | Trojan Ransom |
BOVXDYYO.EXE | ccbf0631fed00d242f1ea699c4250762 | Trojan ZBot |
BOVXDYYO.EXE | ccbf0631fed00d242f1ea699c4250762 | Trojan Crypt |
BOVXDYYO.EXE size: 118784 bytes
BOVXDYYO.EXE hash: CCBF0631FED00D242F1EA699C4250762
Created files:
%Program Files%\microsoft frontpage\yJjPJWhi.exe
%Local AppData%\Microsoft\BovXdYyO.exe
%SysDir%\config\systemprofile\Start Menu\Programs\Startup\sdmmVYnN.exe
%TEMP%\OLCjeUbW.exe
Autostart registry keys:
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: %WinDir%\System32\userinit.exe,,%Program Files%\Microsoft frontpage\yJjPJWhi.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\AkjsDDLS: %WinDir%\System32\config\Systemprofile\Local Settings\Application Data\Microsoft\BovXdYyO.exe
Detected by UnHackMe:
BOVXDYYO.EXE
Default location: %LOCAL APPDATA%\MICROSOFT\BOVXDYYO.EXE
Dropper information:
MD5: ccbf0631fed00d242f1ea699c4250762
File size: 118784 bytes