1107000 – Trojan Demp

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

1107000 – Trojan Demp removal

FileMD5Virus Alias
1107000 246bfdbe1dafde268fe6e5c36f08befe Trojan Demp
1107000 246bfdbe1dafde268fe6e5c36f08befe Suspicious File
1107000 246bfdbe1dafde268fe6e5c36f08befe Worm Mytob
1107000 246bfdbe1dafde268fe6e5c36f08befe Backdoor Zegost
1107000 246bfdbe1dafde268fe6e5c36f08befe Trojan Jorik
1107000 246bfdbe1dafde268fe6e5c36f08befe Trojan Delf

1107000 size: 587651 bytes
1107000 hash: 246BFDBE1DAFDE268FE6E5C36F08BEFE

Created files:

C:\program files\common files\microsoft shared\msinfo\123.exe
C:\program files\common files\microsoft shared\msinfo\CrossFire_OBV187_Full_XFDL_signed.exe
C:\program files\common files\microsoft shared\msinfo\lsass.exe
C:\program files\common files\microsoft shared\msinfo\Server.exe
%TEMP%\1107000
%TEMP%\1107000.exe
%WinDir%\XXXXXX8F70D37A\svchsot.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\XXXXXX8F70D37A: %WinDir%\XXXXXX8F70D37A\svchsot.exe

Detected by UnHackMe:

1107000
Default location: %TEMP%\1107000

Dropper information:
MD5: b0667f460e8c096fdae7ad9063143180
File size: 794624 bytes

Leave a Reply