I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
_UNDO_~1.EXE – Trojan Crypt removal
File | MD5 | Virus Alias |
---|---|---|
_UNDO_~1.EXE | bdc427cc6d8728a70a54d134de4c3b3c | Trojan Crypt |
_UNDO_~1.EXE | bdc427cc6d8728a70a54d134de4c3b3c | Suspicious File |
_UNDO_~1.EXE | bdc427cc6d8728a70a54d134de4c3b3c | Trojan Generic |
_UNDO_~1.EXE | bdc427cc6d8728a70a54d134de4c3b3c | Trojan Genome |
_UNDO_~1.EXE | bdc427cc6d8728a70a54d134de4c3b3c | Trojan Eldorado |
_UNDO_~1.EXE | bdc427cc6d8728a70a54d134de4c3b3c | Trojan DNAScan |
_UNDO_~1.EXE size: 779294 bytes
_UNDO_~1.EXE hash: BDC427CC6D8728A70A54D134DE4C3B3C
Created files:
%TEMP%\IXP000.TMP\_UNDO_~1.EXE
%TEMP%\Services.exe
Autostart registry keys:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\wextract_cleanup0: rundll32.exe %WinDir%\System32\advpack.dll,DelNodeRunDLL32 “%TEMP%\IXP000.TMP\”
Detected by UnHackMe:
_UNDO_~1.EXE
Default location: %TEMP%\IXP000.TMP\_UNDO_~1.EXE
Dropper information:
MD5: 1c16e1d4fa24bdebe48b32f83cae9264
File size: 620032 bytes