COMMANDPROMPT.SYSM – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

COMMANDPROMPT.SYSM – Trojan Downloader removal

FileMD5Virus Alias
COMMANDPROMPT.SYSM 3abad43e9d37b006470a1ba3060381ef Trojan Downloader
COMMANDPROMPT.SYSM 3abad43e9d37b006470a1ba3060381ef Trojan Generic
COMMANDPROMPT.SYSM 3abad43e9d37b006470a1ba3060381ef Trojan Hllw
COMMANDPROMPT.SYSM 3abad43e9d37b006470a1ba3060381ef Worm Autorun
COMMANDPROMPT.SYSM 3abad43e9d37b006470a1ba3060381ef Trojan Agent

COMMANDPROMPT.SYSM size: 78335 bytes
COMMANDPROMPT.SYSM hash: 3ABAD43E9D37B006470A1BA3060381EF

Created files:

%Program Files%\Messenger\msmsgs.exe
C:\windows\system32\CommandPrompt.Sysm
C:\windows\system32\Desktop.sysm
C:\windows\system32\Windows 3D.scr
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\csrss.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\csrss.exe?
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\lsass.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\msvbvm60.dll
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\services.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\smss.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\winlogon.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~?\~Paraysutki_VM_Community~
%AppData%\Microsoft\2052
%AppData%\Microsoft\ndst.exe

Detected by UnHackMe:

COMMANDPROMPT.SYSM
Default location: %SYSDIR%\COMMANDPROMPT.SYSM

Dropper information:
MD5: 07cec7936077054a9ba6d5c63428b986
File size: 210434 bytes

Leave a Reply