LASS.EXE – Trojan CoinMiner

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

LASS.EXE – Trojan CoinMiner removal

FileMD5Virus Alias
LASS.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan CoinMiner
LASS.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan WS.Reputation.1
LASS.EXE aa59b15f83b24d0c709cde556fb4f842 Trojan SuspiciousFile
LASS.EXE aa59b15f83b24d0c709cde556fb4f842 Worm AMN

LASS.EXE size: 460800 bytes
LASS.EXE hash: AA59B15F83B24D0C709CDE556FB4F842

Created files:

%Program Files%\%appdata%\nvid\chp.exe
%Program Files%\%appdata%\nvid\diablo121016.cl
%Program Files%\%appdata%\nvid\diakgcn121016.cl
%Program Files%\%appdata%\nvid\lass.exe
%Program Files%\%appdata%\nvid\libblkmaker-0.1-0.dll
%Program Files%\%appdata%\nvid\libblkmaker_jansson-0.1-0.dll
%Program Files%\%appdata%\nvid\libcurl-4.dll
%Program Files%\%appdata%\nvid\libjansson-4.dll
%Program Files%\%appdata%\nvid\libusb-1.0.dll
%Program Files%\%appdata%\nvid\miner.php
%Program Files%\%appdata%\nvid\pdcurses.dll
%Program Files%\%appdata%\nvid\phatk121016.cl
%Program Files%\%appdata%\nvid\poclbm121016.cl
%Program Files%\%appdata%\nvid\pthreadGC2.dll
%Program Files%\%appdata%\nvid\scrypt121016.cl
%Program Files%\%appdata%\nvid\zlib1.dll

Detected by UnHackMe:

LASS.EXE
Default location: %PROGRAM FILES%\%APPDATA%\NVID\LASS.EXE

Dropper information:
MD5: deb95256e1440245096828d48cee032e
File size: 600295 bytes

Leave a Reply