LSASS32.EXE – Trojan Banker

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

LSASS32.EXE – Trojan Banker removal

File MD5 Virus Alias
LSASS32.EXE 6107ae34c4e6cd4c867b4f83cf1a4e76 Trojan Banker
LSASS32.EXE 6107ae34c4e6cd4c867b4f83cf1a4e76 Trojan Downloader
LSASS32.EXE 6107ae34c4e6cd4c867b4f83cf1a4e76 Trojan Bancos
LSASS32.EXE 6107ae34c4e6cd4c867b4f83cf1a4e76 Trojan Banload

LSASS32.EXE size: 569344 bytes
LSASS32.EXE hash: 6107AE34C4E6CD4C867B4F83CF1A4E76

Created files:

%SysDir%\lsass32.exe
%AllUsersProfile%\start menu\programs\startup\lsass32.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\lsass32: %WinDir%\System32\lsass32.exe

Detected by UnHackMe:

LSASS32.EXE
Default location: %SYSDIR%\LSASS32.EXE

Dropper information:
MD5: 6107ae34c4e6cd4c867b4f83cf1a4e76
File size: 569344 bytes

Leave a Reply