MODBR.EXE – Trojan Banker

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

MODBR.EXE – Trojan Banker removal

File MD5 Virus Alias
MODBR.EXE 2f44f608ee9739a5e99f09b2b048b59f Trojan Banker
MODBR.EXE 2f44f608ee9739a5e99f09b2b048b59f Trojan SuspiciousFile
MODBR.EXE 2f44f608ee9739a5e99f09b2b048b59f Trojan Downloader
MODBR.EXE 2f44f608ee9739a5e99f09b2b048b59f Trojan Banload

MODBR.EXE size: 2130432 bytes
MODBR.EXE hash: 2F44F608EE9739A5E99F09B2B048B59F

Created files:

%AppData%\SisPlugin\MODBR.EXE
%AppData%\SisPlugin\MODIT.EXE
%AppData%\SisPlugin\Registry.passport
%AppData%\SisPlugin\START.EXE
%AppData%\SisPlugin\WARNING.EXE

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\RUN\MicrosoftPlugin: %WinDir%\System32\config\Systemprofile\Application Data\SisPlugin\Start.exe

Detected by UnHackMe:

MODBR.EXE
Default location: %APPDATA%\SISPLUGIN\MODBR.EXE

Dropper information:
MD5: 171c5c649bb25a641c2d1a492eeca587
File size: 2555392 bytes

Leave a Reply