NVSVCD.EXE – Trojan Generic

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NVSVCD.EXE – Trojan Generic removal

FileMD5Virus Alias
NVSVCD.EXE 90686944a3c42181539ff0d30b8c9b06 Trojan Generic
NVSVCD.EXE 90686944a3c42181539ff0d30b8c9b06 Trojan CI

NVSVCD.EXE size: 49152 bytes
NVSVCD.EXE hash: 90686944A3C42181539FF0D30B8C9B06

Created files:

%WinDir%\system\smss.exe
%SysDir%\nvsvcd.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\.nvsvc: %WinDir%\System\smss.exe /w
HKLM\System\CurrentControlSet\Services\Windows Log\Type: 10000000
HKLM\System\CurrentControlSet\Services\Windows Log\Start: 02000000
HKLM\System\CurrentControlSet\Services\Windows Log\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Windows Log\DisplayName: Windows Log
HKLM\System\CurrentControlSet\Services\Windows Log\ImagePath: %WinDir%\System32\nvsvcd.exe
HKLM\System\CurrentControlSet\Services\wuauserv\Start: 04000000

Detected by UnHackMe:

NVSVCD.EXE
Default location: %SYSDIR%\NVSVCD.EXE

Dropper information:
MD5: 04284ff7f21726dc79e16dadc5895a74
File size: 49152 bytes

Leave a Reply