PPU71.EXE – Trojan Generic

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

PPU71.EXE – Trojan Generic removal

FileMD5Virus Alias
PPU71.EXE eb31c19802fc0519e5f7438f202618ad Trojan Generic

PPU71.EXE size: 10240 bytes
PPU71.EXE hash: EB31C19802FC0519E5F7438F202618AD

Created files:

%Program Files%\MSN Gaming Zone\Windows\bckgzm.exe
%Program Files%\MSN Gaming Zone\Windows\chkrzm.exe
%Program Files%\NetMeeting\conf.hlk
%Program Files%\Ppu71.exe
%SysDir%\Winkekt.exe
%TEMP%\Ov72.exe
%TEMP%\Vk73.exe
%TEMP%\Wt74.exe
\\VBOXSVR\in\kitty.bak.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Winkekt\Type: 10010000
HKLM\System\CurrentControlSet\Services\Winkekt\Start: 02000000
HKLM\System\CurrentControlSet\Services\Winkekt\DisplayName: Winkekt
HKLM\System\CurrentControlSet\Services\Winkekt\ImagePath: %WinDir%\System32\Winkekt.exe
HKLM\System\CurrentControlSet\Services\WW7iq\Type: 10010000
HKLM\System\CurrentControlSet\Services\WW7iq\Start: 03000000
HKLM\System\CurrentControlSet\Services\WW7iq\DisplayName: WW7iq
HKLM\System\CurrentControlSet\Services\WW7iq\ImagePath: \\VBOXSVR\in\kitty.bak.exe

Detected by UnHackMe:

PPU71.EXE
Default location: %PROGRAM FILES%\PPU71.EXE

Dropper information:
MD5: 0d19af02629ed8cbfe201d20c403ce4f
File size: 89538 bytes

Leave a Reply