SNDMON32.EXE – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SNDMON32.EXE – Trojan Downloader removal

FileMD5Virus Alias
SNDMON32.EXE 84b5594896a36d5fda1c26c7959273d1 Trojan Downloader
SNDMON32.EXE 84b5594896a36d5fda1c26c7959273d1 Trojan Generic
SNDMON32.EXE 84b5594896a36d5fda1c26c7959273d1 Trojan Xema
SNDMON32.EXE 84b5594896a36d5fda1c26c7959273d1 Trojan Small
SNDMON32.EXE 84b5594896a36d5fda1c26c7959273d1 Trojan Crypt

SNDMON32.EXE size: 24576 bytes
SNDMON32.EXE hash: 84B5594896A36D5FDA1C26C7959273D1

Created files:

%TEMP%\IXP000.TMP\SEEPAS~1.EXE
%TEMP%\IXP000.TMP\sndmon32.exe
%TEMP%\_MSI5166._IS

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\wextract_cleanup0: rundll32.exe %WinDir%\System32\advpack.dll,DelNodeRunDLL32 “%TEMP%\IXP000.TMP\”

Detected by UnHackMe:

SNDMON32.EXE
Default location: %TEMP%\IXP000.TMP\SNDMON32.EXE

Dropper information:
MD5: 40a6f03318c75eb83eed1334730b128f
File size: 497152 bytes

Leave a Reply