START.EXE – Trojan Banload

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

START.EXE – Trojan Banload removal

FileMD5Virus Alias
START.EXE ccd3ca63ecd5732c4fa9c22ce9634604 Trojan Banload
START.EXE ccd3ca63ecd5732c4fa9c22ce9634604 Trojan Downloader

START.EXE size: 480256 bytes
START.EXE hash: CCD3CA63ECD5732C4FA9C22CE9634604

Created files:

%AppData%\SisPlugin\MODBR.EXE
%AppData%\SisPlugin\MODIT.EXE
%AppData%\SisPlugin\Registry.passport
%AppData%\SisPlugin\START.EXE
%AppData%\SisPlugin\WARNING.EXE

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\RUN\MicrosoftPlugin: %WinDir%\System32\config\Systemprofile\Application Data\SisPlugin\Start.exe

Detected by UnHackMe:

START.EXE
Default location: %APPDATA%\SISPLUGIN\START.EXE

Dropper information:
MD5: 171c5c649bb25a641c2d1a492eeca587
File size: 2555392 bytes

Leave a Reply