Trojan Binder – jusched.exe – d036246ba2c8872eccb8c7051d3b8be9

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Binder
Also known as: Trojan Delf, Trojan Crypt
SHA256: 72a1fd51051fed7edadc1aa097e7727a472632995f43a68ad17b5a9760f1b275
SHA1: 10d74aa2262b446e9adbabf60e13de3f18364cf7
MD5: d036246ba2c8872eccb8c7051d3b8be9
File size: 704037 bytes

Created files:

%SysDir%\Cerberus\jusched.exe – Trojan Binder

Trojan Binder created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{88L0SPSM-T17H-30A4-K6HC-V62FTNQ3MMVK}\StubPath: %WinDir%\System32\Cerberus\jusched.exe Restart
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\jusched: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00430065007200620065007200750073005C006A007500730063006800650064002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Java (TM) Platform SE Auto Updater 2.1: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00430065007200620065007200750073005C006A007500730063006800650064002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\jusched: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00430065007200620065007200750073005C006A007500730063006800650064002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Java (TM) Platform SE Auto Updater 2.1: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00430065007200620065007200750073005C006A007500730063006800650064002E006500780065000000

Leave a Reply