Trojan Buzus – EHeO58kG.exe – e026745d262bf70a235d8844a6740f70

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Buzus
Also known as: Trojan Jorik
SHA256: a43c9bf4fbea2d921499eb0bc7e15cf013d8602e26a40c90dff5d8b53b9cab95
SHA1: 5f9d02f54fcee08d5b5334f0e7c42389be88c739
MD5: e026745d262bf70a235d8844a6740f70
File size: 213359 bytes

Created files:

%AppData%\EHeO58kG.exe – Trojan Buzus

Trojan Buzus created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{T9yd0xvX-wKoC-Odsf-7vSX-pYWA9BY4CApc}\hlRuESAqYEn6vel: “%AppData%\EHeO58kG.exe” /ActiveX
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\hlRuESAqYEn6vel: %AppData%\EHeO58kG.exe
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: %AppData%\EHeO58kG.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\hlRuESAqYEn6vel: %AppData%\EHeO58kG.exe
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: %AppData%\EHeO58kG.exe

Leave a Reply