Trojan Buzus – Update.exe.exe – 51db897d417dceb2e041b61260a71f2d

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Buzus
Also known as: Trojan OnLineGames, Trojan Delf
SHA256: 964cad6a13d081c2ed82568aad2db8c326717c57508c4dda7f80b48e60308c95
SHA1: 9b0fe1f2b7e976f671b9eb85c807855fdf3a242c
MD5: 51db897d417dceb2e041b61260a71f2d
File size: 820736 bytes

Created files:

%SysDir%\WindowsUpdate\Update.exe.exe – Trojan Buzus

Trojan Buzus created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{65B3N0LB-HITA-FAD2-1341-5257658N6B82}\StubPath: %WinDir%\System32\WindowsUpdate\Update.exe.exe Restart
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\WindowsUpdate: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570069006E0064006F00770073005500700064006100740065005C005500700064006100740065002E006500780065002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\WindowsUpdate: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570069006E0064006F00770073005500700064006100740065005C005500700064006100740065002E006500780065002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\WindowsUpdate: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570069006E0064006F00770073005500700064006100740065005C005500700064006100740065002E006500780065002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\WindowsUpdate: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570069006E0064006F00770073005500700064006100740065005C005500700064006100740065002E006500780065002E006500780065000000

Leave a Reply