Trojan Jorik – crss.exe – 6542237f476b711219f0377d33a78d96

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Jorik
Also known as: Trojan Generic, Worm Ainslot
SHA256: 3630a5c2b628529615e0d21ba3115ad9f354f923a54d9de0edbee494b1556abe
SHA1: e9998a461600fac0cacc5e16f15b2ccf94b02be5
MD5: 6542237f476b711219f0377d33a78d96
File size: 217088 bytes

Created files:

%AppData%\win32\crss.exe – Trojan Jorik
%AppData%\win32\JTVEBY4Z1V.exe – Trojan Jorik

Trojan Jorik created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{087DFC8B-31BC-6AD1-AAFF-50FDA6AEA7CE}\StubPath: %AppData%\win32\JTVEBY4Z1V.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\run\Windows Defender: %AppData%\win32\JTVEBY4Z1V.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Windows Defender: %AppData%\win32\JTVEBY4Z1V.exe
HKCU\Software\Microsoft\Active Setup\Installed Components\{087DFC8B-31BC-6AD1-AAFF-50FDA6AEA7CE}\StubPath: %AppData%\win32\JTVEBY4Z1V.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Windows Defender: %AppData%\win32\JTVEBY4Z1V.exe

Leave a Reply