Trojan NSIS – JDWH54S.exe – ed422978bd2836f878bc8b664bd34533

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan NSIS
Also known as: Trojan StartPage, Trojan Agent
SHA256: 0570a50771ad9221fb528f9a8b1be4704c1e087f41421e4d83c05bc18c4188af
SHA1: 7bc06de4a62ddc4b059cfe578973a2beec76a707
MD5: ed422978bd2836f878bc8b664bd34533
File size: 859425 bytes

Created files:

%Temp%\IXP000.TMP\JDWH54S.exe – Trojan NSIS
%Temp%\jdwh34sx.exe – Trojan NSIS

Trojan NSIS created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\wextract_cleanup0: rundll32.exe %WinDir%\System32\advpack.dll,DelNodeRunDLL32 “%Temp%\IXP000.TMP\”

Leave a Reply