Trojan-Ransom Winlock – sopaps.exe – b1a01380df97833e84e2ff42c7f46059

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan-Ransom Winlock – sopaps.exe – removal

FileVirus Alias
sopaps.exe Trojan-Ransom Winlock
sopaps.exe Trojan DNAScan
sopaps.exe Trojan ZBot

Created files:

%SysDir%\config\systemprofile\Application Data\Filesop.txt.block – Trojan-Ransom Winlock
%SysDir%\config\systemprofile\Application Data\sopaps.exe – Trojan-Ransom Winlock

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ChpPrintUpdate: “%WinDir%\System32\config\Systemprofile\Application Data\sopaps.exe”

Detected by UnHackMe:

sopaps.exe
Default location: %SysDir%\config\systemprofile\Application Data\sopaps.exe

Dropper information:
SHA256: 3d4625f57df6ccb7e44cf1d0b3f5148ed5df7533c4b485f2466469ed1fd353c0
SHA1: 576fc17fa66200be6cb2a338cde09d6b81dd7008
MD5: b1a01380df97833e84e2ff42c7f46059
File size: 399719 bytes

Leave a Reply