Trojan StartPage – iexplore.exe – 0b8d00e36c4bbd91987b1c221a79075e

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan StartPage
Also known as: Trojan Downloader.Generic, Trojan Adload
SHA256: 64796cfbf8efe34ffad3400884218e22c4a3b51bd5707cf95028dbc063716a50
SHA1: aef658ef2e816a314c32d7a079e2c46afeff0fd1
MD5: 0b8d00e36c4bbd91987b1c221a79075e
File size: 300045 bytes

Created files:

%Program Files%\Internet Explorer\ie\iexplore.exe – Trojan StartPage
%AppData%\Microsoft\Internet Explorer\Quick Launch\???? Internet Explorer ??????.lnk – Trojan StartPage
%Desktop%\Internet Explorer.lnk – Trojan StartPage
%Temp%\srun12.bat – Trojan StartPage
%Temp%\srun19.bat – Trojan StartPage
%Temp%\srun27.bat – Trojan StartPage
%Temp%\srun39.bat – Trojan StartPage
%Temp%\srun41.bat – Trojan StartPage
%Temp%\srun44.bat – Trojan StartPage
%Temp%\srun53.bat – Trojan StartPage
%Temp%\srun61.bat – Trojan StartPage
%Temp%\srun91.bat – Trojan StartPage

Trojan StartPage created autostart registry keys:

HKLM\Software\Classes\CLSID\{E188F7A3-A04E-413E-99D1-D79A45F78507}\InprocServer32 : %Program Files%\Internet Explorer\iexplore.exe
HKLM\Software\Classes\CLSID\{E188F7A3-A04E-413E-99D1-D79A45F78507}\InprocServer32\InprocServer32: Apartment

Leave a Reply