Trojan Vilsel – lsass.exe – f02f5e360cdd6eeec0a9f2e5c81564c7

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Vilsel
Also known as: Trojan Crypt, Virus Vbcrypt
SHA256: 2ad91613074f4fab028887f61d0611fd38fb02427a7575139649dc478398b54e
SHA1: b038efe995c6313018ba40abe9ad337255c4913c
MD5: f02f5e360cdd6eeec0a9f2e5c81564c7
File size: 327680 bytes

Created files:

%AppData%\Microsoft\lsass.exe – Trojan Vilsel

Trojan Vilsel created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: C:\Windows\System32\userinit.exe,%AppData%\Microsoft\lsass.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MSWUpdate: %AppData%\Microsoft\lsass.exe

Leave a Reply