I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
UPDATE.EXE – Trojan Banker removal
File | MD5 | Virus Alias |
---|---|---|
UPDATE.EXE | 2a69e275ebeeaf7c127980fd5e356fb3 | Trojan Banker |
UPDATE.EXE | 2a69e275ebeeaf7c127980fd5e356fb3 | Trojan Downloader |
UPDATE.EXE | 2a69e275ebeeaf7c127980fd5e356fb3 | Trojan Agent |
UPDATE.EXE size: 443126 bytes
UPDATE.EXE hash: 2A69E275EBEEAF7C127980FD5E356FB3
Created files:
%SysDir%\1033\dwintl.dll
%SysDir%\12520437.cpx
%SysDir%\12520850.cpx
%SysDir%\6to4svc.dll
%SysDir%\aaaamon.dll
%SysDir%\aaclient.dll
%SysDir%\access.cpl
%SysDir%\acctres.dll
%SysDir%\accwiz.exe
%SysDir%\acledit.dll
%SysDir%\aclui.dll
%SysDir%\activeds.dll
%SysDir%\activeds.tlb
%SysDir%\actmovie.exe
%SysDir%\actxprxy.dll
%SysDir%\admparse.dll
%SysDir%\adptif.dll
%SysDir%\adsldp.dll
%SysDir%\adsldpc.dll
%SysDir%\adsmsext.dll
%SysDir%\adsnds.dll
%SysDir%\adsnt.dll
%SysDir%\adsnw.dll
%SysDir%\advapi32.dll
%SysDir%\advpack.dll
%SysDir%\advpack.dll.mui
%SysDir%\ahui.exe
%SysDir%\alg.exe
%SysDir%\alrsvc.dll
%SysDir%\amcompat.tlb
%SysDir%\amstream.dll
%SysDir%\ansi.sys
%SysDir%\apcups.dll
%SysDir%\append.exe
%SysDir%\apphelp.dll
%SysDir%\bpk.exe
%SysDir%\bpkhk.dll
%SysDir%\bpkwb.dll
%SysDir%\pk.bin
%SysDir%\rinst.exe
%TEMP%\RarSFX0\bpk.exe
%TEMP%\RarSFX0\bpkhk.dll
%TEMP%\RarSFX0\bpkwb.dll
%TEMP%\RarSFX0\pk.bin
%TEMP%\RarSFX0\rinst.exe
%TEMP%\RarSFX0\Update.exe
%TEMP%\RarSFX1\bpk.exe
%TEMP%\RarSFX1\bpkhk.dll
%TEMP%\RarSFX1\bpkwb.dll
%TEMP%\RarSFX1\pk.bin
%TEMP%\RarSFX1\rinst.exe
%TEMP%\RarSFX1\Update.exe
Detected by UnHackMe:
UPDATE.EXE
Default location: %TEMP%\RARSFX0\UPDATE.EXE
Dropper information:
MD5: 69e4cc0c951df439d59caa2f9e7b028e
File size: 698694 bytes