WINDOWSSECURITYUPDATE.EXE – Trojan Graftor

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WINDOWSSECURITYUPDATE.EXE – Trojan Graftor removal

FileMD5Virus Alias
WINDOWSSECURITYUPDATE.EXE 7d6e3479f44c6a4e3af1177ef368c812 Trojan Graftor
WINDOWSSECURITYUPDATE.EXE 7d6e3479f44c6a4e3af1177ef368c812 Trojan Generic
WINDOWSSECURITYUPDATE.EXE 7d6e3479f44c6a4e3af1177ef368c812 Trojan Downloader
WINDOWSSECURITYUPDATE.EXE 7d6e3479f44c6a4e3af1177ef368c812 Trojan FakeAV

WINDOWSSECURITYUPDATE.EXE size: 1073152 bytes
WINDOWSSECURITYUPDATE.EXE hash: 7D6E3479F44C6A4E3AF1177EF368C812

Created files:

%AppData%\4fd4\4fd4.exe
%AppData%\4fd4\4fd4.lst
%AppData%\4fd4\WindowsSecurityUpdate.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SD2014: %WinDir%\System32\config\Systemprofile\Application Data\4fd4\4fd4.exe

Detected by UnHackMe:

WINDOWSSECURITYUPDATE.EXE
Default location: %APPDATA%\4FD4\WINDOWSSECURITYUPDATE.EXE

Dropper information:
MD5: 7d6e3479f44c6a4e3af1177ef368c812
File size: 1073152 bytes

Leave a Reply