WinHelp70.exe – Trojan Webprefix

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WinHelp70.exe – Trojan Webprefix removal

FileVirus Alias
WinHelp70.exe Trojan Webprefix
WinHelp70.exe Worm Koobface
WinHelp70.exe Backdoor Zegost
WinHelp70.exe Backdoor Maximus
WinHelp70.exe Trojan Graftor
WinHelp70.exe Trojan Agent

Created files:

%SysDir%\WinHelp70.exe – Trojan Webprefix

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{1F5719E2-183A-4D5A-93F9-CE71D78E3FB1}\stubpath: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570069006E00480065006C007000370030002E006500780065000000

Detected by UnHackMe:

WinHelp70.exe
Default location: %SysDir%\WinHelp70.exe

Dropper information:
SHA256: a2cca453d142226ea6e59f2aab523669503db547fe40230769d9dee39fa678b1
SHA1: b016025db56fcda87bf3db871b47e63d3555ed7f
MD5: 88f94a46b90437784764790faf6bf766
File size: 14848 bytes

Leave a Reply