WINSERVICES2.EXE – Trojan Barys

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WINSERVICES2.EXE – Trojan Barys removal

FileMD5Virus Alias
WINSERVICES2.EXE 4fc8dc2c549fa19d4a97b391bad13f1c Trojan Barys
WINSERVICES2.EXE 4fc8dc2c549fa19d4a97b391bad13f1c Trojan Generic
WINSERVICES2.EXE 4fc8dc2c549fa19d4a97b391bad13f1c Trojan CI
WINSERVICES2.EXE 4fc8dc2c549fa19d4a97b391bad13f1c Backdoor Poison

WINSERVICES2.EXE size: 196608 bytes
WINSERVICES2.EXE hash: 4FC8DC2C549FA19D4A97B391BAD13F1C

Created files:

%AppData%\WinServices2.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM Key: %WinDir%\System32\config\Systemprofile\Application Data\WinServices2.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU Key: %WinDir%\System32\config\Systemprofile\Application Data\WinServices2.exe

Detected by UnHackMe:

WINSERVICES2.EXE
Default location: %APPDATA%\WINSERVICES2.EXE

Dropper information:
MD5: 4fc8dc2c549fa19d4a97b391bad13f1c
File size: 196608 bytes

Leave a Reply