WXCLSMN.EXE – Trojan Barys

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WXCLSMN.EXE – Trojan Barys removal

FileMD5Virus Alias
WXCLSMN.EXE f76623ecf3bd9393f4924dfa6d64469d Trojan Barys
WXCLSMN.EXE f76623ecf3bd9393f4924dfa6d64469d Trojan SuspiciousFile
WXCLSMN.EXE f76623ecf3bd9393f4924dfa6d64469d Trojan Artemis
WXCLSMN.EXE f76623ecf3bd9393f4924dfa6d64469d Trojan XPACK
WXCLSMN.EXE f76623ecf3bd9393f4924dfa6d64469d Trojan Generic
WXCLSMN.EXE f76623ecf3bd9393f4924dfa6d64469d Trojan Xema

WXCLSMN.EXE size: 94208 bytes
WXCLSMN.EXE hash: F76623ECF3BD9393F4924DFA6D64469D

Created files:

%SysDir%\GroupPolicy\Machine\del.exe
%SysDir%\GroupPolicy\Machine\Registry.exe
%SysDir%\GroupPolicy\Machine\Registry.pol
%SysDir%\GroupPolicy\Machine\Wxclsmn.exe
%SysDir%\GroupPolicy\Machine\UnicodeFile.bin
%SysDir%\Wxclsmn.exe

Detected by UnHackMe:

WXCLSMN.EXE
Default location: %SYSDIR%\WXCLSMN.EXE

Dropper information:
MD5: 70b60c026e1983d567416e2e91e2a01b
File size: 637578 bytes

Leave a Reply