WXCLSMN.EXE – Trojan Barys

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WXCLSMN.EXE – Trojan Barys removal

FileMD5Virus Alias
WXCLSMN.EXE bd5c9530ae0b087563375da4da903d22 Trojan Barys
WXCLSMN.EXE bd5c9530ae0b087563375da4da903d22 Trojan SuspiciousFile
WXCLSMN.EXE bd5c9530ae0b087563375da4da903d22 Trojan Artemis
WXCLSMN.EXE bd5c9530ae0b087563375da4da903d22 Trojan XPACK
WXCLSMN.EXE bd5c9530ae0b087563375da4da903d22 Trojan Generic
WXCLSMN.EXE bd5c9530ae0b087563375da4da903d22 Trojan Downloader

WXCLSMN.EXE size: 189057 bytes
WXCLSMN.EXE hash: BD5C9530AE0B087563375DA4DA903D22

Created files:

%SysDir%\GroupPolicy\Machine\del.exe
%SysDir%\GroupPolicy\Machine\Registry.exe
%SysDir%\GroupPolicy\Machine\Registry.pol
%SysDir%\GroupPolicy\Machine\Wxclsmn.exe
%SysDir%\GroupPolicy\Machine\UnicodeFile.bin
%SysDir%\Wxclsmn.exe

Detected by UnHackMe:

WXCLSMN.EXE
Default location: %SYSDIR%\GROUPPOLICY\MACHINE\WXCLSMN.EXE

Dropper information:
MD5: 70b60c026e1983d567416e2e91e2a01b
File size: 637578 bytes

Leave a Reply