I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
XEPPYDN.EXE – Trojan Vilsel removal
File | MD5 | Virus Alias |
---|---|---|
XEPPYDN.EXE | 8bce7601a1a8f9ba88efccf3a7c7497c | Trojan Vilsel |
XEPPYDN.EXE | 8bce7601a1a8f9ba88efccf3a7c7497c | Trojan Eldorado |
XEPPYDN.EXE | 8bce7601a1a8f9ba88efccf3a7c7497c | Trojan Renos |
XEPPYDN.EXE | 8bce7601a1a8f9ba88efccf3a7c7497c | Worm Autorun |
XEPPYDN.EXE | 8bce7601a1a8f9ba88efccf3a7c7497c | Trojan Agent |
XEPPYDN.EXE size: 737280 bytes
XEPPYDN.EXE hash: 8BCE7601A1A8F9BA88EFCCF3A7C7497C
Created files:
%TEMP%\xeppydn.exe
Autostart registry keys:
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\mughrxip: zuthexvppfhbishcbpmfd.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\zenls: %TEMP%\dupzshbrnzxnqwhyt.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\kqazhl: xqnzulhzxlldiqdwtfa.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\oaqvjtitkrkv: %TEMP%\wmgphvodyjgvxcmc.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\xeppydn: mealfvqherqhlsewsd.exe .
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\rcrvirfpfld: %TEMP%\mealfvqherqhlsewsd.exe .
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dmzbmtfnb: kecpldatshibhqeywjfx.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\kqazhl: %TEMP%\zuthexvppfhbishcbpmfd.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\wguxjrench: dupzshbrnzxnqwhyt.exe .
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\xeppydn: %TEMP%\zuthexvppfhbishcbpmfd.exe .
Detected by UnHackMe:
XEPPYDN.EXE
Default location: %TEMP%\XEPPYDN.EXE
Dropper information:
MD5: 814538fcba23563e6478ecee46c55803
File size: 327680 bytes