XEPPYDN.EXE – Trojan Vilsel

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

XEPPYDN.EXE – Trojan Vilsel removal

FileMD5Virus Alias
XEPPYDN.EXE 82a5fc925f2495870ce6bcc4dbc82d4f Trojan Vilsel
XEPPYDN.EXE 82a5fc925f2495870ce6bcc4dbc82d4f Trojan Generic
XEPPYDN.EXE 82a5fc925f2495870ce6bcc4dbc82d4f Trojan Eldorado
XEPPYDN.EXE 82a5fc925f2495870ce6bcc4dbc82d4f Trojan PAM
XEPPYDN.EXE 82a5fc925f2495870ce6bcc4dbc82d4f Trojan Renos
XEPPYDN.EXE 82a5fc925f2495870ce6bcc4dbc82d4f Worm Autorun

XEPPYDN.EXE size: 327680 bytes
XEPPYDN.EXE hash: 82A5FC925F2495870CE6BCC4DBC82D4F

Created files:

%TEMP%\xeppydn.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\mughrxip: xqnzulhzxlldiqdwtfa.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\zenls: %TEMP%\xqnzulhzxlldiqdwtfa.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\kqazhl: zuthexvppfhbishcbpmfd.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\oaqvjtitkrkv: %TEMP%\kecpldatshibhqeywjfx.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\xeppydn: kecpldatshibhqeywjfx.exe .
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\rcrvirfpfld: %TEMP%\wmgphvodyjgvxcmc.exe .
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dmzbmtfnb: xqnzulhzxlldiqdwtfa.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\kqazhl: %TEMP%\mealfvqherqhlsewsd.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\wguxjrench: mealfvqherqhlsewsd.exe .
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\xeppydn: %TEMP%\xqnzulhzxlldiqdwtfa.exe .

Detected by UnHackMe:

XEPPYDN.EXE
Default location: %TEMP%\XEPPYDN.EXE

Dropper information:
MD5: 82a5fc925f2495870ce6bcc4dbc82d4f
File size: 327680 bytes

Leave a Reply