XEPPYDN.EXE – Trojan Vilsel

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

XEPPYDN.EXE – Trojan Vilsel removal

FileMD5Virus Alias
XEPPYDN.EXE 99b9b1a0016a38c4e0f8f524c610aa90 Trojan Vilsel
XEPPYDN.EXE 99b9b1a0016a38c4e0f8f524c610aa90 Trojan Unknown.Suspicious.File
XEPPYDN.EXE 99b9b1a0016a38c4e0f8f524c610aa90 Trojan Renos
XEPPYDN.EXE 99b9b1a0016a38c4e0f8f524c610aa90 Worm Autorun
XEPPYDN.EXE 99b9b1a0016a38c4e0f8f524c610aa90 Trojan Agent

XEPPYDN.EXE size: 745472 bytes
XEPPYDN.EXE hash: 99B9B1A0016A38C4E0F8F524C610AA90

Created files:

%TEMP%\xeppydn.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\mughrxip: zuthexvppfhbishcbpmfd.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\zenls: %TEMP%\xqnzulhzxlldiqdwtfa.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\kqazhl: zuthexvppfhbishcbpmfd.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\oaqvjtitkrkv: %TEMP%\mealfvqherqhlsewsd.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\xeppydn: kecpldatshibhqeywjfx.exe .
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\rcrvirfpfld: %TEMP%\mealfvqherqhlsewsd.exe .
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dmzbmtfnb: dupzshbrnzxnqwhyt.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\kqazhl: %TEMP%\zuthexvppfhbishcbpmfd.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\wguxjrench: zuthexvppfhbishcbpmfd.exe .
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\xeppydn: %TEMP%\kecpldatshibhqeywjfx.exe .

Detected by UnHackMe:

XEPPYDN.EXE
Default location: %TEMP%\XEPPYDN.EXE

Dropper information:
MD5: 518864b4dad5fbf147df716641b4f9cf
File size: 327680 bytes

Leave a Reply