I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
HYNBY.EXE – Virus Parite removal
File | MD5 | Virus Alias |
---|---|---|
HYNBY.EXE | 1d4e14d7e95ed0d86c211752176a39f9 | Virus Parite |
HYNBY.EXE | 1d4e14d7e95ed0d86c211752176a39f9 | Trojan Generic |
HYNBY.EXE | 1d4e14d7e95ed0d86c211752176a39f9 | Trojan Downloader |
HYNBY.EXE | 1d4e14d7e95ed0d86c211752176a39f9 | Trojan Magania |
HYNBY.EXE size: 243156 bytes
HYNBY.EXE hash: 1D4E14D7E95ED0D86C211752176A39F9
Created files:
%WinDir%\hynby.exe
%SysDir%\Serverx.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\Pqrstu Wxyabcde Ghi\Type: 10010000
HKLM\System\CurrentControlSet\Services\Pqrstu Wxyabcde Ghi\Start: 02000000
HKLM\System\CurrentControlSet\Services\Pqrstu Wxyabcde Ghi\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Pqrstu Wxyabcde Ghi\DisplayName: Pqrstuvw Yabcdefgh Jklmnop Rstuvwxy Bcd
HKLM\System\CurrentControlSet\Services\Pqrstu Wxyabcde Ghi\ImagePath: %WinDir%\hynby.exe
HKLM\System\CurrentControlSet\Services\Pqrstu Wxyabcde Ghi\Description: Pqrstu Wxyabcde Ghijklmn Pqrs
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Serverx: %WinDir%\System32\Serverx.exe^??????|@ |????= |R |? ???b |? ?,????w??w??@??$?????@F?@??p?x?X?w??w??????w?F=? ?@??@x? ???@? ?@??@
Detected by UnHackMe:
HYNBY.EXE
Default location: %WinDir%\HYNBY.EXE
Dropper information:
MD5: 1d4e14d7e95ed0d86c211752176a39f9
File size: 243156 bytes