I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Virus Sality
Also known as: Trojan Refroso, Worm AMN
SHA256: d2339a5d5983457ae1bcf11e5ed803be5f634ca4d545cdf301759ce0240aa182
SHA1: 1b39d23b1978a89abb4a7abb0a0434ddde7917f3
MD5: d178303b747d95af06d2744766478b75
File size: 233789 bytes
Created files:
%Program Files%\shmomfjs\bnebwisg.exe – Virus Sality
%Common AppData%\Apple Computer\Installer Cache\Safari 5.34.52.7\SetupAdmin.exe – Virus Sality
%Startup%\bnebwisg.exe – Virus Sality
Virus Sality created autostart registry keys:
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: %WinDir%\System32\userinit.exe,,%Program Files%\shmomfjs\bnebwisg.exe