WINCKDX.EXE – Virus Sality

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WINCKDX.EXE – Virus Sality removal

FileMD5Virus Alias
WINCKDX.EXE 5cb3e1c3fbb11c89812513e784502a20 Virus Sality
WINCKDX.EXE 5cb3e1c3fbb11c89812513e784502a20 Backdoor Hupigon

WINCKDX.EXE size: 138752 bytes
WINCKDX.EXE hash: 5CB3E1C3FBB11C89812513E784502A20

Created files:

C:\9133ed
%TEMP%\winckdx.exe
%WinDir%\winlogon.exe
D:\9137e0
D:\cert\VBoxCertUtil.exe
D:\OS2\VBoxControl.exe
D:\OS2\VBoxService.exe
D:\VBoxWindowsAdditions-amd64.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\winlogon.exe: c:\windows\winlogon.exe

Detected by UnHackMe:

WINCKDX.EXE
Default location: %TEMP%\WINCKDX.EXE

Dropper information:
MD5: 1066a92ea2aed438270b3ccf0e04c778
File size: 110592 bytes

Leave a Reply