BLACK HOLE.EXE – Worm Autorun

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

BLACK HOLE.EXE – Worm Autorun removal

FileMD5Virus Alias
BLACK HOLE.EXE 2c6fc772efe33748e61fbb34451921e5 Worm Autorun
BLACK HOLE.EXE 2c6fc772efe33748e61fbb34451921e5 Trojan SuspiciousFile
BLACK HOLE.EXE 2c6fc772efe33748e61fbb34451921e5 Trojan Hllw
BLACK HOLE.EXE 2c6fc772efe33748e61fbb34451921e5 Worm Brontok
BLACK HOLE.EXE 2c6fc772efe33748e61fbb34451921e5 Trojan Agent
BLACK HOLE.EXE 2c6fc772efe33748e61fbb34451921e5 Trojan Crypt

BLACK HOLE.EXE size: 71680 bytes
BLACK HOLE.EXE hash: 2C6FC772EFE33748E61FBB34451921E5

Created files:

C:\Black Hole.exe
%WinDir%\Black Hole.exe
%WinDir%\msvbvm60.dll
%UserProfile%\Local Settings\Application Data\WINDOWS\CSRSS.EXE
%UserProfile%\Local Settings\Application Data\WINDOWS\LSASS.EXE
%UserProfile%\Local Settings\Application Data\WINDOWS\SERVICES.EXE
%UserProfile%\Local Settings\Application Data\WINDOWS\SMSS.EXE
%UserProfile%\Local Settings\Application Data\WINDOWS\WINLOGON.EXE
%SysDir%\Destruction.scr
%SysDir%\Lubang Hitam.exe
%SysDir%\msvbvm60.dll
%SysDir%\Shell.exe

Autostart registry keys:

HKCU\Control Panel\Desktop\SCRNSAVE.EXE: %WinDir%\System32\DESTRU~1.SCR
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Black Hole: %WinDir%\Black Hole.exe

Detected by UnHackMe:

BLACK HOLE.EXE
Default location: C:\BLACK HOLE.EXE

Dropper information:
MD5: 0874f30a070991e8cc93673a345427f5
File size: 71680 bytes

Leave a Reply