Worm Autoit – lexplore.exe – 1093a6d13eada2376843d7dbee9f7ad3

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Autoit
Also known as: Trojan Refroso, Trojan CI
SHA256: 2ae5a4176a9db5f539ca21af3dd6ed6fcc945195d9246d7670637be80d75bcc1
SHA1: 2afe3d86c27a17e07a33f562c43281c52b4d6f25
MD5: 1093a6d13eada2376843d7dbee9f7ad3
File size: 975360 bytes

Created files:

%Temp%\IXP000.TMP\lexplore.exe – Worm Autoit
%Temp%\IXP000.TMP\MultiBot.exe – Worm Autoit

Worm Autoit created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\wextract_cleanup0: rundll32.exe %WinDir%\System32\advpack.dll,DelNodeRunDLL32 “%Temp%\IXP000.TMP\”

Leave a Reply