Worm Autorun – WinAlert.exe – 1991d5926bc2544d2f0677ebbb30ff1f

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Autorun
Also known as: Trojan Agent
SHA256: 127e23b629f725d68b44682914f01dd97753162aae8a21534cae4c92ce27b36e
SHA1: f100eed4f29add4663c1630ef3c5d7d3e51b41cd
MD5: 1991d5926bc2544d2f0677ebbb30ff1f
File size: 305528 bytes

Created files:

C:\Program Files\Windows Alerter\WinAlert.exe – Worm Autorun
C:\Program Files\Windows Common Files\Commgr.exe – Worm Autorun
C:\RECYCLER\X-1-5-21-1960408961-725345543-839522115-1003\WinSysApp.exe – Worm Autorun

Worm Autorun created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\WindowMessenger: C:\RECYCLER\X-1-5-21-1960408961-725345543-839522115-1003\WinSysApp.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Windows Alerter: C:\Program Files\Windows Alerter\WinAlert.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Windows Common Files Manager: C:\Program Files\Windows Common Files\Commgr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\WindowMessenger: C:\RECYCLER\X-1-5-21-1960408961-725345543-839522115-1003\WinSysApp.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Windows Alerter: C:\Program Files\Windows Alerter\WinAlert.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Windows Common Files Manager: C:\Program Files\Windows Common Files\Commgr.exe

Leave a Reply