Worm Autorun – winlogon.exe – 0be65a131377114c47d033e3fdff7bef

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Autorun
Also known as: Trojan Generic, Trojan Eldorado
SHA256: 82b41a7aed528dd4ac49c2ffc858de1e02d9e35f38a9514ead8a7e15f19bace7
SHA1: 235ce83b14f466f0704e4e31f2e5c4e035af5942
MD5: 0be65a131377114c47d033e3fdff7bef
File size: 1023488 bytes

Created files:

%Common Startmenu%\Programs\Startup\winlogon.exe – Worm Autorun
%Common Startmenu%\Programs\winlogon.exe – Worm Autorun
%Common Startmenu%\winlogon.exe – Worm Autorun
%UserProfile%\25543555\winlogon.exe – Worm Autorun
%Startup%\winlogon.exe – Worm Autorun
%Startmenu%\Programs\winlogon.exe – Worm Autorun
%Startmenu%\winlogon.exe – Worm Autorun

Worm Autorun created autostart registry keys:

HKLM\System\CurrentControlSet\Services\wscsvc\Start: 04000000

Leave a Reply