Worm Bagle – WINdirect.exe – dc44c93d5a73c01ccf90bae58bb13033

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Bagle
Also known as: Trojan Crypt
SHA256: 552b8871d366e59a00b1a3b2f778b3c44a699218ed32a99b2156d54875a2917a
SHA1: ea3eaac80b05874a592d22a4bc009642d3669c24
MD5: dc44c93d5a73c01ccf90bae58bb13033
File size: 14848 bytes

Created files:

%SysDir%\WINdirect.exe – Worm Bagle
%SysDir%\_dll.exe – Worm Bagle

Worm Bagle created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\win_upd2.exe: %WinDir%\System32\WINdirect.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\win_upd2.exe: %WinDir%\System32\WINdirect.exe

Leave a Reply