Worm Palevo – 9a052445f2cbac4de2234e590f59a156

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Palevo
SHA256: fdc454800ca0f5f1c37bb654f8353b297a501b5eb02428f46c8ee019247c95c1
SHA1: f69bcf8eb772eca8b8f42e718b89bec955052cd9
MD5: 9a052445f2cbac4de2234e590f59a156
File size: 177243 bytes

Created files:

%Program Files%\%Program Files%\Cest.bat – Worm Palevo
%Program Files%\%Program Files%\Dest.BAt – Worm Palevo
%Program Files%\%Program Files%\laass.exe – Worm Palevo

Worm Palevo created autostart registry keys:

HKLM\System\CurrentControlSet\Services\WinAudio\Type: 10010000
HKLM\System\CurrentControlSet\Services\WinAudio\Start: 02000000
HKLM\System\CurrentControlSet\Services\WinAudio\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\WinAudio\DisplayName: WinAudio
HKLM\System\CurrentControlSet\Services\WinAudio\ImagePath: cmd.exe /c C:\PROGRA~1\%PROGR~1\Cest.bat
HKLM\System\CurrentControlSet\Services\WinAudio\ObjectName: localSystem
HKLM\System\CurrentControlSet\Services\Winsock\ConnectGroup: Default
HKLM\System\CurrentControlSet\Services\Winsock\MyVerSion: 2012

Leave a Reply