Worm Vobfus – 4f4bc64df787eac522d0fd8bd2d00f1a

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Vobfus
Also known as: Worm Autorun, Trojan Jorik
SHA256: f0f86499b9997e3944d4201c5611c8be0cccf4efb848563e0a5503c9ac17763a
SHA1: 7034821e7b9154f5fe5c866b5b585ff016103da0
MD5: 4f4bc64df787eac522d0fd8bd2d00f1a
File size: 253952 bytes

Created files:

%SysDir%\macvzeuo.dll – Worm Vobfus
%UserProfile%\1shb.exe – Worm Vobfus
%UserProfile%\3shb.exe – Worm Vobfus
%UserProfile%\liiyuy.com – Worm Vobfus
%UserProfile%\start1.exe – Worm Vobfus
%UserProfile%\viimii.exe – Worm Vobfus
%UserProfile%\xaexaaw.exe – Worm Vobfus
%UserProfile%\zshb.exe – Worm Vobfus

Worm Vobfus created autostart registry keys:

user\current_classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32\ThreadingModel: Both
user\current_classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32 : %Local AppData%\{ae229ccd-6a28-e4e8-8a47-3737ee4e0fed}\n.

Leave a Reply