Home » Virus List
Trojan.Win32.Generic
Risk Level 1
 
File Size : 1887866 KB
File Type : Portable Executable file
File Name

8091679f6a1591c96360f3fb6420038c.exe

MD5

8091679f6a1591c96360f3fb6420038c

SHA1

f7f9a726f2ddac79993c11a278d1865e01d7e773

SHA256

bbf39a6cb3e491ea96ff8ba731645155de0e4dfecc5cf828af

General information:

* File name: C:\Users\vmware\Desktop\malware\8091679F6A1591C96360F3FB6420038C.exe

Changes to registry :

* Creates value "NukeOnDelete=00000001" in key HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\BitBucket
* Creates value "UseGlobalSettings=00000001" in key HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Explorer\BitBucket
* Creates value "DontShowUI=00000001" in key HKEY_LOCAL_MACHINE\software\microsoft\Windows\Windows Error Reporting
* Creates Registry key HKEY_LOCAL_MACHINE\software\microsoft\Windows\Windows Error Reporting\LocalDumps
* Modifies value "NukeOnDelete=00000001" in key HKEY_CURRENT_USER\software\Microsoft\Windows\CurrentVersion\Explorer\BitBucket\Volume\{d830145d-1c80-11e6-b8aa-806e6f6e6963}
old value empty
* Creates value "(Default)=31" in key HKEY_CURRENT_USER\software\SandboxAutoExec

Changes to filesystem:

* Creates file C:\Users\vmware\AppData\Local\Temp\install32.exe

Network services:

no change

Process/window/string information:

* Enumerates running processes.
* Injects code into process "C:\Windows\explorer.exe".

Additional Information:

How To Remove 8091679f6a1591c96360f3fb6420038c.exe

1.Download Sniper Antivirus
2.Install the exe file on your system.
3.Full Scan your Computer OR Folder where 8091679f6a1591c96360f3fb6420038c.exe located.
4.Once the scan is finished, you’ll get the message “scan is complete”.
Click OK button to get the results.
5.Then Delete the threat from table.

Top