I-Worm.AutoRun.VB.XW

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

I-Worm.AutoRun.VB.XW also known as Trojan.Generic.8235562 (B), W32.FakewinlogonBFD.Trojan, Trojan/Win32.VBNA.

Malware Analysis of I-Worm.AutoRun.VB.XW – MAFIA II-SKIDROW (MAFIA 2).COM

Created files:

%Temp%\1E42D412A095961AFC\JUEGOS\GTA San Andreas full game pc with crack.com
%Temp%\1E42D412A095961AFC\JUEGOS\Harry Potter and the Deathly Hallows Part 2-SKIDROW.com
%Temp%\1E42D412A095961AFC\JUEGOS\Mafia II-SKIDROW (Mafia 2).com
%Temp%\1E42D412A095961AFC\JUEGOS\Minecraft Beta 1.1_02 (Updatable) [Fullversion] [EN] – IHack4Yo.com
%Temp%\1E42D412A095961AFC\JUEGOS\Portal 2-SKIDROW.com

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\97B88A2B383D6887CD65D2B07EAA88C6ECA6DCF5DE0F8659: “%Profile%\27F6471627473796E696D64614\winlogon.exe”
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\AB1CF5C8DADC183BDCF738D50DE8381989E1D825E4D0A781: “%Profile%\27F6471627473796E696D64614\winlogon.exe”

Detected by UnHackMe:

MAFIA II-SKIDROW (MAFIA 2).COM
Default location: %TEMP%\1E42D412A095961AFC\JUEGOS\MAFIA II-SKIDROW (MAFIA 2).COM

Dropper hash(md5): d4512eeb8573fd024f66bfc7e10e1d37

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

4
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera