We checked some samples of AUDX86.EXE and detected the file AUDX86.EXE as threat.
Remove the AUDX86.EXE file from your computer right now.
Removal tool: http://www.unhackme.com
Malware Analysis of AUDX86.EXE
Full path on a computer: %Appdata%\audx86.exe
Detected by UnHackMe:
AUDX86.EXE
Default location: %Appdata%\audx86.exe
Removal Results: Success
Number of reboot: 1
AUDX86.EXE is known as:
Trojan.Blocker, Trojan-Ransom.Blocker.cwig, Trojan.Injector.X6nN2bgDOzw, Trojan.Inject1.31983, TR.Zusy.72217, Trojan.Blocker.moc, Trojan.Blocker, Troj.Undef.(kcloud), TScope.Trojan.MSIL, Trojan.MSIL.Injector.CFS, a variant of MSIL.Injector.CFS, W32.Blocker.CWIG.tr, Trj.dtcontx.I
AUDX86.EXE hash:
- MD5: 4e10f993728cbae999310ddb92a3acc2
How to quickly detect AUDX86.EXE presence?
Registry:
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Win32 Audio (x86): “%Appdata%\audx86.exe”
Folders:
- %Temp%\1.tmp
Files:
- %Appdata%\audx86.exe
- %Temp%\1.tmp\example.bat
- %Temp%\jhProtominer.exe