We checked up the file CORD.EXE and found it hazardous.
The file CORD.EXE must be deleted from the system immediately.
Kill the process CORD.EXE and remove CORD.EXE from the Windows startup.
Malware Analysis of CORD.EXE
Full path on a computer: %SYSTEMDRIVE%\CORD.EXE
Detected by UnHackMe:
CORD.EXE
Default location: %SYSTEMDRIVE%\CORD.EXE
Removal Results: Success
Number of reboot: 1
CORD.EXE is known as:
Trojan Downloader
How to quickly detect CORD.EXE presence?
Files:
- %PROFILE%\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\2VAZY7AN\UOLSN[1].DLL
- %SYSDIR%\MSWINSCK.OCX
- %PROFILE%\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\U98D4X8H\MSWINSCK[1].OCX
- %SYSTEMDRIVE%\WHIH3CXUJIDIJRY.BAT
- %SYSTEMDRIVE%\CORD.EXE