We checked some samples of DSG64.EXE and detected the file DSG64.EXE as threat.
Remove the DSG64.EXE file from your computer right now.
Removal tool: http://www.unhackme.com
Malware Analysis of DSG64.EXE
Full path on a computer: %Temp%\dsg64.exe
Detected by UnHackMe:
Item Name: dsg64.exe
Author:
Current Setting: %TEMP%\DSG64.EXE
Type: Registry Run
Removal Results: Success
Number of reboot: 1
DSG64.EXE is known as:
Trojan.Dorkbot.ED, Trojan.Inject.jhcc, Troj.Inject.jh.(kcloud), Trojan.Inject.AGB, Win32.PSW.Tibia.NIC, W32.Inject.JHCC.tr
DSG64.EXE hash:
- MD5: 610572fec47c30bb745a5a7ce1c6d482
How to quickly detect DSG64.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dsg64.exe: “%Temp%\dsg64.exe”
Files:
- %Appdata%\tbi50.dll
- %Temp%\dsg64.exe
- %Temp%\tbi50.dll