Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

DSG64.EXE is Trojan Dorkbot.ED

$
0
0

We checked some samples of DSG64.EXE and detected the file DSG64.EXE as threat.
Remove the DSG64.EXE file from your computer right now.
Removal tool: http://www.unhackme.com

Malware Analysis of DSG64.EXE
Full path on a computer: %Temp%\dsg64.exe

Detected by UnHackMe:

Item Name: dsg64.exe
Author:
Current Setting: %TEMP%\DSG64.EXE
Type: Registry Run

Removal Results: Success
Number of reboot: 1

DSG64.EXE is known as:

Trojan.Dorkbot.ED, Trojan.Inject.jhcc, Troj.Inject.jh.(kcloud), Trojan.Inject.AGB, Win32.PSW.Tibia.NIC, W32.Inject.JHCC.tr

DSG64.EXE hash:

  • MD5: 610572fec47c30bb745a5a7ce1c6d482
How to quickly detect DSG64.EXE presence?
Registry:
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dsg64.exe: “%Temp%\dsg64.exe”
Files:
  • %Appdata%\tbi50.dll
  • %Temp%\dsg64.exe
  • %Temp%\tbi50.dll


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>