The file JWBOTGZH.7Z is malware related.
You must delete the file JWBOTGZH.7Z immediately!
Delete the file JWBOTGZH.7Z without delay!
Kill the process JWBOTGZH.7Z and remove JWBOTGZH.7Z from the Windows startup.
Malware Analysis of JWBOTGZH.EXE
Full path on a computer: %Profile%\jwbotgzh.exe
Detected by UnHackMe:
Item Name: MSConfig
Author: DT Soft Ltd
Related File: %PROFILE%\JWBOTGZH.EXE
Type: Registry Run
Removal Results: Success
Number of reboot: 1
JWBOTGZH.EXE is known as:
Trojan.Buzus.nupv
JWBOTGZH.EXE hash:
- MD5: 5fda727791539d28625548a92454b7e1
The file tries to connect to the dangerous web site.
How to quickly detect JWBOTGZH.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MSConfig: “”%Profile%\jwbotgzh.exe”"
Files:
- %Recent%\647dd6a2e7e86f071035a75af2339aa7.lnk
- %Recent%\sand-box.lnk
- %Profile%\jwbotgzh.exe
- %Temp%\647dd6a2e7e86f071035a75af2339aa7.jpg