Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

JWBOTGZH.7Z is Trojan Buzus.nupv

$
0
0

The file JWBOTGZH.7Z is malware related.
You must delete the file JWBOTGZH.7Z immediately!
Delete the file JWBOTGZH.7Z without delay!
Kill the process JWBOTGZH.7Z and remove JWBOTGZH.7Z from the Windows startup.

Malware Analysis of JWBOTGZH.EXE
Full path on a computer: %Profile%\jwbotgzh.exe

Detected by UnHackMe:

Item Name: MSConfig
Author: DT Soft Ltd
Related File: %PROFILE%\JWBOTGZH.EXE
Type: Registry Run

Removal Results: Success
Number of reboot: 1

JWBOTGZH.EXE is known as:

Trojan.Buzus.nupv

JWBOTGZH.EXE hash:

  • MD5: 5fda727791539d28625548a92454b7e1
The file tries to connect to the dangerous web site.
How to quickly detect JWBOTGZH.EXE presence?
Registry:
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MSConfig: “”%Profile%\jwbotgzh.exe”"
Files:
  • %Recent%\647dd6a2e7e86f071035a75af2339aa7.lnk
  • %Recent%\sand-box.lnk
  • %Profile%\jwbotgzh.exe
  • %Temp%\647dd6a2e7e86f071035a75af2339aa7.jpg


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>