Impove
boot up time

Run a free scan to diagnose your PC
Start Test!

GREP.3XE is Trojan Tool-NirCmd

January 18, 2012 by NightWatcher
Filed under: Malware 
Install UnHackMe Install RegRun

Is the file GREP.3XE located on your computer? Then your computer is infected.
We do suggest you should remove GREP.3XE from your computer as soon as possible.
GREP.3XE is Trojan/Backdoor.
Kill the process GREP.3XE and remove GREP.3XE from the Windows startup.

Malware Analysis of GREP.3XE
Full path on a computer: c:\32788R22FWJFW\grep.3XE

Detected by RegRun Warrior:

GREP.3XE
Default location: c:\32788R22FWJFW\grep.3XE

Removal Results: Success
Number of reboot: 1

GREP.3XE is known as:

Trojan.Tool-NirCmd

GREP.3XE hash:

  • MD5: 9e05a9c264c8a908a8e79450fcbff047
How to quickly detect GREP.3XE presence?

Folders:
  • c:\32788R22FWJFW
Files:
  • c:\32788R22FWJFW\FIXLSP.bat
  • c:\32788R22FWJFW\FKMGen.cmd
  • c:\32788R22FWJFW\GetHive.cmd
  • c:\32788R22FWJFW\grep.3XE
  • c:\32788R22FWJFW\gsar.3XE
  • c:\32788R22FWJFW\handle.3XE
  • c:\32788R22FWJFW\history.bat
  • c:\32788R22FWJFW\hwid.pif
  • c:\32788R22FWJFW\image001.gif

Remove it now!

Comments

Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!