Trojan.InstallRex!562A

Trojan.InstallRex!562A also known as PUP.Optional.Installex, not-a-virus:AdWare.Win32.Agent.aeph.

Malware Analysis of Trojan.InstallRex!562A

Created files:

%Appdata%\Mozilla\Firefox\Profiles\profile.default\extensions\staged\lqb5xa@fqft-.net\install.rdf
%Appdata%\Mozilla\Firefox\Profiles\profile.default\searchplugins\WebSearch.xml
%Desktop%\def979f4ece5dfcbed7b5573ceca8f08.exe
%Desktop%\error.txt
%Desktop%\Optimizer Pro.lnk

Detected by UnHackMe:

DEF979F4ECE5DFCBED7B5573CECA8F08.EXE
Default location: %DESKTOP%\DEF979F4ECE5DFCBED7B5573CECA8F08.EXE

Written by 

Malware Hunter.

Leave a Reply

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera