Emotet

Posted: March 5, 2015
Threat Metric
Threat Level: 8/10
Infected PCs 9,788

Emotet Description

Emotet is a Trojan horse threat that may be installed on a Windows PC through other malware or something as simple as a spam message attachment. When loaded, Emotet is prone to running in the background where it may linger on without any indication to the computer user. Allowing Emotet to run may cause serious system issues where your computer will not allow normal functions to take place, such as instances where you attempt to move or delete files. A computer infected with Emotet may also suffer from greatly reduced performance making it difficult to nearly impossible to run other programs or surf the internet at full speed. In the task of eliminating the Emotet threat and removing all associated files, it may be necessary to use an updated antispyware tool that is capable of detecting and successfully removing Trojan horses on Windows PCs.

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Emotet may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\syswow64\licensefwdr.exe\licensefwdr.exe File name: licensefwdr.exe
Size: 131.07 KB (131072 bytes)
MD5: 3391006372b212ba0be34bf9cc47bb15
Detection count: 141
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\syswow64\licensefwdr.exe\
Group: Malware file
Last Updated: August 13, 2020
c:\users\vtc\downloads\8e8cmlbo6fx_lxfm3xki.exe File name: 8e8cmlbo6fx_lxfm3xki.exe
Size: 582.65 KB (582656 bytes)
MD5: 0d87835af614586f70e39e2dfdba1953
Detection count: 96
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 26, 2019
%WINDIR%\system32\guidsdefine.exe\guidsdefine.exe File name: guidsdefine.exe
Size: 231.42 KB (231424 bytes)
MD5: 8af726850d90d8897096429c8f677fb9
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\guidsdefine.exe\
Group: Malware file
Last Updated: August 13, 2020
c:\windows\syswow64\d1dg3ynwj.exe File name: d1dg3ynwj.exe
Size: 155.64 KB (155648 bytes)
MD5: bc6d6ab13d204867325afc7873cd9898
Detection count: 59
File type: Executable File
Mime Type: unknown/exe
Path: c:\windows\syswow64\
Group: Malware file
Last Updated: February 22, 2019
c:\users\vtc\downloads\troj_generic_a350f6ede0f72119dd058435b3182c229d590a9d40a7357c9079a55e6abd3737.exe File name: troj_generic_a350f6ede0f72119dd058435b3182c229d590a9d40a7357c9079a55e6abd3737.exe
Size: 212.99 KB (212999 bytes)
MD5: a0da85fe32df4270e6b1aa662712eef9
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 14, 2019
c:\users\vtc\downloads\troj_generic_3b3e561af0132c0766f589d15eb8ba1a83a11a5c8bcd7bb35ac609e82238f2ac.exe File name: troj_generic_3b3e561af0132c0766f589d15eb8ba1a83a11a5c8bcd7bb35ac609e82238f2ac.exe
Size: 377.85 KB (377856 bytes)
MD5: fb3d532d9e73ab8c5dc3675d339a1950
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 26, 2019
c:\users\vtc\downloads\troj_generic_ec086af0e56b97ea6b427f02f90def0897bb0fe578eed1d48bf33049e4c9d439.exe File name: troj_generic_ec086af0e56b97ea6b427f02f90def0897bb0fe578eed1d48bf33049e4c9d439.exe
Size: 403.45 KB (403456 bytes)
MD5: 536d98819ef25d5452ef802d4541bb46
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 14, 2019
c:\users\vtc\downloads\xppvz6oh.exe File name: xppvz6oh.exe
Size: 156.67 KB (156672 bytes)
MD5: e7a1127484bbd79f4de0460ee92836fb
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 21, 2019
c:\users\vtc\downloads\fcuthenucs_qzfm9unm.exe File name: fcuthenucs_qzfm9unm.exe
Size: 230.4 KB (230400 bytes)
MD5: fc620fb26d06a3f15e97fa438e47b4e3
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 22, 2019
c:\users\vtc\downloads\8lqwejk6.exe File name: 8lqwejk6.exe
Size: 159.74 KB (159744 bytes)
MD5: 9ab8c51587e3a46950576c545d917e5f
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 14, 2019
c:\windows\syswow64\guidsripple.exe File name: guidsripple.exe
Size: 143.36 KB (143360 bytes)
MD5: 954d6e95ef173331841a54b2bacbcd28
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: c:\windows\syswow64\
Group: Malware file
Last Updated: February 16, 2019
c:\users\vtc\downloads\troj_generic_2a4b077384cb351f6259139e9557f96a42809f218a5b9d75968e8f53295d46cc.exe File name: troj_generic_2a4b077384cb351f6259139e9557f96a42809f218a5b9d75968e8f53295d46cc.exe
Size: 276.99 KB (276992 bytes)
MD5: e2015752a08e2aba3ec1f8a0853098fc
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: March 1, 2019
c:\users\vtc\downloads\z7w2_qj.exe File name: z7w2_qj.exe
Size: 348.16 KB (348160 bytes)
MD5: 59dec5b309f882bd3b7b7f4db9de8810
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 14, 2019
c:\windows\syswow64\ripplepolic.exe File name: ripplepolic.exe
Size: 155.64 KB (155648 bytes)
MD5: d3fe0e7a94cf8a04435ecd85d1a85227
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: c:\windows\syswow64\
Group: Malware file
Last Updated: February 16, 2019
c:\users\mark\211.exe File name: 211.exe
Size: 139.26 KB (139264 bytes)
MD5: 831bbafd3a5596994e3e5407e86a6ab0
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\mark\
Group: Malware file
Last Updated: February 16, 2019
c:\windows\syswow64\s9nevcf77pvpbcahes.exe File name: s9nevcf77pvpbcahes.exe
Size: 139.26 KB (139264 bytes)
MD5: 9f6d496199d712df75fea0d4f65a774d
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: c:\windows\syswow64\
Group: Malware file
Last Updated: February 16, 2019
c:\users\vtc\downloads\9tadwtpw5estit.exe File name: 9tadwtpw5estit.exe
Size: 159.74 KB (159744 bytes)
MD5: b25ec6e225cf6247dcb3810470ae86b7
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: March 15, 2019
c:\users\vtc\downloads\tu2thul7aje.exe File name: tu2thul7aje.exe
Size: 155.64 KB (155648 bytes)
MD5: 4111f6436c2e3a04aedfa66f99615902
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 14, 2019
c:\users\vtc\downloads\fu_nid7mlnsu.exe File name: fu_nid7mlnsu.exe
Size: 151.55 KB (151552 bytes)
MD5: fecc9b87f6adde022e2e7540469d9668
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 14, 2019
c:\users\vtc\downloads\td5g1cst.exe File name: td5g1cst.exe
Size: 223.23 KB (223232 bytes)
MD5: d42dbba27dc711e5b4a3f4bf83967049
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 19, 2019
c:\users\vtc\downloads\aizz7dugmz_ddw.exe File name: aizz7dugmz_ddw.exe
Size: 241.15 KB (241152 bytes)
MD5: 149f8faf3bb1c3cbd1207c133715a480
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: March 15, 2019
c:\users\vtc\downloads\h7kg8jsthbc.exe File name: h7kg8jsthbc.exe
Size: 224.76 KB (224768 bytes)
MD5: c6c70da245a63f7ae7052ebac3fb76c6
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\vtc\downloads\
Group: Malware file
Last Updated: February 22, 2019

More files

Registry Modifications


The following newly produced Registry Values are:

Regexp file mask%APPDATA%\microsoft\vhmjoh\vhmjo.exe%APPDATA%\SetingSync64.exe%WINDIR%\System32\sysnet.exe%WINDIR%\SysWOW64\HawaiiAppointment.exe%WINDIR%\SysWOW64\nvapp.exe%WINDIR%\SysWOW64\policsource.exe%WINDIR%\SysWOW64\slsbthpan.exe

Related Posts

Leave a Reply

Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter. If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.