Trojan.VBS.Agent Files
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\KBEppOaNQKcvSPt.vbs
File name: KBEppOaNQKcvSPt.vbsSize: 167.99 KB (167990 bytes)
MD5: e40c40adc953851df313ee6e920fa784
Detection count: 19
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\KBEppOaNQKcvSPt.vbs
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\KMSpico.vbs
File name: KMSpico.vbsSize: 271.73 KB (271737 bytes)
MD5: 8b056b93c729acee28ce644423b560f9
Detection count: 19
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\server.vbs
File name: server.vbsSize: 14.26 KB (14267 bytes)
MD5: f15f0ab913186991a3e30350f45223eb
Detection count: 19
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: May 13, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\reload.vbs
File name: reload.vbsSize: 17.06 KB (17062 bytes)
MD5: c5e4fa8646ec6bd8efe5b7623cca0920
Detection count: 19
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Boot pc.vbs
File name: Boot pc.vbsSize: 135.25 KB (135257 bytes)
MD5: f2478a6d79c66a49e6b7fcf9031eaae7
Detection count: 19
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmp32D4.tmp.vbs
File name: tmp32D4.tmp.vbsSize: 134.52 KB (134524 bytes)
MD5: 622dac45580b96abd182ac9ce2b6e5b7
Detection count: 19
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmp32D4.tmp.vbs
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mervy-CanadaPhotos (2).wsf
File name: Mervy-CanadaPhotos (2).wsfSize: 372.73 KB (372736 bytes)
MD5: b97a22fb37ca6db33b238c8bbda22469
Detection count: 19
Mime Type: unknown/wsf
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: November 17, 2021
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\leaf.vbe
File name: leaf.vbeSize: 357.92 KB (357920 bytes)
MD5: 57c390430bb0cc969484fb673268109b
Detection count: 19
Mime Type: unknown/vbe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\leaf.vbe
Group: Malware file
Last Updated: July 15, 2020
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\microsoft\windows\start menu\programs\startup\payment_receipt.vbs
File name: payment_receipt.vbsSize: 73.74 KB (73741 bytes)
MD5: 9072a91057c5a59e64bea934ce217494
Detection count: 19
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\microsoft\windows\start menu\programs\startup
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CARTA-COBRO.vbs
File name: CARTA-COBRO.vbsSize: 62.46 KB (62463 bytes)
MD5: a84d32fad4e40b7b87395c5574b5255a
Detection count: 16
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CARTA-COBRO.vbs
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\documents and settings\user\start menu\programs\startup\dygeanlxqx..vbs
File name: dygeanlxqx..vbsSize: 20.88 KB (20883 bytes)
MD5: 6891f09b99fd278f9a63a0a799032d2b
Detection count: 16
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\documents and settings\user\start menu\programs\startup
Group: Malware file
Last Updated: September 2, 2021
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RADACD~1.VBS
File name: RADACD~1.VBSSize: 204.8 KB (204800 bytes)
MD5: f7ffe2c26bdf0d961c631fb243180b1e
Detection count: 16
Mime Type: unknown/VBS
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RADACD~1.VBS
Group: Malware file
Last Updated: January 4, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\cc.vbs
File name: cc.vbsSize: 3.7 KB (3707 bytes)
MD5: 9d5b4b8bf5955dab04762205d1a61691
Detection count: 16
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: September 20, 2022
%APPDATA%\windows.vbs
File name: windows.vbsSize: 37.06 KB (37064 bytes)
MD5: ef14c04731574f7155841a20d3dfb70c
Detection count: 16
Mime Type: unknown/vbs
Path: %APPDATA%
Group: Malware file
Last Updated: June 30, 2017
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V.vbs
File name: Grand Theft Auto V.vbsSize: 48.6 KB (48601 bytes)
MD5: 298be5f639eb337c02f27f181520c981
Detection count: 16
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V.vbs
Group: Malware file
Last Updated: December 30, 2021
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\mj (scrambled).vbe
File name: mj (scrambled).vbeSize: 11.9 KB (11902 bytes)
MD5: 7abeba9c4f21ce4f4f97d121ff180bc3
Detection count: 16
Mime Type: unknown/vbe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\mj (scrambled).vbe
Group: Malware file
Last Updated: February 6, 2021
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Diapositivas Andrea.vbs
File name: Diapositivas Andrea.vbsSize: 60.78 KB (60788 bytes)
MD5: 7b416cac70773ba53afe6c881c0fa00c
Detection count: 16
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: October 28, 2021
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Crypted.vbs
File name: Crypted.vbsSize: 73.2 KB (73203 bytes)
MD5: d3eef4b6767876566cdd78c32d38c9ba
Detection count: 16
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Crypted.vbs
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Boot.vbs
File name: Boot.vbsSize: 1.09 MB (1094359 bytes)
MD5: 6459e9087ba976ef48b494a6bcbc5fef
Detection count: 14
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Windows Updates Files\Windows Updates Service.vbe
File name: Windows Updates Service.vbeSize: 997B (997 bytes)
MD5: 06e77b9bcfad3fbc6813d680f65faec6
Detection count: 14
Mime Type: unknown/vbe
Path: C:\Users\<username>\AppData\Roaming\Windows Updates Files
Group: Malware file
Last Updated: August 5, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Save.vbs
File name: Save.vbsSize: 8.36 MB (8367434 bytes)
MD5: e1d748f01ef970fff709228170f96e97
Detection count: 14
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\fotos nua.vbe
File name: fotos nua.vbeSize: 16.66 KB (16660 bytes)
MD5: bd24d6af85fe4c76df1cbb31252285e5
Detection count: 14
Mime Type: unknown/vbe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: April 16, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\sysdll.vbs
File name: sysdll.vbsSize: 678.74 KB (678741 bytes)
MD5: e39b185acfa6002caf561ec3bc9dec9d
Detection count: 14
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows.vbs
File name: Windows.vbsSize: 116.52 KB (116524 bytes)
MD5: b6e9b5a6e4882014e0f148a44985a26b
Detection count: 14
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows.vbs
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Datos_reporte_negativo#5422687754.vbe
File name: Datos_reporte_negativo#5422687754.vbeSize: 88.29 KB (88298 bytes)
MD5: ca9501bfb2d3cfed784c9e208e974c51
Detection count: 12
Mime Type: unknown/vbe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 15, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\sydefudfls.MOS-DW.vbe
File name: sydefudfls.MOS-DW.vbeSize: 196.6 KB (196608 bytes)
MD5: 5ef43c6a9b42b20a196b9770b2cd36a3
Detection count: 12
Mime Type: unknown/vbe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: September 14, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe_Flash_Player.vbs
File name: Adobe_Flash_Player.vbsSize: 2.36 MB (2366656 bytes)
MD5: 1eaebd9eb9da546a59c23089631da2b5
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dxrpdiag.vbs
File name: dxrpdiag.vbsSize: 732.55 KB (732556 bytes)
MD5: 66d568773820bffa2ef75b97c393e423
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: October 5, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mosther.vbs
File name: Mosther.vbsSize: 87.01 KB (87013 bytes)
MD5: 28dc57e25ac6b31447a9a4783d278a1d
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dbfaetvlal.vbs
File name: dbfaetvlal.vbsSize: 14.38 KB (14389 bytes)
MD5: 5e6f065dc68346054f3aae8d512a579a
Detection count: 12
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dbfaetvlal.vbs
Group: Malware file
Last Updated: January 14, 2023
%APPDATA%\certificate.vbs
File name: certificate.vbsSize: 24.79 KB (24791 bytes)
MD5: 00fc1e7a70ff49040d2d710f99363435
Detection count: 12
Mime Type: unknown/vbs
Path: %APPDATA%
Group: Malware file
Last Updated: July 15, 2017
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crack.vbs
File name: crack.vbsSize: 209.25 KB (209257 bytes)
MD5: fb9c01f2cc0814d6a4e32f656ffb9e8b
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GGFDSD~1.VBS
File name: GGFDSD~1.VBSSize: 29.98 KB (29983 bytes)
MD5: a897ee68276036886be6ceb2373a92ab
Detection count: 12
Mime Type: unknown/VBS
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: October 15, 2021
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AAA66.vbs
File name: AAA66.vbsSize: 1.39 KB (1399 bytes)
MD5: aa978c2cf954e9ea0768d138a306e966
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 8, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\scriptz.vbs
File name: scriptz.vbsSize: 89.61 KB (89615 bytes)
MD5: 5216e89b01d623405e796143e63d220d
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 14, 2021
C:\Users\<username>\AppData\Roaming\tmpFF06.tmp.vbe
File name: tmpFF06.tmp.vbeSize: 364.25 KB (364258 bytes)
MD5: 5b648f19ca781e55af24991d571680b6
Detection count: 12
Mime Type: unknown/vbe
Path: C:\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: August 5, 2020
%APPDATA%\certificate.vbs
File name: certificate.vbsSize: 28.12 KB (28125 bytes)
MD5: 1aabe531a13ed7c6d62100f59dd670b4
Detection count: 12
Mime Type: unknown/vbs
Path: %APPDATA%
Group: Malware file
Last Updated: July 15, 2017
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Download Free Java.exe (5).vbs
File name: Download Free Java.exe (5).vbsSize: 50.81 KB (50818 bytes)
MD5: 0ace11f40d396074b51cc76dbd8803d8
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tjc83.vbs
File name: tjc83.vbsSize: 101B (101 bytes)
MD5: 56b619c43a69ab6dadaf729be161909e
Detection count: 12
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft.vbe
File name: Microsoft.vbeSize: 399.64 KB (399647 bytes)
MD5: b3a0c4702372b22c659e11e59d27672a
Detection count: 12
Mime Type: unknown/vbe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft.vbe
Group: Malware file
Last Updated: May 22, 2023
%APPDATA%\certificate.vbs
File name: certificate.vbsSize: 24.8 KB (24805 bytes)
MD5: f68f013da5524599d1a406a2c04507f2
Detection count: 12
Mime Type: unknown/vbs
Path: %APPDATA%
Group: Malware file
Last Updated: July 15, 2017
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\reload.vbs
File name: reload.vbsSize: 16.98 KB (16989 bytes)
MD5: f27973131e9686e57bf65e5a1b92b4d0
Detection count: 12
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\reload.vbs
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Shell.vbs
File name: Shell.vbsSize: 5.02 KB (5026 bytes)
MD5: 145bc0e2bbe7c7ffba661222b3addf99
Detection count: 12
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Shell.vbs
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Chrome.vbs
File name: Chrome.vbsSize: 10.66 KB (10665 bytes)
MD5: 1e3710e5bd42f5dac668aa4b0607a5cd
Detection count: 9
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Chrome.vbs
Group: Malware file
Last Updated: July 16, 2020
%APPDATA%\certificate.vbs
File name: certificate.vbsSize: 33.68 KB (33683 bytes)
MD5: 69f49952a9ffc597d7e92434af294ce5
Detection count: 9
Mime Type: unknown/vbs
Path: %APPDATA%
Group: Malware file
Last Updated: July 15, 2017
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\microsoft\windows\start menu\programs\startup\tmped34.tmp.vbs
File name: tmped34.tmp.vbsSize: 57.49 KB (57494 bytes)
MD5: 06604fe996db9561afa5c6f2ca2cf077
Detection count: 9
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\microsoft\windows\start menu\programs\startup
Group: Malware file
Last Updated: June 5, 2021
%SYSTEMDRIVE%\win32system\win32system.vbe
File name: win32system.vbeSize: 12.28 KB (12288 bytes)
MD5: f2ca56335697225123b7e3fd809e628b
Detection count: 9
Mime Type: unknown/vbe
Path: %SYSTEMDRIVE%\win32system
Group: Malware file
Last Updated: August 27, 2019
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TempRegistre.vbs
File name: TempRegistre.vbsSize: 106.42 KB (106424 bytes)
MD5: 267bc1d08c62c486f14ab15e5f5b44cd
Detection count: 9
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Project.vbe
File name: Project.vbeSize: 151.48 KB (151486 bytes)
MD5: 58463c0a52c280bcdf2bcaf40afbc282
Detection count: 9
Mime Type: unknown/vbe
Path: C:\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: August 5, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShellCommonCommonProxyStub.vbs
File name: ShellCommonCommonProxyStub.vbsSize: 996B (996 bytes)
MD5: 2c54b3222ba77b79359ed9a18e77dd83
Detection count: 9
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\microsoft\windows\start menu\programs\startup\tptebpiway..vbs
File name: tptebpiway..vbsSize: 19.75 KB (19752 bytes)
MD5: 5e8d0d0dd0e37868b8dc662a6fe700c1
Detection count: 9
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\microsoft\windows\start menu\programs\startup
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Network\Connections\SysinternalsTask.vbs
File name: SysinternalsTask.vbsSize: 382.34 KB (382345 bytes)
MD5: c7d9559f041e7b1038d347dd43a4d0b9
Detection count: 9
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Network\Connections
Group: Malware file
Last Updated: July 13, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\windows.vbs
File name: windows.vbsSize: 135.01 KB (135013 bytes)
MD5: 1b097874d151fc0d68c1da2418f8ed88
Detection count: 9
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\windows.vbs
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Ccleaner.vbs
File name: Ccleaner.vbsSize: 66.92 KB (66920 bytes)
MD5: dea4c0f2aeb8fa4ce96ae93a6e7f4b47
Detection count: 9
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: January 18, 2022
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\startup.vbs
File name: startup.vbsSize: 3.63 KB (3638 bytes)
MD5: e016a39638dc9e94656c70e657e9bd1a
Detection count: 9
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\startup.vbs
Group: Malware file
Last Updated: July 18, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\4544.tmp.vbs
File name: 4544.tmp.vbsSize: 95.54 KB (95543 bytes)
MD5: 0fa3d0b6f274cbb390dcc7cd6ea70551
Detection count: 9
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\4544.tmp.vbs
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MOSTHER.vbs
File name: MOSTHER.vbsSize: 91.14 KB (91143 bytes)
MD5: b7af0c8981226e05684dcd33fa2b5bfe
Detection count: 9
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: August 31, 2020
%APPDATA%\windows.vbs
File name: windows.vbsSize: 19.66 KB (19660 bytes)
MD5: 10259b2d56c23b7c96a1a0401dc5d636
Detection count: 7
Mime Type: unknown/vbs
Path: %APPDATA%
Group: Malware file
Last Updated: June 30, 2017
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WWW.vbs
File name: WWW.vbsSize: 60.25 KB (60258 bytes)
MD5: 3d9aa1d3616f2bfdd81b0988180a2ce2
Detection count: 7
Mime Type: unknown/vbs
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WWW.vbs
Group: Malware file
Last Updated: July 16, 2020
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows Updates.vbs
File name: Windows Updates.vbsSize: 6.15 KB (6154 bytes)
MD5: 25e1e3ab2319cc77fe01fe438ecdb5b5
Detection count: 7
Mime Type: unknown/vbs
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 16, 2020
%APPDATA%\windows.vbs
File name: windows.vbsSize: 18.84 KB (18845 bytes)
MD5: 65d074657881bd2445b416ab4c9db16e
Detection count: 7
Mime Type: unknown/vbs
Path: %APPDATA%
Group: Malware file
Last Updated: June 30, 2017
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmp5A5F.tmp.vbe
File name: tmp5A5F.tmp.vbeSize: 31.41 KB (31413 bytes)
MD5: 34415c82dee2dfefc3c015784d89f2d7
Detection count: 7
Mime Type: unknown/vbe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmp5A5F.tmp.vbe
Group: Malware file
Last Updated: July 15, 2020
%ALLUSERSPROFILE%\sistema.vbs
File name: sistema.vbsSize: 7.11 KB (7119 bytes)
MD5: 9ec964f00ad21a602aa45adaf15187b1
Detection count: 7
Mime Type: unknown/vbs
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: August 23, 2017
%SYSTEMDRIVE%\win32system\win32system.vbe
File name: win32system.vbeSize: 16.38 KB (16384 bytes)
MD5: cd1d6fd56f8db0d26848d20bda8b663a
Detection count: 7
Mime Type: unknown/vbe
Path: %SYSTEMDRIVE%\win32system
Group: Malware file
Last Updated: November 21, 2019
C:\ProgramData\oue4hjld.vbs
File name: oue4hjld.vbsSize: 604B (604 bytes)
MD5: a0e5c8b0ad3da42bf6952871a41bf5e8
Detection count: 7
Mime Type: unknown/vbs
Path: C:\ProgramData
Group: Malware file
Last Updated: March 9, 2022
C:\ProgramData\bhnasleil.bat
File name: bhnasleil.batSize: 3.75 KB (3751 bytes)
MD5: 0f96848827a2960f874bcf613ce1e72c
Detection count: 7
File type: Batch file
Mime Type: unknown/bat
Path: C:\ProgramData
Group: Malware file
Last Updated: March 9, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\r.vbe
File name: r.vbeSize: 14.93 KB (14933 bytes)
MD5: 34824544037141bcc1687ef64b52b3d7
Detection count: 7
Mime Type: unknown/vbe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: July 15, 2020
%APPDATA%\RAV64.exe
File name: RAV64.exeSize: 278.52 KB (278528 bytes)
MD5: 9fcd938813738b39748df9535e6df9e5
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 3, 2016
%ALLUSERSPROFILE%\sistema.vbs
File name: sistema.vbsSize: 6.88 KB (6883 bytes)
MD5: 1e51b643003df684368d4a567ed1e68c
Detection count: 7
Mime Type: unknown/vbs
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: August 23, 2017
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\windows updates files\windows updates service.vbe
File name: windows updates service.vbeSize: 997B (997 bytes)
MD5: 87bcf342ea07e20974fde1f561f5fcac
Detection count: 7
Mime Type: unknown/vbe
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\windows updates files
Group: Malware file
Last Updated: August 5, 2020