Meldsimp Trojan

Meldsimp virus description
Technical details:
Categories: Trojan
Meldsimp Aliases:
[Kaspersky]Trojan-Proxy.Win32.Small.du,Trojan-Proxy.Win32.Small.gl,Trojan-Proxy.Win32.Small.gk,Trojan.Win32.Agent.asu;
[McAfee]BackDoor-CWM;
[F-Prot]W32/Backdoor.VBIS,W32/TrojanX.ACHF,W32/TrojanX.ABZS,W32/Trojan.VBAA;
[Other]Win32/Meldsimp,Win32/Meldsimp.J,Hacktool,Win32/Meldsimp.AC,Virus:Win32/Grum.G,W32/Smalltroj.BKOX,Mal/Generic-A,Trojan Horse,W32/agent.BZHW,Troj/ASU-Gen,Backdoor.Trojan

Meldsimp Files:
[%PROFILE_TEMP%]\winlogon.exe
[%SYSTEM%]\mpcsvc.exe
[%SYSTEM%]\ogysteo.exe
[%PROFILE_TEMP%]\winlogon.exe
[%SYSTEM%]\mpcsvc.exe
[%SYSTEM%]\ogysteo.exe

Meldsimp Registry Values:
HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop
HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop
HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop
HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop
HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop
HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop
HKEY_CURRENT_USER\software\microsoft\internet explorer\security
HKEY_CURRENT_USER\software\microsoft\internet explorer\security
HKEY_CURRENT_USER\software\microsoft\internet explorer\security
HKEY_CURRENT_USER\software\microsoft\internet explorer\security
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run


Meldsimp indications of infection

This symptoms of Meldsimp detection are the files, registry, and network communication referenced in the technical details section.
Method of Infection
Trojans do not self-replicate. They are spread manually, often under the premise that the executable is something beneficial.Distribution channels include IRC, peer-to-peer networks, newsgroup postings, e-mail, etc.
Buy Exterminate-It antivirus software and perform a full scan of the computer.
You can also Download Free Trial Version of ExterminateIt! to check your your computer just NOW.

Also Be Aware of the Following Threats:
Remove SexoDial Adware
Remove Ranky.aa Trojan
Lookup.Chgrgs BHO Removal
Removing Bancos.FXF Trojan
Pigeon.AXH Trojan Information

No comments: