Associated Malware Groups
The filename is associated with the malware group:
File Behavior
EXPLONER.EXE has been seen to perform the following behavior:
- Adds a Registry Key (RUN) to auto start Programs on system start up
- This Process Deletes Other Processes From Disk
- Executes Processes stored in Temporary Folders
- This process creates other processes on disk
- Can communicate with other computer systems using HTTP protocols
- Writes to another Process's Virtual Memory (Process Hijacking)
- Adds products to the system registry
- Executes a Process
- Looks at the contents of the autoexec.bat file
- Reads email address and phone book details
- Visits web sites on your PC without you knowing
EXPLONER.EXE has been the subject of the following behavior:
- Added as a Registry auto start to load Program on Boot up
- Has code inserted into its Virtual Memory space by other programs
- Executed from Temporary Folders
- Created as a process on disk
- Terminated as a Process
- Executed as a Process
- Copied to multiple locations on the system
Country Of Origin
The filename EXPLONER.EXE was first seen on Aug 31 2008 in the following geographical regions of the Prevx community:
- SPAIN on Aug 31 2008
- GERMANY on Aug 31 2008
- The UNITED KINGDOM on Sep 7 2008
- SERBIA AND MONTENEGRO on Jun 4 2009
File Name Aliases
EXPLONER.EXE can also use the following file names:
- GFXSETUP.EXE
- 93587083.EXE
- 88034045.EXE
- 49651377.EXE
- KEWJFEJFDD11OW.EXE
- UPDATE[1].EXE
- UPDATE[2].EXE
- 68234073.EXE
- 34754172.EXE
Filesizes
The following file size has been seen:
- 98,160 bytes
- 77,312 bytes
- 93,696 bytes
- 96,232 bytes
File Type
The filename EXPLONER.EXE refers to many versions of an executable program.
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.