I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
FENGYE66.EXE – Trojan Downloader removal
File | MD5 | Virus Alias |
---|---|---|
FENGYE66.EXE | f42fec3e74531edb3121b485f1035bc1 | Trojan Downloader |
FENGYE66.EXE | f42fec3e74531edb3121b485f1035bc1 | Suspicious File |
FENGYE66.EXE | f42fec3e74531edb3121b485f1035bc1 | Trojan Eldorado |
FENGYE66.EXE | f42fec3e74531edb3121b485f1035bc1 | Trojan Small |
FENGYE66.EXE | f42fec3e74531edb3121b485f1035bc1 | Trojan Delphi |
FENGYE66.EXE | f42fec3e74531edb3121b485f1035bc1 | Trojan Delf |
FENGYE66.EXE size: 23507 bytes
FENGYE66.EXE hash: F42FEC3E74531EDB3121B485F1035BC1
Created files:
%TEMP%\UnicodeFile.bin
%TEMP%\fengye66.exe
%TEMP%\Hook.dll
%TEMP%\SkinH_EL.dll
%TEMP%\superec.ProcessMemory.sys
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\ialdnwxf\Type: 01000000
HKLM\System\CurrentControlSet\Services\ialdnwxf\Start: 03000000
HKLM\System\CurrentControlSet\Services\ialdnwxf\DisplayName: ialdnwxf
HKLM\System\CurrentControlSet\Services\ialdnwxf\ImagePath: %TEMP%\\superec.ProcessMemory.sys
Detected by UnHackMe:
FENGYE66.EXE
Default location: %TEMP%\FENGYE66.EXE
Dropper information:
MD5: 09aad2de6c331263ea7bf0e5939944b9
File size: 1380352 bytes