I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
CRYPTGO.EXE – Trojan Downloader removal
File | MD5 | Virus Alias |
---|---|---|
CRYPTGO.EXE | ab9e8107617b7a70669e314f0c498d33 | Trojan Downloader |
CRYPTGO.EXE | ab9e8107617b7a70669e314f0c498d33 | Trojan Small |
CRYPTGO.EXE size: 24064 bytes
CRYPTGO.EXE hash: AB9E8107617B7A70669E314F0C498D33
Created files:
C:\Userdll32\cryptd.exe
C:\Userdll32\cryptgo.exe
C:\Userdll32\diablo130302.cl
C:\Userdll32\diakgcn121016.cl
C:\Userdll32\drv\drv.exe
C:\Userdll32\libcurl-4.dll
C:\Userdll32\libeay32.dll
C:\Userdll32\libidn-11.dll
C:\Userdll32\librtmp.dll
C:\Userdll32\libssh2.dll
C:\Userdll32\mnrd.exe
C:\Userdll32\mnrdgo.exe
C:\Userdll32\phatk121016.cl
C:\Userdll32\poclbm130302.cl
C:\Userdll32\pthreadGC2.dll
C:\Userdll32\scrypt130511.cl
C:\Userdll32\ssleay32.dll
C:\Userdll32\zlib1.dll
Autostart registry keys:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\JavaCrypth: C:\Userdll32\cryptgo.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Mnird32: C:\Userdll32\mnrdgo.exe
Detected by UnHackMe:
CRYPTGO.EXE
Default location: C:\USERDLL32\CRYPTGO.EXE
Dropper information:
MD5: 681eb886ffa9ae0825235bb011078ec2
File size: 10280477 bytes