ADOBE GAMMA LOADER.COM – Backdoor IRCBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

ADOBE GAMMA LOADER.COM – Backdoor IRCBot removal

FileMD5Virus Alias
ADOBE GAMMA LOADER.COM 349b0ce2ff9d081bef4b746d6c25a6ca Backdoor IRCBot
ADOBE GAMMA LOADER.COM 349b0ce2ff9d081bef4b746d6c25a6ca Trojan Eldorado
ADOBE GAMMA LOADER.COM 349b0ce2ff9d081bef4b746d6c25a6ca Trojan Agent

ADOBE GAMMA LOADER.COM size: 949760 bytes
ADOBE GAMMA LOADER.COM hash: 349B0CE2FF9D081BEF4B746D6C25A6CA

Created files:

%Program Files%\Microsoft Office\OFFICE11\Drvics32.dll
%Program Files%\Microsoft Office\OFFICE11\hjwgsd.dll
%Program Files%\Microsoft Office\OFFICE11\jwiegh.dll
%Program Files%\Microsoft Office\OFFICE11\PUB60SP.mrc
%Program Files%\Microsoft Office\OFFICE11\ruimsbbe.dll
%Program Files%\Microsoft Office\OFFICE11\services.exe
%Program Files%\Microsoft Office\OFFICE11\smss.exe
%Program Files%\Microsoft Office\OFFICE11\yofc.dll
%Program Files%\Microsoft Office\OFFICE11\?WINWORD.EXE
%UserProfile%\Start Menu\Programs\Startup\Adobe Gamma Loader.com

Detected by UnHackMe:

ADOBE GAMMA LOADER.COM
Default location: %USERPROFILE%\START MENU\PROGRAMS\STARTUP\ADOBE GAMMA LOADER.COM

Dropper information:
MD5: 349b0ce2ff9d081bef4b746d6c25a6ca
File size: 949760 bytes

Leave a Reply