Backdoor Ping – AdvTCApp.exe – 6b9b61e66158d8a0644acd96116c1b32

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Ping
Also known as: Trojan Generic, Adware Kraddare
SHA256: 0055d2e1eed6dd58ffded5481d997a4daecaf1da6ba8eca2aa449e808a689126
SHA1: 5f66b77d4e1df6e4ce47b6c630c9b41dfe8d3f85
MD5: 6b9b61e66158d8a0644acd96116c1b32
File size: 580520 bytes

Created files:

%Program Files%\AdvTopC\AdvTCApp.exe – Backdoor Ping
%Program Files%\AdvTopC\TCCheckAgent.exe – Backdoor Ping
%Program Files%\AdvTopC\TCHelper.dll – Backdoor Ping
%Program Files%\AdvTopC\TCUnins.exe – Backdoor Ping

Backdoor Ping created autostart registry keys:

HKLM\Software\Classes\CLSID\{3E5EF872-03E2-4CE0-94DF-CA8A5004ECFD}\InprocServer32 : %Program Files%\AdvTopC\TCHelper.dll
HKLM\System\CurrentControlSet\Services\TCCheckAgent\Type: 10010000
HKLM\System\CurrentControlSet\Services\TCCheckAgent\Start: 02000000
HKLM\System\CurrentControlSet\Services\TCCheckAgent\DisplayName: TCCheckAgent
HKLM\System\CurrentControlSet\Services\TCCheckAgent\ImagePath: %Program Files%\AdvTopC\TCCheckAgent.exe

Leave a Reply