Backdoor Ping – GuideOn.dll – 41ad096cba55de9bf1c2c789a74b9c24

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Ping
Also known as: Adware Kraddare, Trojan Adload
SHA256: ad708a79c7517eb82fbabd06e26689e006bb4c196a55ee59021df1ec12bd9fc9
SHA1: 5ba4d941da31d3178b31f5d590d7719b70310f82
MD5: 41ad096cba55de9bf1c2c789a74b9c24
File size: 146528 bytes

Created files:

%Program Files%\GuideOn\GuideOn.dll – Backdoor Ping
%Program Files%\GuideOn\GuideOn.exe – Backdoor Ping
%Program Files%\GuideOn\uninstall.exe – Backdoor Ping
%Temp%\GuideOn_GO83.exe – Backdoor Ping

Backdoor Ping created autostart registry keys:

HKLM\Software\Classes\CLSID\{462A03D9-8047-43fd-A5DA-D0A868688A5C}\InprocServer32 : %Program Files%\GuideOn\GuideOn.dll
HKLM\Software\Classes\CLSID\{462A03D9-8047-43fd-A5DA-D0A868688A5C}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{6704E2EA-6213-4d17-BB3D-4AE9E3609536}\InprocServer32 : %Program Files%\GuideOn\GuideOn.dll
HKLM\Software\Classes\CLSID\{6704E2EA-6213-4d17-BB3D-4AE9E3609536}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\GuideOn: %Program Files%\GuideOn\GuideOn.exe

Leave a Reply