Backdoor Poison – msdcsc.exe – df713d28148ab921cc25caef135f230a

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Poison
Also known as: Backdoor Tordev, Trojan Eldorado
SHA256: b7e69a739561742b1bf68b763d77683215808e5b1888028b53596536f4f36f27
SHA1: ec2c9973512b60f99eff7475256a991c35b48ba5
MD5: df713d28148ab921cc25caef135f230a
File size: 707072 bytes

Created files:

C:\MSDCSC\msdcsc.exe – Backdoor Poison

Backdoor Poison created autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\UserInit: %WinDir%\System32\userinit.exe,C:\MSDCSC\msdcsc.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MicroUpdate: C:\MSDCSC\msdcsc.exe

Leave a Reply