CMCPHV.DLL – Backdoor PcClien

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

CMCPHV.DLL – Backdoor PcClien removal

FileMD5Virus Alias
CMCPHV.DLL 549d335f718eab8a0d156f711f7426b7 Backdoor PcClien
CMCPHV.DLL 549d335f718eab8a0d156f711f7426b7 Trojan Generic
CMCPHV.DLL 549d335f718eab8a0d156f711f7426b7 Trojan Eldorado
CMCPHV.DLL 549d335f718eab8a0d156f711f7426b7 Trojan Agent

CMCPHV.DLL size: 102024 bytes
CMCPHV.DLL hash: 549D335F718EAB8A0D156F711F7426B7

Created files:

%SysDir%\cmcphv.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\kfuthv\Type: 10010000
HKLM\System\CurrentControlSet\Services\kfuthv\Start: 02000000
HKLM\System\CurrentControlSet\Services\kfuthv\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\kfuthv\DisplayName: kfuthv
HKLM\System\CurrentControlSet\Services\kfuthv\ImagePath: %WinDir%\System32\svchost.exe -k kfuthv
HKLM\System\CurrentControlSet\Services\kfuthv\Description: Microsoft .NET Framework TPM
HKLM\System\CurrentControlSet\Services\kfuthv\pARAMETERS\ServiceDll: 2500530079007300740065006D0052006F006F00740025005C00530079007300740065006D00330032005C0063006D0063007000680076002E0064006C006C000000

Detected by UnHackMe:

CMCPHV.DLL
Default location: %SYSDIR%\CMCPHV.DLL

Dropper information:
MD5: 01db9d693838dd2639b4e4b15191fce1
File size: 63181 bytes

Leave a Reply