TUGAS PRODUKTIF.EXE – Backdoor Maximus

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

TUGAS PRODUKTIF.EXE – Backdoor Maximus removal

FileMD5Virus Alias
TUGAS PRODUKTIF.EXE 8adaa690627e8aab034573d1c444b0da Backdoor Maximus
TUGAS PRODUKTIF.EXE 8adaa690627e8aab034573d1c444b0da Trojan SuspiciousFile
TUGAS PRODUKTIF.EXE 8adaa690627e8aab034573d1c444b0da Trojan Generic
TUGAS PRODUKTIF.EXE 8adaa690627e8aab034573d1c444b0da Trojan MulDrop4
TUGAS PRODUKTIF.EXE 8adaa690627e8aab034573d1c444b0da Trojan DNAScan

TUGAS PRODUKTIF.EXE size: 221184 bytes
TUGAS PRODUKTIF.EXE hash: 8ADAA690627E8AAB034573D1C444B0DA

Created files:

C:\ADIS.exe
C:\AUDI.exe
C:\INDAH.exe
C:\NITA.exe
C:\SINTA.exe
C:\SOVIA.exe
C:\WILDA.exe
%WinDir%\ADIS.exe
%WinDir%\AUDI.exe
%WinDir%\INDAH.exe
%WinDir%\NITA.exe
%WinDir%\SINTA.exe
%WinDir%\SOVIA.exe
%AppData%\sys.dll
%AppData%\TuGas Produktif.exe
%Local AppData%\simhost.exe
%SysDir%\config\systemprofile\Start Menu\Programs\Startup\007.vbs
%SysDir%\config\systemprofile\Start Menu\Programs\Startup\dllhost.com
%SysDir%\msvbvm60.dll
%WinDir%\WILDA.exe
D:\ADIS.exe
D:\AUDI.exe
D:\INDAH.exe
D:\NITA.exe
D:\SINTA.exe
D:\SOVIA.exe
D:\WILDA.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Print Epson: C:\Documents and Setting\Temporary\Epson
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\4uR3l: C:\windows\config\SOVIA-SINTA-NITA-ADIS-INDAH-AUDI-WILDA

Detected by UnHackMe:

TUGAS PRODUKTIF.EXE
Default location: %APPDATA%\TUGAS PRODUKTIF.EXE

Dropper information:
MD5: 8adaa690627e8aab034573d1c444b0da
File size: 221184 bytes

Leave a Reply