Trojan Downloader.Generic – AutoRun.inf – 09107e2dd2b946581a2a287e488973ce

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

Trojan Downloader.Generic
Also known as: Trojan Eldorado, Trojan Crypt
SHA256: cecf95382317df475641a42184b206bf27b8dd56e014df3d881c1c44949a8339
SHA1: 8094762858c33605301e46baf01d7f8098114011
MD5: 09107e2dd2b946581a2a287e488973ce
File size: 28160 bytes

Created files:

C:\AutoRun.inf – Trojan Downloader.Generic
C:\Driver.sys – Trojan Downloader.Generic
%SysDir%\kcqh“.DLL – Trojan Downloader.Generic
%SysDir%\ohci“.DLL – Trojan Downloader.Generic

Trojan Downloader.Generic created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\System: %WinDir%\System32\System.exe
HKLM\System\CurrentControlSet\Services\Driver\Type: 01000000
HKLM\System\CurrentControlSet\Services\Driver\Start: 03000000
HKLM\System\CurrentControlSet\Services\Driver\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Driver\DisplayName: Driver
HKLM\System\CurrentControlSet\Services\Driver\ImagePath: C:\Driver.sys

Leave a Reply