Rootkit TDSS – 1FE608CA.sys – f163257fe1339e9752797bde13594e0f

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Rootkit TDSS
Also known as: Trojan Jorik
SHA256: a7e047a6e491ae5f233b48a1ed379e615786b0feb4e48557edf5d59c664d86aa
SHA1: 782db3cc7e4817498fb3e3c34e9b7dc6ea3ef2a4
MD5: f163257fe1339e9752797bde13594e0f
File size: 99840 bytes

Created files:

%SysDir%\1FE608CA.sys – Rootkit TDSS

Rootkit TDSS created autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0010409\Layout File: KBDUS.DLL
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0010409\Layout Text: 66B5104A
HKLM\System\CurrentControlSet\Services\1FE608CA\Type: 01000000
HKLM\System\CurrentControlSet\Services\1FE608CA\ImagePath: 730079007300740065006D00330032005C00310046004500360030003800430041002E007300790073000000
HKLM\System\CurrentControlSet\Services\1FE608CA\Group: 42006100730065000000

Leave a Reply