64528.dmp – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

64528.dmp – Trojan Agent removal

FileVirus Alias
64528.dmp Trojan Agent
64528.dmp Trojan Siggen
64528.dmp Trojan Tibia
64528.dmp Trojan Generic
64528.dmp Trojan CI
64528.dmp Trojan ADH

Created files:

%SysDir%\config\systemprofile\Application Data\mservice32.exe – Trojan Agent
%WinDir%\Temp\64528.dmp – Trojan Agent
%WinDir%\Temp\server_n.exe – Trojan Agent
%WinDir%\Temp\__tmp_rar_sfx_access_check_403249 – Trojan Agent

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\UpdateN: %WinDir%\System32\config\Systemprofile\Application Data\mservice32.exe

Detected by UnHackMe:

64528.dmp
Default location: %WinDir%\Temp\64528.dmp

Dropper information:
SHA256: d74f881aed0f1eceae7e6f5ad304f0a63761151be328f6de4a1218d03ad58588
SHA1: 123e519d580caedc77ceb68a51daef74f7db38a1
MD5: 0b17e36750a0fde4e1d950584ec97b42
File size: 900557 bytes

Leave a Reply