ADOBE_UPDATE.EXE – Trojan Banker

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

ADOBE_UPDATE.EXE – Trojan Banker removal

FileMD5Virus Alias
ADOBE_UPDATE.EXE 29934cd6f8951878366b3536c2754ba0 Trojan Banker
ADOBE_UPDATE.EXE 29934cd6f8951878366b3536c2754ba0 Trojan Click

ADOBE_UPDATE.EXE size: 909312 bytes

Created files:

%SysDir%\llwnmn.exe
%WinDir%\Temp\8185.exe
%WinDir%\Temp\adobe_update.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\chun\Type: 10000000
HKLM\System\CurrentControlSet\Services\chun\Start: 02000000
HKLM\System\CurrentControlSet\Services\chun\DisplayName: chun
HKLM\System\CurrentControlSet\Services\chun\ImagePath: %WinDir%\System32\llwnmn.exe
HKLM\System\CurrentControlSet\Services\chun\Description: chun

Detected by UnHackMe:

ADOBE_UPDATE.EXE
Default location: %TEMP%\ADOBE_UPDATE.EXE
Dropper information:
MD5: dd1305783688904271839b44388ce023
File size: 672268 bytes

Leave a Reply