DNFBOX.EXE – Trojan PAK_Generic

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

DNFBOX.EXE – Trojan PAK_Generic removal

FileMD5Virus Alias
DNFBOX.EXE 5803d75f80281809f519f3b852e1c875 Trojan PAK_Generic
DNFBOX.EXE 5803d75f80281809f519f3b852e1c875 Virus Part

DNFBOX.EXE size: 2757585 bytes
DNFBOX.EXE hash: 5803D75F80281809F519F3B852E1C875

Created files:

%WinDir%\System32\drivers\Beep.sys
%WinDir%\System32\tctlhw.exe
%TEMP%\DNFBox.exe
%TEMP%\tplink1.exe
%TEMP%\_ir_sf_temp_0\lua5.1.dll

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\54rk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

Detected by UnHackMe:

DNFBOX.EXE
Default location: %TEMP%\DNFBOX.EXE

Dropper information:
MD5: 35794a2b5e40d6974353761d95ab31cc
File size: 2825101 bytes

Leave a Reply