egui.dll – Trojan Magania

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

egui.dll – Trojan Magania removal

FileVirus Alias
egui.dll Trojan Magania
egui.dll Trojan Downloader.Generic
egui.dll Backdoor Zegost
egui.dll Backdoor Farfli
egui.dll Backdoor PcClien

Created files:

%SysDir%\egui.dll – Trojan Magania

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\EhttpServer\Type: 10000000
HKLM\System\CurrentControlSet\Services\EhttpServer\Start: 02000000
HKLM\System\CurrentControlSet\Services\EhttpServer\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\EhttpServer\DisplayName: ESET HTTP Server Help
HKLM\System\CurrentControlSet\Services\EhttpServer\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\EhttpServer\Description: ESET HTTP Server Helper
HKLM\System\CurrentControlSet\Services\EhttpServer\azlj: B08551FBF8784550823B03148BC371E1.EXE
HKLM\System\CurrentControlSet\Services\EhttpServer\ConnectGroup: Default
HKLM\System\CurrentControlSet\Services\EhttpServer\SBIE_Win32ExitCode: 02000000
HKLM\System\CurrentControlSet\Services\EhttpServer\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0065006700750069002E0064006C006C000000

Detected by UnHackMe:

egui.dll
Default location: %SysDir%\egui.dll

Dropper information:
SHA256: f4f597561abba3306258af6bd5b807df95e0295c6582b4441fb491a648043ab6
SHA1: 1b2cd7bac1721998f5ba92944405fc2fd51664f0
MD5: b08551fbf8784550823b03148bc371e1
File size: 71680 bytes

Leave a Reply