expIorer.exe – Trojan ADH

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

expIorer.exe – Trojan ADH removal

FileVirus Alias
expIorer.exe Trojan ADH
expIorer.exe Trojan Generic
expIorer.exe Trojan CI

Created files:

%Program Files Common%\System\ado\en-UK\1.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\10.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\11.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\12.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\13.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\14.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\15.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\16.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\17.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\18.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\19.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\2.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\20.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\21.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\23.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\24.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\3.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\4.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\5.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\6.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\7.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\8.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\9.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\addoneAR.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\addoneEN.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\Auto_Join.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\Auto_OVKICK.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\bad_channel.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\bad_swearing.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\banned.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\Banned_style.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\c3ij9.dll – Trojan ADH
%Program Files Common%\System\ado\en-UK\channel.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\chanserv.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\color_options.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\cpanel.fon – Trojan ADH
%Program Files Common%\System\ado\en-UK\download\mirc.exe – Trojan ADH
%Program Files Common%\System\ado\en-UK\edit_shortcut.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\expIorer.exe – Trojan ADH
%Program Files Common%\System\ado\en-UK\general.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\HANI.DLL – Trojan ADH
%Program Files Common%\System\ado\en-UK\ircintro.GID – Trojan ADH
%Program Files Common%\System\ado\en-UK\MDX.DLL – Trojan ADH
%Program Files Common%\System\ado\en-UK\mirc.GID – Trojan ADH
%Program Files Common%\System\ado\en-UK\Mp3_player.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\Nick_Service.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\Personal.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\q.fon – Trojan ADH
%Program Files Common%\System\ado\en-UK\script_kick_msg.mirc – Trojan ADH
%Program Files Common%\System\ado\en-UK\TMP1.$$$ – Trojan ADH
%Program Files Common%\System\ado\en-UK\TMP2.$$$ – Trojan ADH
%Program Files Common%\System\ado\en-UK\VIEWS.MDX – Trojan ADH

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\WinXPService: %Program Files Common%\System\ado\en-UK\expIorer.exe

Detected by UnHackMe:

expIorer.exe
Default location: %Program Files Common%\System\ado\en-UK\expIorer.exe

Dropper information:
SHA256: efaea0dff3fad145659ec85966bd02c45b8060a1d6979f95cc4a9caf832dde66
SHA1: cfd40d75bbcd4a755574464d4c43f80be4f03a73
MD5: ea608cede33eb04424420ec9b58c2d82
File size: 2109638 bytes

Leave a Reply