FENGYE66.EXE – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

FENGYE66.EXE – Trojan Downloader removal

FileMD5Virus Alias
FENGYE66.EXE f42fec3e74531edb3121b485f1035bc1 Trojan Downloader
FENGYE66.EXE f42fec3e74531edb3121b485f1035bc1 Suspicious File
FENGYE66.EXE f42fec3e74531edb3121b485f1035bc1 Trojan Eldorado
FENGYE66.EXE f42fec3e74531edb3121b485f1035bc1 Trojan Small
FENGYE66.EXE f42fec3e74531edb3121b485f1035bc1 Trojan Delphi
FENGYE66.EXE f42fec3e74531edb3121b485f1035bc1 Trojan Delf

FENGYE66.EXE size: 23507 bytes
FENGYE66.EXE hash: F42FEC3E74531EDB3121B485F1035BC1

Created files:

%TEMP%\UnicodeFile.bin
%TEMP%\fengye66.exe
%TEMP%\Hook.dll
%TEMP%\SkinH_EL.dll
%TEMP%\superec.ProcessMemory.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\ialdnwxf\Type: 01000000
HKLM\System\CurrentControlSet\Services\ialdnwxf\Start: 03000000
HKLM\System\CurrentControlSet\Services\ialdnwxf\DisplayName: ialdnwxf
HKLM\System\CurrentControlSet\Services\ialdnwxf\ImagePath: %TEMP%\\superec.ProcessMemory.sys

Detected by UnHackMe:

FENGYE66.EXE
Default location: %TEMP%\FENGYE66.EXE

Dropper information:
MD5: 09aad2de6c331263ea7bf0e5939944b9
File size: 1380352 bytes

Leave a Reply