gongsi360.dll – Trojan Magania

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

gongsi360.dll – Trojan Magania removal

FileVirus Alias
gongsi360.dll Trojan Magania
gongsi360.dll Trojan OnLineGames
gongsi360.dll Backdoor Zegost
gongsi360.dll Backdoor Farfli
gongsi360.dll Trojan Generic
gongsi360.dll Backdoor PcClien

Created files:

C:\Windows\System32\gongsi360.dll – Trojan Magania

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Rspdates\Type: 10000000
HKLM\System\CurrentControlSet\Services\Rspdates\Start: 02000000
HKLM\System\CurrentControlSet\Services\Rspdates\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Rspdates\DisplayName: RSystem
HKLM\System\CurrentControlSet\Services\Rspdates\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\Rspdates\Description: ???????????
HKLM\System\CurrentControlSet\Services\Rspdates\Load_Path: 0FEA92649A9B7C7283831BD54F6E93A9.EXE
HKLM\System\CurrentControlSet\Services\Rspdates\ConnectGroup: ?????
HKLM\System\CurrentControlSet\Services\Rspdates\SBIE_Win32ExitCode: 02000000

Detected by UnHackMe:

gongsi360.dll
Default location: C:\Windows\System32\gongsi360.dll

Dropper information:
SHA256: 4d8bb89f54aa5a9c38beb64aa113927febf5ca0a9cd669e35a1859298704a96e
SHA1: 2590b5eb68473bbde5d756b607cb0c369671f6a9
MD5: 0fea92649a9b7c7283831bd54f6e93a9
File size: 60626 bytes

Leave a Reply