IPv6CertBrowsSvc.dll – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

IPv6CertBrowsSvc.dll – Trojan Agent removal

FileVirus Alias
IPv6CertBrowsSvc.dll Trojan Agent
IPv6CertBrowsSvc.dll Trojan Downloader
IPv6CertBrowsSvc.dll Trojan Generic
IPv6CertBrowsSvc.dll Trojan DNAScan
IPv6CertBrowsSvc.dll Worm AMN

Created files:

%WinDir%\IPv6CertBrowsSvc.dll – Trojan Agent
%WinDir%\TEMP\ipv6certbrowssvc.dll – Trojan Agent

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\IPv6CertBrowsSvc\Type: 20000000
HKLM\System\CurrentControlSet\Services\IPv6CertBrowsSvc\Start: 02000000
HKLM\System\CurrentControlSet\Services\IPv6CertBrowsSvc\DisplayName: IPv6CertBrowsSvc
HKLM\System\CurrentControlSet\Services\IPv6CertBrowsSvc\ImagePath: %SystemRoot%\System32\svchost.exe -k ipv6svcs
HKLM\System\CurrentControlSet\Services\IPv6CertBrowsSvc\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C0049005000760036004300650072007400420072006F00770073005300760063002E0064006C006C000000

Detected by UnHackMe:

IPv6CertBrowsSvc.dll
Default location: %WinDir%\IPv6CertBrowsSvc.dll

Dropper information:
SHA256: 16b2ee3d9ba751e363dd4f126a01dd44890989a335876991ad6e8fd73d46a3da
SHA1: f2f98a370d16f2e576a8234e1bc8030e00ffaeab
MD5: ce35d03c9bad34def9099b2064193fd8
File size: 84581 bytes

Leave a Reply