ITDRIVER.DLL – Trojan Magania

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

ITDRIVER.DLL – Trojan Magania removal

FileMD5Virus Alias
ITDRIVER.DLL dbd4ca7aa52a5d9e24f306930b7148fc Trojan Magania
ITDRIVER.DLL dbd4ca7aa52a5d9e24f306930b7148fc Trojan DLOADER
ITDRIVER.DLL dbd4ca7aa52a5d9e24f306930b7148fc Trojan SuspiciousFile
ITDRIVER.DLL dbd4ca7aa52a5d9e24f306930b7148fc Trojan Artemis
ITDRIVER.DLL dbd4ca7aa52a5d9e24f306930b7148fc Trojan Graftor
ITDRIVER.DLL dbd4ca7aa52a5d9e24f306930b7148fc Backdoor Zegost

ITDRIVER.DLL size: 76327 bytes
ITDRIVER.DLL hash: DBD4CA7AA52A5D9E24F306930B7148FC

Created files:

%SysDir%\ITDriver.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\IDriver\Type: 10000000
HKLM\System\CurrentControlSet\Services\IDriver\Start: 02000000
HKLM\System\CurrentControlSet\Services\IDriver\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\IDriver\DisplayName: IDriver
HKLM\System\CurrentControlSet\Services\IDriver\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\IDriver\Description: Provides support for the Running Object Table for InstallShield Drivers
HKLM\System\CurrentControlSet\Services\IDriver\SBIE_Win32ExitCode: 02000000
HKLM\System\CurrentControlSet\Services\IDriver\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00490054004400720069007600650072002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\IDriver\Parameters\ServiceMain: CtrlMain

Detected by UnHackMe:

ITDRIVER.DLL
Default location: %SYSDIR%\ITDRIVER.DLL

Dropper information:
MD5: f5ab8da829c398b819871a8cb2faf596
File size: 84480 bytes

Leave a Reply