KL.CPL – Trojan Bancos

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

KL.CPL – Trojan Bancos removal

FileMD5Virus Alias
KL.CPL 7dd35d8578293edca154d05f634c0b44 Trojan Bancos
KL.CPL 7dd35d8578293edca154d05f634c0b44 Trojan Downloader
KL.CPL 7dd35d8578293edca154d05f634c0b44 Trojan CI
KL.CPL 7dd35d8578293edca154d05f634c0b44 Trojan Banload
KL.CPL 7dd35d8578293edca154d05f634c0b44 Trojan Banker

KL.CPL size: 3538432 bytes
KL.CPL hash: 7DD35D8578293EDCA154D05F634C0B44

Created files:

%WinDir%\infect
%WinDir%\KILL2.CPL
%UserProfile%\Local Settings\Application Data\antivirus.cpl
%UserProfile%\Local Settings\Application Data\verifique
%UserProfile%\Local Settings\Application Data\VirtualDJ.exe
%Temporary Internet Files%\Content.IE5\1HVEIEYW\2013[1].cpl
%SysDir%\kl.cpl

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\antivirus: %Local AppData%\antivirus.cpl

Detected by UnHackMe:

KL.CPL
Default location: %SYSDIR%\KL.CPL

Dropper information:
MD5: 125cb59da0395236c7c1e22b389de554
File size: 161792 bytes

Leave a Reply