Solved! Use MDKTASK.EXE (Trojan Vilsel) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MDKTASK.EXE – Trojan Vilsel removal

FileMD5Virus Alias
MDKTASK.EXE 2b1a2576a707be4c5f295ea2b15f0ec1 Trojan Vilsel
MDKTASK.EXE 2b1a2576a707be4c5f295ea2b15f0ec1 Trojan ASPack
MDKTASK.EXE 2b1a2576a707be4c5f295ea2b15f0ec1 Trojan (Suspicious File)
MDKTASK.EXE 2b1a2576a707be4c5f295ea2b15f0ec1 Trojan Generic
MDKTASK.EXE 2b1a2576a707be4c5f295ea2b15f0ec1 Trojan Downloader
MDKTASK.EXE 2b1a2576a707be4c5f295ea2b15f0ec1 Trojan CI

MDKTASK.EXE size: 68096 bytes
MDKTASK.EXE hash: 2B1A2576A707BE4C5F295EA2B15F0EC1

Created files:

C:\windows\system32\mdktask.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\mdktaskpif: %WinDir%\System32\mdktask.pif
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\mdktaskcom: %WinDir%\System32\mdktask.com
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\mdktaskexe: %WinDir%\System32\mdktask.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\mdktaskcmd: %WinDir%\System32\mdktask.cmd
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\mdktaskscr: %WinDir%\System32\mdktask.scr
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Internet: %WinDir%\System32\InternetBanking.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Serviceavthekiller: %WinDir%\System32\avthekiller.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ServiceWinlogom1: %WinDir%\System32\Winlogom.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MSMSGS: “%Program Files%\Messenger\msmsgs.exe” /background

Detected by UnHackMe:

MDKTASK.EXE
Default location: %SYSDIR%\MDKTASK.EXE

Dropper information:
MD5: 2b1a2576a707be4c5f295ea2b15f0ec1
File size: 68096 bytes

Leave a Reply