OPE34.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

OPE34.EXE – Trojan Agent removal

FileMD5Virus Alias
OPE34.EXE 1f8a4ba73fca8b1500b11ee2b2074727 Trojan Agent
OPE34.EXE 1f8a4ba73fca8b1500b11ee2b2074727 Trojan Downloader
OPE34.EXE 1f8a4ba73fca8b1500b11ee2b2074727 Virus Part
OPE34.EXE 1f8a4ba73fca8b1500b11ee2b2074727 Backdoor PcClien
OPE34.EXE 1f8a4ba73fca8b1500b11ee2b2074727 Trojan Magania
OPE34.EXE 1f8a4ba73fca8b1500b11ee2b2074727 Backdoor Zegost

OPE34.EXE size: 188416 bytes
OPE34.EXE hash: 1F8A4BA73FCA8B1500B11EE2B2074727

Created files:

%SysDir%\nt6to4.dll
%TEMP%\ope34.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\6to4\Type: 20010000
HKLM\System\CurrentControlSet\Services\6to4\Start: 02000000
HKLM\System\CurrentControlSet\Services\6to4\DisplayName: wkencga?
HKLM\System\CurrentControlSet\Services\6to4\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\6to4\Module: %TEMP%\ope34.exe
HKLM\System\CurrentControlSet\Services\6to4\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C006E007400360074006F0034002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\6to4\Parameters\ServiceMain: FreeTest

Detected by UnHackMe:

OPE34.EXE
Default location: %TEMP%\OPE34.EXE

Dropper information:
MD5: 0fd77ff8a83dfc0e0f0574bc48546478
File size: 122880 bytes

Leave a Reply