SETUP1209.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SETUP1209.EXE – Trojan Agent removal

FileMD5Virus Alias
SETUP1209.EXE 084a84d07284ec9c26c33123b68c6d87 Trojan Agent
SETUP1209.EXE 084a84d07284ec9c26c33123b68c6d87 Suspicious File

SETUP1209.EXE size: 192056 bytes
SETUP1209.EXE hash: 084A84D07284EC9C26C33123B68C6D87

Created files:

%Program Files%\HuaCi\huaci\abhcop.sys
%Program Files%\HuaCi\huaci\hcalway.sys
%Program Files%\HuaCi\huaci\Mouse1.dll
%Program Files%\HuaCi\huaci\mUin.exe
%Program Files%\HuaCi\huaci\SearchM.dll
%Program Files%\HuaCi\huaci\zsearch.exe
%Program Files%\HuaCi\huaci\zsup.exe
%Program Files%\HuaCi\huaci\_uninstall
%TEMP%\9f3d75a2-a1e6-4b92-8190-54e9a0fa8369\flashplayer6installer.exe
%TEMP%\9f3d75a2-a1e6-4b92-8190-54e9a0fa8369\setup1209.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MoveSearch: %Program Files%\HuaCi\huaci\zsearch.exe

Detected by UnHackMe:

SETUP1209.EXE
Default location: %TEMP%\9F3D75A2-A1E6-4B92-8190-54E9A0FA8369\SETUP1209.EXE

Dropper information:
MD5: 10a7cb364c27515446794cdcd80c3c26
File size: 1950518 bytes

Leave a Reply