TF00294823.DLL – Trojan SuspiciousFile

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

TF00294823.DLL – Trojan SuspiciousFile removal

FileMD5Virus Alias
TF00294823.DLL aa72f480a733068a205c126a4a9d2eeb Trojan SuspiciousFile
TF00294823.DLL aa72f480a733068a205c126a4a9d2eeb Trojan Generic

TF00294823.DLL size: 4236288 bytes
TF00294823.DLL hash: AA72F480A733068A205C126A4A9D2EEB

Created files:

%TEMP%\tf00294823.dll
%Common AppData%\WebTouch\WebTouch.dll
%Common AppData%\WebTouch\WebTouchSvc.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\080324ef\Type: 10000000
HKLM\System\CurrentControlSet\Services\080324ef\Start: 02000000
HKLM\System\CurrentControlSet\Services\080324ef\DisplayName: WebTouch
HKLM\System\CurrentControlSet\Services\080324ef\ImagePath: “%WinDir%\System32\rundll32.exe” “c:\docume~1\alluse~1\applic~1\webtouch\WebTouchSvc.dll”,service

Detected by UnHackMe:

TF00294823.DLL
Default location: %TEMP%\TF00294823.DLL

Dropper information:
MD5: b985819a733663aa8d2e28ed798e0fee
File size: 4942336 bytes

Leave a Reply