Trojan ADH – Utility.dll – 069b9835e579f356297d5733f42ef86f

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan ADH
Also known as: Backdoor Farfli, Backdoor Zegost
SHA256: d5eaf40c487ad7122d7476c43371ff1927bdafae32ffe4fbbc0aa8b1a2cc5838
SHA1: 63746a1e9a7a20fde793dd327bdb7bd6460536b3
MD5: 069b9835e579f356297d5733f42ef86f
File size: 209846 bytes

Created files:

%SysDir%\common\Utility.dll – Trojan ADH
%SysDir%\Game.dll – Trojan ADH
%SysDir%\svch7t.exe – Trojan ADH

Trojan ADH created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\IDO Port: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C007300760063006800370074002E006500780065000000
HKLM\System\CurrentControlSet\Services\BITS\ComnetHost: FWKJGH}ohrebini)4455)hu`=6>>0
HKLM\System\CurrentControlSet\Services\BITS\ComnetNote: NOTE????

Leave a Reply