Trojan Agent – ~22.bat – e74cf20997d19a14b19f8a6794f630b8

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Agent
Also known as: Trojan Downloader.Generic, Trojan Siggen
SHA256: 2aaa370805486347aa9a6bbc5917391fdd4300443f735b415a046dfc6e79ca28
SHA1: 49b7a8ecfad3fafc12b8f67ecb4ada24350a57d2
MD5: e74cf20997d19a14b19f8a6794f630b8
File size: 60928 bytes

Created files:

%WinDir%\TEMP\~22.bat – Trojan Agent

Trojan Agent created autostart registry keys:

HKLM\System\CurrentControlSet\Services\AudioSrv\Start: 02000000
HKLM\System\CurrentControlSet\Services\DHCP\Start: 02000000
HKLM\System\CurrentControlSet\Services\Dnscache\Start: 04000000
HKLM\System\CurrentControlSet\Services\Mnmsrvc\Start: 04000000
HKLM\System\CurrentControlSet\Services\MSIServer\Start: 03000000
HKLM\System\CurrentControlSet\Services\PlugPlay\Start: 02000000
HKLM\System\CurrentControlSet\Services\RasAuto\Start: 04000000
HKLM\System\CurrentControlSet\Services\RSVP\Start: 04000000
HKLM\System\CurrentControlSet\Services\Seclogon\Start: 04000000
HKLM\System\CurrentControlSet\Services\SharedAccess\Start: 04000000
HKLM\System\CurrentControlSet\Services\SwPrv\Start: 03000000
HKLM\System\CurrentControlSet\Services\TlntSvr\Start: 04000000
HKLM\System\CurrentControlSet\Services\WebClient\Start: 04000000
HKLM\System\CurrentControlSet\Services\WmdmPmSN\Start: 04000000
HKLM\System\CurrentControlSet\Services\WmiApSrv\Start: 04000000
HKLM\System\CurrentControlSet\Services\Wuauserv\Start: 04000000
HKLM\System\CurrentControlSet\Services\WZCSVC\Start: 04000000

Leave a Reply