Trojan Agent – cardctrl.exe – 7811971b70b89438548472184b43357c

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Agent
Also known as: Trojan Generic.KD, Trojan Downloader.Generic
SHA256: 6b581f475b1f93b529e06dca0081ce21b71070823158d618d014f3028b327db7
SHA1: cf8d1eee3af22f6e4adeb286a3e2f0454735b815
MD5: 7811971b70b89438548472184b43357c
File size: 70144 bytes

Created files:

%SysDir%\cardctrl.exe – Trojan Agent
%SysDir%\drivers\usbinckey.sys – Trojan Agent
%SysDir%\usbinckey.dll – Trojan Agent
%WinDir%\TEMP\fuc9E.tmp.exe – Trojan Agent

Trojan Agent created autostart registry keys:

HKLM\System\CurrentControlSet\Services\cardctrl\Type: 10000000
HKLM\System\CurrentControlSet\Services\cardctrl\Start: 02000000
HKLM\System\CurrentControlSet\Services\cardctrl\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\cardctrl\DisplayName: Windows Cards Manager
HKLM\System\CurrentControlSet\Services\cardctrl\ImagePath: %WinDir%\System32\cardctrl.exe
HKLM\System\CurrentControlSet\Services\usbinckey\Type: 01000000
HKLM\System\CurrentControlSet\Services\usbinckey\Start: 01000000
HKLM\System\CurrentControlSet\Services\usbinckey\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\usbinckey\DisplayName: usbinckey
HKLM\System\CurrentControlSet\Services\usbinckey\ImagePath: System32\drivers\usbinckey.sys

Leave a Reply