Trojan Agent – data.db – 1497479a8865d4579dff88bfcd5a3736

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Agent
Also known as: Trojan Siggen
SHA256: 7e09afd35c34dce262e8f4da09dfcaf856d5d674b27c4158603064d34a5dd211
SHA1: 7c687891529307a7b0cc183b9aee77faba218392
MD5: 1497479a8865d4579dff88bfcd5a3736
File size: 1386756 bytes

Created files:

%Program Files%\findtop\data.db – Trojan Agent
%Program Files%\findtop\del_bat.cmd – Trojan Agent
%Program Files%\findtop\findtop.exe – Trojan Agent
%Program Files%\findtop\findtop_setup_03.exe – Trojan Agent
%Program Files%\findtop\findtop_v1.dll – Trojan Agent
%Program Files%\findtop\free.exe – Trojan Agent
%Program Files%\findtop\sqlite3.dll – Trojan Agent
%Program Files%\findtop\unins000.exe – Trojan Agent
%Temp%\is-VI3JC.tmp\_isetup\_shfoldr.dll – Trojan Agent

Trojan Agent created autostart registry keys:

HKLM\Software\Classes\CLSID\{E97CF483-F78A-4234-97B6-9FAD2609D38A}\InprocServer32 : C:\PROGRA~1\findtop\FINDTO~1.DLL
HKLM\Software\Classes\CLSID\{E97CF483-F78A-4234-97B6-9FAD2609D38A}\InprocServer32\ThreadingModel: Apartment
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\findtop: c:\program files\findtop\findtop.exe

Leave a Reply