Trojan Agent – data.db – 025738643df8f114d2146e8735b49d23

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Agent
Also known as: Trojan Siggen
SHA256: 0e01ea2c54fe331fbfb39992df7834cba58d464852ac3c2673022ee3820fb760
SHA1: 77215471901f0f7e325a91e82ef6b755350750c1
MD5: 025738643df8f114d2146e8735b49d23
File size: 1386756 bytes

Created files:

%Program Files%\findtop\data.db – Trojan Agent
%Program Files%\findtop\del_bat.cmd – Trojan Agent
%Program Files%\findtop\findtop.exe – Trojan Agent
%Program Files%\findtop\findtop_setup_09.exe – Trojan Agent
%Program Files%\findtop\findtop_v1.dll – Trojan Agent
%Program Files%\findtop\free.exe – Trojan Agent
%Program Files%\findtop\sqlite3.dll – Trojan Agent
%Program Files%\findtop\unins000.exe – Trojan Agent
%Temp%\is-NMM6K.tmp\_isetup\_shfoldr.dll – Trojan Agent

Trojan Agent created autostart registry keys:

HKLM\Software\Classes\CLSID\{E97CF483-F78A-4234-97B6-9FAD2609D38A}\InprocServer32 : C:\PROGRA~1\findtop\FINDTO~1.DLL
HKLM\Software\Classes\CLSID\{E97CF483-F78A-4234-97B6-9FAD2609D38A}\InprocServer32\ThreadingModel: Apartment
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\findtop: c:\program files\findtop\findtop.exe

Leave a Reply