I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Trojan Banker
Also known as: Trojan Kazy, Trojan Generic
SHA256: 90cc093b51b48bf4d19e3afd39e2a4ef31b9610b0548e8ef0a629dac083fec9a
SHA1: f0d1a85bf786d54b8e7e91cc082c54e6b8315a5a
MD5: 916f8351ccb51976ff407f7806eb1bc3
File size: 463360 bytes
Created files:
%Local AppData%\win.dll – Trojan Banker
%Local AppData%\win2.dll – Trojan Banker
%Temp%\RarSFX0\ex.exe – Trojan Banker
%Temp%\RarSFX0\win.dll – Trojan Banker
%Temp%\RarSFX0\win2.dll – Trojan Banker
Trojan Banker created autostart registry keys:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SystemWin: rundll32 “%Local AppData%\win.dll,run”
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SystemWin2: rundll32 “%Local AppData%\win2.dll,run”