Trojan Banker – win.dll – 916f8351ccb51976ff407f7806eb1bc3

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Banker
Also known as: Trojan Kazy, Trojan Generic
SHA256: 90cc093b51b48bf4d19e3afd39e2a4ef31b9610b0548e8ef0a629dac083fec9a
SHA1: f0d1a85bf786d54b8e7e91cc082c54e6b8315a5a
MD5: 916f8351ccb51976ff407f7806eb1bc3
File size: 463360 bytes

Created files:

%Local AppData%\win.dll – Trojan Banker
%Local AppData%\win2.dll – Trojan Banker
%Temp%\RarSFX0\ex.exe – Trojan Banker
%Temp%\RarSFX0\win.dll – Trojan Banker
%Temp%\RarSFX0\win2.dll – Trojan Banker

Trojan Banker created autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SystemWin: rundll32 “%Local AppData%\win.dll,run”
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SystemWin2: rundll32 “%Local AppData%\win2.dll,run”

Leave a Reply