Trojan Dadobra – start.bat – a091f70130c8bf30b942ef8b2e37cd64

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Dadobra
Also known as: Trojan PolyCrypt, Trojan ADH
SHA256: 83182a93380eba16352eddbc138ba95fe1d533a0bbc567d8d67729c635a83508
SHA1: ff27841687588ca7f92f341fc1d7ec2aa8ef44d1
MD5: a091f70130c8bf30b942ef8b2e37cd64
File size: 366167 bytes

Created files:

%WinDir%\helper\start.bat – Trojan Dadobra
%WinDir%\helper\wscsvc.exe – Trojan Dadobra

Trojan Dadobra created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\run\wscsvc: %WinDir%\helper\start.bat

Leave a Reply