Trojan FakeAV – cgd.exe – 5676b6bb3887f0c9f5baab87fcddac29

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan FakeAV
Also known as: Trojan Generic, Trojan Agent
SHA256: 063b202ed71bb087e592d2e0af3863e2c252a9aff2576a75f6097878eb07b52f
SHA1: 2e78fdc663caf9ec1710cc8c9306ccf0d338cf65
MD5: 5676b6bb3887f0c9f5baab87fcddac29
File size: 401408 bytes

Created files:

%SysDir%\config\systemprofile\Local Settings\Application Data\cgd.exe – Trojan FakeAV

Trojan FakeAV created autostart registry keys:

HKLM\System\CurrentControlSet\Services\SharedAccess\Start: 04000000
HKLM\System\CurrentControlSet\Services\wuauserv: deleted registry key
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ctfmon.exe: %WinDir%\System32\ctfmon.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\3901362145: %WinDir%\System32\config\Systemprofile\Local Settings\Application Data\cgd.exe

Leave a Reply