Trojan FakeAV – mlc.exe – 0c332c1240374398184c75c94df3a81b

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan FakeAV
Also known as: Trojan Crypt, Trojan AVKill
SHA256: ea96fe56af694d91126622f16acb8448df560be7387703daeb43e996323101ed
SHA1: 3a3a202d95d11818f69b8a7b36be01f114bee714
MD5: 0c332c1240374398184c75c94df3a81b
File size: 344064 bytes

Created files:

%Local AppData%\mlc.exe – Trojan FakeAV

Trojan FakeAV created autostart registry keys:

HKLM\System\CurrentControlSet\Services\SharedAccess\Start: 04000000
HKLM\System\CurrentControlSet\Services\wuauserv: deleted registry key
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ctfmon.exe: %WinDir%\System32\ctfmon.exe

Leave a Reply