Trojan Generic.KD – 7b8e7.sys – c05c2118f9c90bf9e1837b37fca33ba0

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Generic.KD
Also known as: Trojan Downloader.Generic, Trojan-Ransom Gimemo
SHA256: 7057c70bac02b718638aa7e29d0475d32669e9fee79b2148b4090f08bf2c00a2
SHA1: dbcb818cea1cc7ca85f3f877728e922217dc5f3f
MD5: c05c2118f9c90bf9e1837b37fca33ba0
File size: 613376 bytes

Created files:

%SysDir%\drivers\7b8e7.sys – Trojan Generic.KD
%Desktop%\Buy Win 8 Security System.lnk – Trojan Generic.KD
%Local AppData%\26975e3d76fd71b0.exe – Trojan Generic.KD
%Startmenu%\Programs\Win 8 Security System\Buy Win 8 Security System.lnk – Trojan Generic.KD
%Startmenu%\Programs\Win 8 Security System\Launch Win 8 Security System.lnk – Trojan Generic.KD

Trojan Generic.KD created autostart registry keys:

HKLM\System\CurrentControlSet\Services\7b8e7\Type: 01000000
HKLM\System\CurrentControlSet\Services\7b8e7\Start: 01000000
HKLM\System\CurrentControlSet\Services\7b8e7\DisplayName: 26975e3d76fd71b0.exe
HKLM\System\CurrentControlSet\Services\7b8e7\ImagePath: %WinDir%\System32\drivers\7b8e7.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\26975e3d76fd71b0.exe: %Local AppData%\26975e3d76fd71b0.exe

Leave a Reply