Trojan Generic.KD – Javawx.exe – 1f550d446980f7f2dfaca08731c38d64

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Generic.KD
Also known as: Trojan CI, Backdoor Cybergate
SHA256: e81f92a7e5458f91ab9fdcff14e1b2f731bccf51de4354befcc4a6529fb4befb
SHA1: 53faf9d1335536e62e945aec10de9ec47a2c01a9
MD5: 1f550d446980f7f2dfaca08731c38d64
File size: 376832 bytes

Created files:

%AppData%\Java suns\Javawx.exe – Trojan Generic.KD

Trojan Generic.KD created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{4M1OY3CL-TCHT-DMOA-T46O-NT4BG2265B8B}\StubPath: 43003A005C0044006F00630075006D0065006E0074007300200061006E0064002000530065007400740069006E00670073005C0055005300450052005C004100700070006C00690063006100740069006F006E00200044006100740061005C004A006100760061002000730075006E0073005C004A00610076006100770078002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Javawx Update: 43003A005C0044006F00630075006D0065006E0074007300200061006E0064002000530065007400740069006E00670073005C0055005300450052005C004100700070006C00690063006100740069006F006E00200044006100740061005C004A006100760061002000730075006E0073005C004A00610076006100770078002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Javawx Update: 43003A005C0044006F00630075006D0065006E0074007300200061006E0064002000530065007400740069006E00670073005C0055005300450052005C004100700070006C00690063006100740069006F006E00200044006100740061005C004A006100760061002000730075006E0073005C004A00610076006100770078002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Javawx Update: 43003A005C0044006F00630075006D0065006E0074007300200061006E0064002000530065007400740069006E00670073005C0055005300450052005C004100700070006C00690063006100740069006F006E00200044006100740061005C004A006100760061002000730075006E0073005C004A00610076006100770078002E006500780065000000

Leave a Reply