Trojan Graftor – FreeWebToonCtrl.dll – 5278b4e05ac950c97c0f9131987d6825

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Graftor
Also known as: Adware Kraddare, Trojan Agent
SHA256: b6183eee317919cc65ce1bba70a1ec16a1987c9eb47030060e7d3767c0021bde
SHA1: aeac5d1f5ee60ff9686d57125e04633a0d43bb5d
MD5: 5278b4e05ac950c97c0f9131987d6825
File size: 868304 bytes

Created files:

%Program Files%\FreeWebToon\FreeWebToonCtrl.dll – Trojan Graftor
%Program Files%\FreeWebToon\FWTAlert.exe – Trojan Graftor
%Program Files%\FreeWebToon\FWTChkSvc.exe – Trojan Graftor
%Program Files%\FreeWebToon\fwthostsvc.exe – Trojan Graftor
%Program Files%\FreeWebToon\FWTUninst.exe – Trojan Graftor
%Program Files%\FreeWebToon\FWTUpdate.exe – Trojan Graftor

Trojan Graftor created autostart registry keys:

HKLM\Software\Classes\CLSID\{9A5C9671-76C0-4B33-8321-0DD56C0F5CFA}\InprocServer32 : %Program Files%\FreeWebToon\FreeWebToonCtrl.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\FreeWebToon: %Program Files%\FreeWebToon\FWTUpdate.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\fwtalert: %Program Files%\FreeWebToon\FWTAlert.exe
HKLM\System\CurrentControlSet\Services\FreeWebToon\Type: 10010000
HKLM\System\CurrentControlSet\Services\FreeWebToon\Start: 02000000
HKLM\System\CurrentControlSet\Services\FreeWebToon\DisplayName: 4???T?(FreeWebToon)
HKLM\System\CurrentControlSet\Services\FreeWebToon\ImagePath: %Program Files%\FreeWebToon\FWTChkSvc.exe

Leave a Reply