Trojan Graftor – ksuser.dll – b13e67a102e12ad111ebbaacde81d31c

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Graftor
Also known as: Trojan OnLineGames, Backdoor PcClien
SHA256: 388baf2e232f8d045cde1e61d04e98fc9506b61f13a31205de5a4aecab8e9f79
SHA1: f4b9a7864ac8213e6e721e70ca200aff99783b2c
MD5: b13e67a102e12ad111ebbaacde81d31c
File size: 49664 bytes

Created files:

%SysDir%\dllcache\ksuser.dll – Trojan Graftor
%SysDir%\sysapp17.dll – Trojan Graftor
%SysDir%\yuksuser.dll – Trojan Graftor
%SysDir%\yumidimap.dll – Trojan Graftor

Trojan Graftor created autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Ime File: CHINASOUGOU.IME
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout Text: ????(???)???
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout File: kbdus.dll
HKLM\System\CurrentControlSet\Services\cryptsvc\Start: 04000000

Leave a Reply