Trojan Graftor – ksuser.dll – fb476ebb1de49ba53b1fe2e5244b64e3

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Graftor
Also known as: Trojan Generic, Backdoor PcClien
SHA256: a13b2992ba1d007ee84cbc5db40dbe329ca4d3cd756a0d4465531f575d18efb2
SHA1: 9f3412a045df2ae8b9427c51b942fcebe281fd6f
MD5: fb476ebb1de49ba53b1fe2e5244b64e3
File size: 49152 bytes

Created files:

%SysDir%\dllcache\ksuser.dll – Trojan Graftor
%SysDir%\sysapp9.dll – Trojan Graftor
%SysDir%\yuksuser.dll – Trojan Graftor
%SysDir%\yumidimap.dll – Trojan Graftor

Trojan Graftor created autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Ime File: CHINASOUGOU.IME
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout Text: ????(???)???
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout File: kbdus.dll
HKLM\System\CurrentControlSet\Services\cryptsvc\Start: 04000000

Leave a Reply