Trojan Graftor – server.exe – 3b3bc66d307c63e7fab43949377751f9

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Graftor
Also known as: Trojan Menti, Trojan Generic
SHA256: e8546cb120b60860473b8848b154a70b1ffe4bab5514569cf1a8f9456143439f
SHA1: 2af7d15fccbdc7c184a338c23b003685ff3f182f
MD5: 3b3bc66d307c63e7fab43949377751f9
File size: 396288 bytes

Created files:

%WinDir%\Config\install\server.exe – Trojan Graftor

Trojan Graftor created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{BGV354CC-353K-60M7-8NS6-KB758W84D1J1}\StubPath: %WinDir%\Config\install\server.exe Restart
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C0043006F006E006600690067005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C0043006F006E006600690067005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C0043006F006E006600690067005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\msmmsgr: \TEMP\x\services.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ctfmon: \TEMP\services.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C0043006F006E006600690067005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000

Leave a Reply