I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Trojan Kazy
Also known as: Trojan ADH, Trojan CI
SHA256: 1496587628524b2b625e450bcd97cb5a8b62279396a10986cf8d3d2cfc684a8f
SHA1: f8dd5046c92d79a0ca932eca5e97c2f6de481c5b
MD5: 684d444c7a057c078496b0c2a7a698a6
File size: 509670 bytes
Created files:
%Local AppData%\win.dll – Trojan Kazy
%Local AppData%\win2.dll – Trojan Kazy
%Temp%\RarSFX0\ex.exe – Trojan Kazy
%Temp%\RarSFX0\ex2.exe – Trojan Kazy
%Temp%\RarSFX0\win.dll – Trojan Kazy
%Temp%\RarSFX0\win2.dll – Trojan Kazy
Trojan Kazy created autostart registry keys:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SystemWin: rundll32 “%Local AppData%\win.dll,run”
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SystemWin2: rundll32 “%Local AppData%\win2.dll,run”