Trojan Siggen – del_bat.cmd – 5c03ec27bc96f052b33b52fea00585a8

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Siggen
SHA256: c27724b9397359fb47bc58c099b631617c8e4136677986f0b59548888f5dc729
SHA1: 4031bda61fea8ee8b30e7e0429788644e6f3059c
MD5: 5c03ec27bc96f052b33b52fea00585a8
File size: 1459279 bytes

Created files:

%Program Files%\WindowController\del_bat.cmd – Trojan Siggen
%Program Files%\WindowController\FreeApp.exe – Trojan Siggen
%Program Files%\WindowController\sqlite3.dll – Trojan Siggen
%Program Files%\WindowController\unins000.exe – Trojan Siggen
%Program Files%\WindowController\WindowController.exe – Trojan Siggen
%Program Files%\WindowController\WindowController_setup_01.exe – Trojan Siggen
%Program Files%\WindowController\windowcontroller_v8.dll – Trojan Siggen
%Temp%\is-6NGOJ.tmp\_isetup\_shfoldr.dll – Trojan Siggen

Trojan Siggen created autostart registry keys:

HKLM\Software\Classes\CLSID\{F887887B-2D45-4998-9249-0ADE4BAD9EAA}\InprocServer32 : C:\PROGRA~1\SB~00056.169\WINDOW~1.DLL
HKLM\Software\Classes\CLSID\{F887887B-2D45-4998-9249-0ADE4BAD9EAA}\InprocServer32\ThreadingModel: Apartment
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\WindowController: c:\program files\WindowController\WindowController.exe

Leave a Reply