WEBNDIS.SYS – Trojan Graftor

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WEBNDIS.SYS – Trojan Graftor removal

FileMD5Virus Alias
WEBNDIS.SYS 1290d10108ec1c41f8e4747e89d373fa Trojan Graftor
WEBNDIS.SYS 1290d10108ec1c41f8e4747e89d373fa Trojan CI
WEBNDIS.SYS 1290d10108ec1c41f8e4747e89d373fa Trojan Agent

WEBNDIS.SYS size: 106240 bytes
WEBNDIS.SYS hash: 1290D10108EC1C41F8E4747E89D373FA

Created files:

%SysDir%\drivers\WebNdis.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\WebNdis\Type: 01000000
HKLM\System\CurrentControlSet\Services\WebNdis\Start: 03000000
HKLM\System\CurrentControlSet\Services\WebNdis\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\WebNdis\DisplayName: WebNdis
HKLM\System\CurrentControlSet\Services\WebNdis\ImagePath: %WinDir%\System32\drivers\WebNdis.sys

Detected by UnHackMe:

WEBNDIS.SYS
Default location: %SYSDIR%\DRIVERS\WEBNDIS.SYS

Dropper information:
MD5: c4461c7664c52a30c530f40ead47151f
File size: 128000 bytes

Leave a Reply