CDNUNINS.EXE – Virus Part

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

CDNUNINS.EXE – Virus Part removal

FileMD5Virus Alias
CDNUNINS.EXE 19c528202925a70ff05541f4a4065a4b Virus Part
CDNUNINS.EXE 19c528202925a70ff05541f4a4065a4b Trojan Agent

CDNUNINS.EXE size: 156224 bytes
CDNUNINS.EXE hash: 19C528202925A70FF05541F4A4065A4B

Created files:

%TEMP%\2vns3s.dll
%TEMP%\33\cdn.dll
%TEMP%\33\cdnaux.dll
%TEMP%\33\cdncmd.dll
%TEMP%\33\cdncol.dll
%TEMP%\33\cdndet.dll
%TEMP%\33\cdndrag.dll
%TEMP%\33\cdnforie.dll
%TEMP%\33\cdnins.dll
%TEMP%\33\cdnns.dll
%TEMP%\33\cdnprh.dll
%TEMP%\33\cdnprot.sys
%TEMP%\33\cdnsign.dll
%TEMP%\33\cdntdns.dll
%TEMP%\33\cdntran.sys
%TEMP%\33\cdnuc.exe
%TEMP%\33\cdnunins.exe
%TEMP%\33\cdnup.exe
%TEMP%\33\cdnuplib.dll
%TEMP%\33\client.dll
%TEMP%\33\idnconv.dll
%TEMP%\33\iesrch.dll
%TEMP%\33\imaoe.dll
%TEMP%\33\rbtnhtm.cab
%TEMP%\33\setup.exe
%TEMP%\33\wmhlpr.dll
%TEMP%\cijbdswwkb
%TEMP%\r6qqyl.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\cijbdsw\Type: 01000000
HKLM\System\CurrentControlSet\Services\cijbdsw\Start: 03000000
HKLM\System\CurrentControlSet\Services\cijbdsw\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\cijbdsw\DisplayName: cijbdsw
HKLM\System\CurrentControlSet\Services\cijbdsw\ImagePath: %TEMP%\cijbdswwkb

Detected by UnHackMe:

CDNUNINS.EXE
Default location: %TEMP%\33\CDNUNINS.EXE

Dropper information:
MD5: 239831e7cf8be91748bd79c16f8eeea2
File size: 670208 bytes

Leave a Reply