Worm Autorun – kdcoms.dll – faf5bb028d4b806255fdb2b3fe127c6e

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Autorun
Also known as: Trojan CI, Trojan Crypt
SHA256: 7cb4e2645c7a9aaa15c714007da7facc08f2c934ab71ebd69d873978757d9bc2
SHA1: ed859df9a453242af68819b2121c4b10285c6962
MD5: faf5bb028d4b806255fdb2b3fe127c6e
File size: 70144 bytes

Created files:

%WinDir%\kdcoms.dll – Worm Autorun
%SysDir%\system.exe – Worm Autorun
%WinDir%\userinit.exe – Worm Autorun

Worm Autorun created autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: %WinDir%\userinit.exe

Leave a Reply