Worm Ructo – HTML.EXE – 3d97cb2cfd030758c8fffa010abadab9

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Ructo
Also known as: Trojan Delf, Backdoor Tordev
SHA256: d3686ba40f7efc44454cc333a4e95f79ee0cf3abcfc8fef26ef785dd736e99c4
SHA1: 5bda30621b4403b98bad21b701cf16be2c0219fd
MD5: 3d97cb2cfd030758c8fffa010abadab9
File size: 709632 bytes

Created files:

%Temp%\HTML.EXE – Worm Ructo
%Personal%\MSDCSC\msdcsc.exe – Worm Ructo

Worm Ructo created autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\UserInit: %WinDir%\System32\userinit.exe,%Personal%\MSDCSC\msdcsc.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MicroUpdate: %Personal%\MSDCSC\msdcsc.exe

Leave a Reply