Win32.Backdoor.Androm.Crg
Win32.Backdoor.Androm.Crg also known as Trojan.Gen, Artemis!0258431EA770, Autoit2_c.RIU. Malware Analysis of Win32.Backdoor.Androm.Crg – BIOAP.EXE Created files: %SYSDIR%\BIOAP\BIOAP.EXE Autostart registry keys: HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VMware Tools: “”%Program Files%\VMware\VMware Tools\VMwareTray.exe”” HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VMware User Process: “”%Program Files%\VMware\VMware Tools\vmtoolsd.exe” -n vmusr” Detected by UnHackMe: BIOAP.EXE Default location: %SYSDIR%\BIOAP\BIOAP.EXE Dropper hash(md5): 0258431ea7704becac90b3ecef4a0db0 UnHackMe removes malware invisible for your antivirus! UnHackMe is compatible with most…