Trojan:Win32/Radonskra.B

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

Trojan:Win32/Radonskra.B also known as TR/Dropper.Gen, Gen:Variant.Razy.24429, TROJ_GEN.R047C0DFL16.

Malware Analysis of Trojan:Win32/Radonskra.B – SYSTEM32TOOLBAR.EXE

Created files:

%LOCAL APPDATA%\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\GIGHMMPIOBKLFEPJOCNAMGKKBIGLIDOM\39.0_0\CONTENTSCRIPT.JS
%LOCAL APPDATA%\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\GIGHMMPIOBKLFEPJOCNAMGKKBIGLIDOM\39.0_0\MANIFEST.JSON
%SYSDIR%\TASKS\SYSTEMSCRIPT
%SYSDIR%TOOLBAR.EXE

Autostart registry keys:

HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\SYSTEMSCRIPT: “”%SYSDIR%TOOLBAR.EXE””

Detected by UnHackMe:

SYSTEM32TOOLBAR.EXE
Default location: %SYSDIR%TOOLBAR.EXE

Dropper hash(md5): 98a94193332f3af125d34c6599035b30

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

1
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera