trojan.win32.gondrod.a!cfg

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

Malware Analysis of trojan.win32.gondrod.a!cfg – CONSOLE_SETUP.EXE

Created files:

%TEMP%\6A298489B7562C9E2C0163A571C4DD81.JSON
%TEMP%\D6A9.TMP\CONSOLEMASSSETUP.BAT
%TEMP%\D6A9.TMP\CONSOLE_SETUP.EXE
%TEMP%\D6E8.TMP
%SYSTEMDRIVE%\CERTIPORT\CONSOLE\CERTIPORT.DSF.COMMON.DLL

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Console 8\DisplayName: “Console 8”
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CONSOLE 8\UNINSTALLSTRING: “”%SYSTEMDRIVE%\CERTIPORT\CONSOLE\UNINSTALL.EXE””

Detected by UnHackMe:

CONSOLE_SETUP.EXE
DEFAULT LOCATION: %TEMP%\D6A9.TMP\CONSOLE_SETUP.EXE

Dropper hash(md5): eb8c2986629b1bf95790c4276fa7fd77

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

1
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera