CONFIG.EXE is Trojan Midgare

June 20, 2012 by NightWatcher
Filed under: Malware 
: Solved!

Fix it immediately:

The program CONFIG.EXE is used for hidden penetration into PC and its remote administration.
UnHackMe is recommended as a reliable program for solving the problem with CONFIG.EXE.
Download for free: http://www.unhackme.com

Malware Analysis of CONFIG.EXE
Full path on a computer: %Program Files%\System\config.exe

Detected by UnHackMe:

CONFIG.EXE
Default location: %Program Files%\System\config.exe

Removal Results: Success
Number of reboot: 1

CONFIG.EXE is known as:

Trojan.Midgare, Trojan.Bifrose

CONFIG.EXE hash:

  • MD5: 9fab810eff440ef3a632a6b69c09110d
How to quickly detect CONFIG.EXE presence?

Registry:
  • HKLM\Software\Microsoft\Active Setup\Installed Components\{6ECB4763-F58C-EB86-B4B3-0342621DBB2C}\stubpath: “%Program Files%\System\config.exe s”
Files:
  • %Appdata%\addon.dat
  • %Program Files%\System\config.exe
  • %Program Files%\System\klog.dat

  • Recommended: UnHackMe anti-rootkit and anti-malware

    Premium software: RegRun Security Suite (Good choice for removal and protection)

    Written by

    Malware Hunter.

    Comments

    Tell me what you're thinking...
    and oh, if you want a pic to show with your comment, go get a gravatar!

    You must be logged in to post a comment.