Backdoor.Pterodo

Technical Information

File System Details

Backdoor.Pterodo creates the following file(s):
# File Name Size MD5
1 08a978b767e5028a52e964da3a246a8e8ef048a6bbf12ded2c5aa337549ca0e0.exe 1,427,797 c75c376c5d25e562d070199d18470259
2 145dab86a43835bb37734c16756d6d64d8e5ac6b87c491c57385e27b564136b8.exe 377,038 52066c718e8bcfc505a0f996ec3d00c0
3 1e578fd2b4780889677a070fba22a2a44f1fc9bc4a62579fea2f073e3b772a3a.exe 829,501 16d5d17f04e6a16dd9fffb89033e192d
4 2cd5471e80119fe1b3e561349438865f60b62ef2dfeb0473b90caf9ee17411ac.exe 484,287 082f6ec9f950b9cd77e861ca09ff6d56
5 3d3306f7a2a3a468082a6d9817cb8ef7627cd8112e2d773326b5a650f2646f80.exe 1,427,768 1eb0293e9a6fa09be3ad3e4274d7b682
6 415b6ac3ede676a1f62df57f358ce0284c3629e29a7bfbc4f3cac61f100a1ce4.exe 524,988 0b15a5abb08b07afbf2d0d5149262272
7 4d27abd60dac79e8512b547975ca83d1737482fe80f223e7d53224a1d6bc22fb.exe 701,562 7678fb81619d23c24631169a0894ae7e
8 4ecb5e43eb6cee18c886afe7db5afda60f76dfe4971df69584f97f39af36aacc.exe 484,277 c4e4aa6591b2e9f47330af91467a4b2b
9 52bea8266857ae15d6f7e88af41cbd96555ea45bc853ed48bde402a64478dae6.exe 596,320 3f58bbf144cd4aabfd64dd93d3b56d14
10 550d461697099ebb3a5ee86336bd3358a05850f2835738d6520a552527b096a6.exe 577,142 63e9ce22dbf66934fd75c77bc84954d0
11 553e859f01eb2c2310d7aca36181b70821272691d7c07b15693235ea780cf646.exe 642,664 bd1b92fb0cfc747950b5a00b8a235878
12 598caedd2da63f42a637855e03419db8762a19c4bd42a3dda2c8319e78049501.exe 1,427,859 717145fe375dc9eceb5f35088b36e0ea
13 5c2687854a9a7ed0448e5e9305be43ab8dbc4e6fe096b79039fe90eee56ac5db.exe 472,013 33142cb45f705f81c09c777376c67442
14 6289258cb37b4dc09b9e0e7c2943ea71b4ee51e96c3c8d5f6e0c3c23fe435348.exe 596,276 54cf907b6758582501bed61a3ba5c96c
15 64d2446d9e2e33658ecdbfe02d6c705a59d5adfd1cec2878e690abd3d4af2585.exe 1,659,970 1ce45d1122d92e635c539643b7dfb26f
16 6745f54743a085bf4aa4b62920ef59312c9c0631eb8d947e2ecefd05ca760b2c.exe 902,475 469497ab877e520b773230fd86124964
17 6a93766c7deece09ce6faf3ef7c54ddb28f158eec481ff43161ab56da969635f.exe 596,131 85156826a481e926f73ef34f5f3cea4e
18 842d5c014eafd6a40f95909f88937f8d802f6890f077cb77223508a9cfbd70b2.exe 1,427,766 9a009f5cec660bb34996fef691f2d275
19 9b901d657939b7e0c87c6331a82b8a5af8db536ab4dcbbf3c5d9d21bebc10ba4.exe 1,427,702 02ff8a4e18b6054d7cde14ef694ab7b4
20 a1677309250426d159b2fae1ece4fff98d8780d1391923ebc092ac9eb65c266b.exe 484,254 9929040c0cf7fd2c169ed29efd7626da
21 a86eea09bff3c8b59f8299e4eb1341a763a40613f23b6a1ceceb2f7d982a4679.exe 471,040 b333ca18d3b211a0ee97b7762de9726a
22 bbb61fc86ef2382b4915f81d2447e858d97804ca7e869675248af93ca711006c.exe 596,226 0674d675f5f2d88dc690a04ad8b22144
23 bd60e0f0785aaaa3808587191dcf9c8c05ad19ef7ca3456f2359e984f80ede92.exe 592,158 3b5d42f3f5f548e3c41d9f8c7d40edce
24 c7ef9c2620c411914c9ebcd7b877293922d6c3d3d1b539085ad9f121c733b577.exe 484,244 72405e9bd78ba00247cd8a85df980964
25 cddd32776c4a7a32ffc4cb19ea67a614f91cf177ea7cf01fb8dd6cfa5ed1f22b.exe 472,012 59b155c1622a1a9cc475b2d852fcd654
26 d0e104ef52522e1660f7fba8252ab6eae3d2c024ccb82581e16249a47740351f.exe 484,293 31bb96f5d53e8b5d380ae90347a877f4
27 d8eb2ba3d03b16bc4c6e504d1c39f1114d3b9462d52ebcf3066f2e90aab6aa40.exe 592,054 7f666277655b7d3ac684421a8dcd9c63
28 e07ef0ae439aa4d571cabe9b4ac29ebf2fc05730ab16f02d6c09ea1b915a5aa7.exe 544,111 6dc79873d8f3dcf97a812c6726c261e0
More files

Registry Details

Backdoor.Pterodo creates the following registry entry or registry entries:
Regexp file mask
%APPDATA%\Microsoft\Crypto\Keys\cryptcp.exe
%APPDATA%\restorehost.dll
%APPDATA%\securityhost.dll

Site Disclaimer

Enigmasoftware.com is not associated, affiliated, sponsored or owned by the malware creators or distributors mentioned on this article. This article should NOT be mistaken or confused in being associated in any way with the promotion or endorsement of malware. Our intent is to provide information that will educate computer users on how to detect, and ultimately remove, malware from their computer with the help of SpyHunter and/or manual removal instructions provided on this article.

This article is provided "as is" and to be used for educational information purposes only. By following any instructions on this article, you agree to be bound by the disclaimer. We make no guarantees that this article will help you completely remove the malware threats on your computer. Spyware changes regularly; therefore, it is difficult to fully clean an infected machine through manual means.

Leave a Reply

Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.


HTML is not allowed.