Home Malware Programs Trojans HackTool:Win32/Fgdump

HackTool:Win32/Fgdump

Posted: February 14, 2011

Threat Metric

Ranking: 16,701
Threat Level: 8/10
Infected PCs: 860
First Seen: February 14, 2011
Last Seen: August 6, 2023
OS(es) Affected: Windows

HackTool:Win32/Fgdump is a malicious computer infection that creates keys (special codes) for illegitimately-obtained versions of various programs. When HackTool:Win32/Fgdump is securely rooted in the computer system, it will manually connect to the Internet without the user's consent and communicate with its creators. HackTool:Win32/Fgdump invades and installs the affected computer without awareness or consent when you open unidentified email attachment or image, use instant messaging, etc. HackTool:Win32/Fgdump is a big threat to your PC system and should be removed as soon as possible.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %PROGRAM_FILES%\ HackTool:Win32/Fgdump\ HackTool:Win32/Fgdump

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\Software\ HackTool:Win32/Fgdump

Aliases

Trojan/win32.agent.gen [Antiy-AVL]HKTL_OPHCRACK [TrendMicro]SPR/Tool.PwDump [AntiVir]Tool.Pwdump.196 [DrWeb]Artemis!2F256C3F46B1 [McAfee]Riskware/Ophcrack [Fortinet]not-a-virus.PSWTool.ophCrack [Ikarus]CRCK_PASSWARE [TrendMicro]APPL/Agent.481792 [AntiVir]Tool.PassSteel.686 [DrWeb]Riskware:W32/Hacktool [F-Secure]ApplicUnsaf.Win32.PSW.WinPSW.~A [Comodo]not-a-virus:PSWTool.Win32.Ophcrack.a [Kaspersky]Trojan.PSW-22 [ClamAV]Win32.PSWTool.PWDump [eSafe]
More aliases (135)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files\ophcrack\pwdump\servpw.exe File name: servpw.exe
Size: 57.34 KB (57344 bytes)
MD5: 50b5f832241534dee628f3f479753280
Detection count: 255
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\ophcrack\pwdump\servpw.exe
Group: Malware file
Last Updated: August 6, 2023
%APPDATA%\Adobe\Update\forhlp.exe File name: forhlp.exe
Size: 287.23 KB (287232 bytes)
MD5: a1b36c473d19c192d83ce58114ff0e22
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Adobe\Update
Group: Malware file
Last Updated: February 16, 2011
C:\Sierra\BrowserHelper.dll File name: BrowserHelper.dll
Size: 62.52 KB (62520 bytes)
MD5: 421d246f90785c79859ad74a8457da5b
Detection count: 56
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Sierra
Group: Malware file
Last Updated: February 19, 2011
%PROGRAMFILES%\XDenSer NetScreen\NetScreen.exe File name: NetScreen.exe
Size: 1.32 MB (1328128 bytes)
MD5: 5d529f6683ca870844716ab9cd852b97
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\XDenSer NetScreen
Group: Malware file
Last Updated: February 16, 2011
C:\Users\<username>\Dropbox\Downloads, software & Portable Appz\ophcrack-win32-installer-3.4.0.exe File name: ophcrack-win32-installer-3.4.0.exe
Size: 5.93 MB (5936564 bytes)
MD5: 2f256c3f46b17eca4fb4095783366628
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Dropbox\Downloads, software & Portable Appz\ophcrack-win32-installer-3.4.0.exe
Group: Malware file
Last Updated: April 12, 2023
%WINDIR%\system32\GameMon.des File name: GameMon.des
Size: 3.04 MB (3042716 bytes)
MD5: 03285c77f7c5c9128fdb3cad1f342d29
Detection count: 19
Mime Type: unknown/des
Path: %WINDIR%\system32
Group: Malware file
Last Updated: July 23, 2019
%PROGRAMFILES%\Easy File Sharing Web Server\fsws.exe File name: fsws.exe
Size: 520.64 KB (520646 bytes)
MD5: 72585bacdcb3de4a30f07df21bc69640
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Easy File Sharing Web Server
Group: Malware file
Last Updated: November 10, 2019
%ALLUSERSPROFILE%\Norton\bntr1246088448.exe File name: bntr1246088448.exe
Size: 1.27 MB (1279455 bytes)
MD5: 227dd9887f22fb481a6b87749d8bc34c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Norton
Group: Malware file
Last Updated: February 24, 2011
Loading...