Trojan_Haxdoor_Rootkit details

  • Dll

    percentsystempercentskyx16.dllpercentsystempercentqz.dll

  • Registry

    HKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon otifyskyx16 HKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon otifyskyx16 asynchronousHKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon otifyskyx16 dllnameHKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon otifyskyx16 impersonateHKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon otifyskyx16 maxwaitHKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon otifyskyx16 secureuidHKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon otifyskyx16 startupHKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootminimalskyx16.sys HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafebootminimalskyx24.sys HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafeboot etworkskyx16.sys HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsafeboot etworkskyx24.sys HKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24 HKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24 nextinstanceHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 HKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 capabilitiesHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 classHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 classguidHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 configflagsHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 devicedescHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 legacyHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000 serviceHKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000control HKEY_LOCAL_MACHINEsystemcurrentcontrolsetenumootlegacy_skyx24000control activeserviceHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16 HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16 displaynameHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16 errorcontrolHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16 imagepathHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16 startHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16 typeHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16enum HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16enum countHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16enum initstartfailedHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16enum nextinstanceHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16security HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx16security securityHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24 HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24 displaynameHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24 errorcontrolHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24 imagepathHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24 startHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24 typeHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24enum HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24enum 0HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24enum countHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24enum nextinstanceHKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24security HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicesskyx24security security