Category:Trojan
[Kaspersky]Trojan-Dropper.Win32.Small.avj,Trojan.Win32.Agent.abf,Trojan-Proxy.Win32.Small.du,Trojan-Proxy.Win32.Small.fl;
[McAfee]BackDoor-DKH;
[F-Prot]W32/Agent.DLE;
[Other]Win32/Ditul,Win32/Ditul.BA,Win32/Ditul.BC,Win32/Ditul.BD,Win32/Ditul.B,Win32/Ditul.BE,Infostealer,Win32/Ditul.Y,Win32/Ditul.AA,Troj/Agent-EBN,Troj/Agent-DWW,Trojan.Dropper,Win32/Ditul.FL,Win32/Ditul.FW,Win32/Ditul!generic,W32/Smalltroj.BKEU,TROJ_SMALL.ISO
Ditul Detection :
Files:
[%SYSTEM%]\msnetax.dll
[%SYSTEM%]\windhcp.ocx
[%SYSTEM%]\Drivers\CelInDriver.sys
[%SYSTEM%]\RemoteDbg.dll
[%SYSTEM%]\windds32.dll
[%SYSTEM%]\msnetax.dll
[%SYSTEM%]\windhcp.ocx
[%SYSTEM%]\Drivers\CelInDriver.sys
[%SYSTEM%]\RemoteDbg.dll
[%SYSTEM%]\windds32.dll
Registry Keys:
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_celindrv
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_windhcpsvc
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\win32dds
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\windhcpsvc
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\celindrv
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\remotedbg
Removing Ditul:
you can run trial version of ExterminateIt, or remove Ditul manually..ExterminateIt effectively and automatically removes Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware) from you computer.
Download ExterminateIt! to instantly get rid of Ditul!
Also Be Aware of the Following Threats:
RedShell Backdoor Symptoms
SillyDl.DCZ Trojan Removal