APJNIXA.EXE – Backdoor Farfli

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

APJNIXA.EXE – Backdoor Farfli removal

File MD5 Virus Alias
APJNIXA.EXE 0bfa57c73882d3f8c4753a19af9d9daa Backdoor Farfli
APJNIXA.EXE 0bfa57c73882d3f8c4753a19af9d9daa Trojan Eldorado
APJNIXA.EXE 0bfa57c73882d3f8c4753a19af9d9daa Trojan Downloader
APJNIXA.EXE 0bfa57c73882d3f8c4753a19af9d9daa Rootkit TDSS
APJNIXA.EXE 0bfa57c73882d3f8c4753a19af9d9daa Trojan Agent
APJNIXA.EXE 0bfa57c73882d3f8c4753a19af9d9daa Trojan AVKill

APJNIXA.EXE size: 245348 bytes
APJNIXA.EXE hash: 0BFA57C73882D3F8C4753A19AF9D9DAA

Created files:

%WinDir%\Apjnixa.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Ruvayu asbmoszr\ReleiceName: Sykqse gaccia
HKLM\System\CurrentControlSet\Services\Sykqse gaccia\ConnectGroup: ??????
HKLM\System\CurrentControlSet\Services\Sykqse gaccia\MarkTime: 2014-06-06 01:28
HKLM\System\CurrentControlSet\Services\Sykqse gaccia\Type: 10010000
HKLM\System\CurrentControlSet\Services\Sykqse gaccia\Start: 02000000
HKLM\System\CurrentControlSet\Services\Sykqse gaccia\DisplayName: Ucqcwo omssakuu
HKLM\System\CurrentControlSet\Services\Sykqse gaccia\ImagePath: %WinDir%\Apjnixa.exe

Detected by UnHackMe:

APJNIXA.EXE
Default location: %WinDir%\APJNIXA.EXE

Dropper information:
MD5: 0bfa57c73882d3f8c4753a19af9d9daa
File size: 245348 bytes

Leave a Reply