SCSERVER.EXE – Backdoor IRCNite

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SCSERVER.EXE – Backdoor IRCNite removal

FileMD5Virus Alias
SCSERVER.EXE 312c2a657d42ef990d2a7a6d790e56d9 Backdoor IRCNite
SCSERVER.EXE 312c2a657d42ef990d2a7a6d790e56d9 Trojan Generic

SCSERVER.EXE size: 278528 bytes
SCSERVER.EXE hash: 312C2A657D42EF990D2A7A6D790E56D9

Created files:

%AppData%\Marcom Remote Support\1CHATDLL.dll
%AppData%\Marcom Remote Support\1SCDLL.dll
%AppData%\Marcom Remote Support\MSRC4Plugin.dsm
%AppData%\Marcom Remote Support\RemoteAccessServer.exe
%AppData%\Marcom Remote Support\SCHook.dll
%AppData%\Marcom Remote Support\scserver.exe

Detected by UnHackMe:

SCSERVER.EXE
Default location: %APPDATA%\MARCOM REMOTE SUPPORT\SCSERVER.EXE

Dropper information:
MD5: 3265f33f0989dc621def3385076a54c1
File size: 1036008 bytes

Leave a Reply