SYSTEM.EXE – Backdoor IRCBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SYSTEM.EXE – Backdoor IRCBot removal

FileMD5Virus Alias
SYSTEM.EXE f59b98a6b8d0ea08c061ea00862a2b3b Backdoor IRCBot
SYSTEM.EXE f59b98a6b8d0ea08c061ea00862a2b3b Trojan XPACK
SYSTEM.EXE f59b98a6b8d0ea08c061ea00862a2b3b Trojan Downloader
SYSTEM.EXE f59b98a6b8d0ea08c061ea00862a2b3b Trojan DNAScan
SYSTEM.EXE f59b98a6b8d0ea08c061ea00862a2b3b Trojan CI
SYSTEM.EXE f59b98a6b8d0ea08c061ea00862a2b3b Trojan Delf

SYSTEM.EXE size: 64000 bytes
SYSTEM.EXE hash: F59B98A6B8D0EA08C061EA00862A2B3B

Created files:

%SysDir%\jHYrbty.dll
%SysDir%\system.exe

Autostart registry keys:

HKLM\Software\Classes\CLSID\{3FDEB171-8F86-0022-1B01-69B8DB553683}\InProcServer32 : %WinDir%\System32\jHYrbty.dll

Detected by UnHackMe:

SYSTEM.EXE
Default location: %SYSDIR%\SYSTEM.EXE

Dropper information:
MD5: 36a1f5b976d01f469940f2feda7cb6fe
File size: 228864 bytes

Leave a Reply