360SP2.DLL – Backdoor Farfli

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

360SP2.DLL – Backdoor Farfli removal

FileMD5Virus Alias
360SP2.DLL dd158d9677fd07678f46e04a2f8136e8 Backdoor Farfli
360SP2.DLL dd158d9677fd07678f46e04a2f8136e8 Trojan Eldorado
360SP2.DLL dd158d9677fd07678f46e04a2f8136e8 Trojan MMM
360SP2.DLL dd158d9677fd07678f46e04a2f8136e8 Trojan OnLineGames
360SP2.DLL dd158d9677fd07678f46e04a2f8136e8 Trojan Magania
360SP2.DLL dd158d9677fd07678f46e04a2f8136e8 Trojan Siggen

360SP2.DLL size: 106621 bytes
360SP2.DLL hash: DD158D9677FD07678F46E04A2F8136E8

Created files:

%SysDir%\360SP2.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Microsoft MR\Type: 10000000
HKLM\System\CurrentControlSet\Services\Microsoft MR\Start: 02000000
HKLM\System\CurrentControlSet\Services\Microsoft MR\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Microsoft MR\DisplayName: Microsoft Device Manager
HKLM\System\CurrentControlSet\Services\Microsoft MR\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\Microsoft MR\Description: ???????????????????????????????
HKLM\System\CurrentControlSet\Services\Microsoft MR\InstallModule: 0487608FCBF6767A005829841F8114C7.EXE
HKLM\System\CurrentControlSet\Services\Microsoft MR\ConnectGroup: ??????
HKLM\System\CurrentControlSet\Services\Microsoft MR\SBIE_Win32ExitCode: 02000000
HKLM\System\CurrentControlSet\Services\Microsoft MR\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C003300360030005300500032002E0064006C006C000000

Detected by UnHackMe:

360SP2.DLL
Default location: %SYSDIR%\360SP2.DLL

Dropper information:
MD5: 0487608fcbf6767a005829841f8114c7
File size: 129024 bytes

Leave a Reply