AQCSMK.EXE – Backdoor Farfli

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

AQCSMK.EXE – Backdoor Farfli removal

FileMD5Virus Alias
AQCSMK.EXE d7d2a48000afa9131a276ac6b33b12fc Backdoor Farfli
AQCSMK.EXE d7d2a48000afa9131a276ac6b33b12fc Trojan Generic
AQCSMK.EXE d7d2a48000afa9131a276ac6b33b12fc Trojan Downloader
AQCSMK.EXE d7d2a48000afa9131a276ac6b33b12fc Trojan Barys
AQCSMK.EXE d7d2a48000afa9131a276ac6b33b12fc Trojan Agent
AQCSMK.EXE d7d2a48000afa9131a276ac6b33b12fc Backdoor Zegost

AQCSMK.EXE size: 89465 bytes
AQCSMK.EXE hash: D7D2A48000AFA9131A276AC6B33B12FC

Created files:

%WinDir%\aqcsmk.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\.Net CLR\Type: 10010000
HKLM\System\CurrentControlSet\Services\.Net CLR\Start: 02000000
HKLM\System\CurrentControlSet\Services\.Net CLR\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\.Net CLR\DisplayName: Microsoft .Net Framework COM+ Support
HKLM\System\CurrentControlSet\Services\.Net CLR\ImagePath: %WinDir%\aqcsmk.exe
HKLM\System\CurrentControlSet\Services\.Net CLR\Description: Microsoft .NET and Windows XP COM+ Integration with SOAP

Detected by UnHackMe:

AQCSMK.EXE
Default location: %WinDir%\AQCSMK.EXE

Dropper information:
MD5: d7d2a48000afa9131a276ac6b33b12fc
File size: 89465 bytes

Leave a Reply