Backdoor Bifrose – oreans32.sys – 0fbbf5018adf7ec67a5f0e49c046d653

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Bifrose
SHA256: 447ae59d12025d94b2af89ea0a62185ffbc7ceabd18f200526e91b327abe6960
SHA1: e7683f1f10ab9147fe4189d4617f3f7dd7f3c775
MD5: 0fbbf5018adf7ec67a5f0e49c046d653
File size: 1198790 bytes

Created files:

%SysDir%\drivers\oreans32.sys – Backdoor Bifrose

Backdoor Bifrose created autostart registry keys:

HKLM\System\CurrentControlSet\Services\oreans32\Type: 01000000
HKLM\System\CurrentControlSet\Services\oreans32\Start: 01000000
HKLM\System\CurrentControlSet\Services\oreans32\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\oreans32\DisplayName: oreans32
HKLM\System\CurrentControlSet\Services\oreans32\ImagePath: %WinDir%\System32\drivers\oreans32.sys

Leave a Reply