Backdoor Bifrose – server.exe – 02b91317eddfe3b4946b4008d7ceb9cd

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Bifrose
Also known as: Backdoor IRCBot, Trojan Crypt
SHA256: 6ddc81339079b0817fad7210ac44948c4c0929f25a46d5180d295f1bc0a19ad4
SHA1: a31177538ade7b5cdc1134976a7f369c703e1593
MD5: 02b91317eddfe3b4946b4008d7ceb9cd
File size: 717316 bytes

Created files:

%SysDir%\server.exe – Backdoor Bifrose

Backdoor Bifrose created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{2bf41072-b2b1-21c1-b5c1-0305f4155515}\StubPath: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C007300650072007600650072002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\StartKey: %WinDir%\System32\server.exe

Leave a Reply