Backdoor Bifrose – winlogon.exe – fb0245e89f6bad52fb2d17b0c3c8e359

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Bifrose
Also known as: Virus Vbcrypt, Trojan FakeAV
SHA256: fffad4e946c02169187e3f3d5e16a17a0d756be1a85366e6e357729f6cda1bd1
SHA1: d54a6b46f765ceb17836cb7098a317c6c1afa1ab
MD5: fb0245e89f6bad52fb2d17b0c3c8e359
File size: 914954 bytes

Created files:

%Personal%\Resimlerim\Profiles\winlogon.exe – Backdoor Bifrose

Backdoor Bifrose created autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\UserInit: %WinDir%\System32\userinit.exe,%Personal%\Resimlerim\Profiles\winlogon.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Google Update: %Personal%\Resimlerim\Profiles\winlogon.exe

Leave a Reply