Backdoor Cycbot – dwm.exe – 0b25bcb5c7bc9d1e7cfeb23127ee268f

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Cycbot
Also known as: Trojan FakeAV, Trojan Agent
SHA256: e2116b4b07dc5bcdab8b293f877b6bb6a18f6e23cdd921c9f15082b0d2f44703
SHA1: 532f7e729559973edd012258abc703c6f0d92652
MD5: 0b25bcb5c7bc9d1e7cfeb23127ee268f
File size: 137216 bytes

Created files:

%AppData%\dwm.exe – Backdoor Cycbot

Backdoor Cycbot created autostart registry keys:

HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: explorer.exe,%AppData%\dwm.exe

Leave a Reply