Backdoor Drwolf – IPC.dll – 65a2ffba735e680e17326da055a67263

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Drwolf
Also known as: Trojan Crypt, Trojan Delf
SHA256: 3db762acf7d6812ec988e0111e143b529ba61ccae529c4c69de3c28db1f824aa
SHA1: 561a22beab9d40c235d377a96fbdfbbd9a5c3ae1
MD5: 65a2ffba735e680e17326da055a67263
File size: 66253 bytes

Created files:

C:\Windows\LocalUser\IPC.dll – Backdoor Drwolf

Backdoor Drwolf created autostart registry keys:

HKLM\System\CurrentControlSet\Services\360svc\Type: 10000000
HKLM\System\CurrentControlSet\Services\360svc\Start: 02000000
HKLM\System\CurrentControlSet\Services\360svc\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\360svc\DisplayName: AcAfee Network Agent
HKLM\System\CurrentControlSet\Services\360svc\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\360svc\Description: AllOows McAfee applications to communicate securely on the local network.
HKLM\System\CurrentControlSet\Services\360svc\InstallModule: pc1.exe.EXE
HKLM\System\CurrentControlSet\Services\360svc\Parameters\ServiceDll: 43003A005C00570069006E0064006F00770073005C004C006F00630061006C0055007300650072005C004900500043002E0064006C006C000000

Leave a Reply