Backdoor Farfli – 1530400.dll – a5b2149f68073ed9eb824956771a5c61

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Farfli
Also known as: Trojan Barys, Trojan Magania
SHA256: b6c9da880d36f9be23047126e033b7b5f2303107c716da08a1bb6b686eb1bd6f
SHA1: 1516d02b813af34fafb434e8bd9b920e985069d6
MD5: a5b2149f68073ed9eb824956771a5c61
File size: 131088 bytes

Created files:

C:\1530400.dll – Backdoor Farfli

Backdoor Farfli created autostart registry keys:

HKLM\System\CurrentControlSet\Services\Ghijkl Nopqrstu Wxy\Type: 10010000
HKLM\System\CurrentControlSet\Services\Ghijkl Nopqrstu Wxy\Start: 02000000
HKLM\System\CurrentControlSet\Services\Ghijkl Nopqrstu Wxy\DisplayName: Ghijkl Nopqrstu Wxyabcde Ghij
HKLM\System\CurrentControlSet\Services\Ghijkl Nopqrstu Wxy\ImagePath: %SystemRoot%\System32\svchost.exe -k imgsvc
HKLM\System\CurrentControlSet\Services\Ghijkl Nopqrstu Wxy\SBIE_StartTicks: 52D62900
HKLM\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ip\DLLPath: 43003A005C0031003500330030003400300030002E0064006C006C000000

Leave a Reply