Backdoor Farfli – 587400.dll – 2ad3c8ca5f64a1687f2459a746ce8d74

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Farfli
Also known as: Backdoor Zegost, Trojan Barys
SHA256: 19a2169d623c4b0f6affbb618f7c66d30f462e66d55ea7a4bf313d6986409f4d
SHA1: dcd26ebda0e3537c8886504edf3e330b289d47e9
MD5: 2ad3c8ca5f64a1687f2459a746ce8d74
File size: 149320 bytes

Created files:

C:\587400.dll – Backdoor Farfli

Backdoor Farfli created autostart registry keys:

HKLM\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ip\DLLPath: 43003A005C003500380037003400300030002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\Type: 10010000
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\Start: 02000000
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\DisplayName: wklmno Qrstuvwx Abcdefgh Jklm
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\ImagePath: %SystemRoot%\System32\svchost.exe -k imgsvc

Leave a Reply