I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Backdoor Farfli
Also known as: Backdoor Zegost, Trojan Barys
SHA256: 19a2169d623c4b0f6affbb618f7c66d30f462e66d55ea7a4bf313d6986409f4d
SHA1: dcd26ebda0e3537c8886504edf3e330b289d47e9
MD5: 2ad3c8ca5f64a1687f2459a746ce8d74
File size: 149320 bytes
Created files:
C:\587400.dll – Backdoor Farfli
Backdoor Farfli created autostart registry keys:
HKLM\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ip\DLLPath: 43003A005C003500380037003400300030002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\Type: 10010000
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\Start: 02000000
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\DisplayName: wklmno Qrstuvwx Abcdefgh Jklm
HKLM\System\CurrentControlSet\Services\wklmno Qrstuvwx Abc\ImagePath: %SystemRoot%\System32\svchost.exe -k imgsvc