Backdoor Farfli – temp2859100.dll – 55f8cefd48b5466b06385b4fb69ef570

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Farfli
Also known as: Trojan Agent, Trojan OnLineGames
SHA256: fae2207d5321e73bca6ccb3884c8cdb3d846f0284b9b40f1a0a78ba0aeedbb38
SHA1: b2924634a8f71965ac4a4cb877b68258a50166da
MD5: 55f8cefd48b5466b06385b4fb69ef570
File size: 188416 bytes

Created files:

C:\windows\temp2859100.dll – Backdoor Farfli

Backdoor Farfli created autostart registry keys:

HKLM\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ip\DLLPath: 43003A005C00770069006E0064006F00770073005C00740065006D00700032003800350039003100300030002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\Wwcscv Hvvoqrpx Kps\Type: 10010000
HKLM\System\CurrentControlSet\Services\Wwcscv Hvvoqrpx Kps\Start: 02000000
HKLM\System\CurrentControlSet\Services\Wwcscv Hvvoqrpx Kps\DisplayName: Oadqbm Krtanawb Wtvtlfqr Kcht
HKLM\System\CurrentControlSet\Services\Wwcscv Hvvoqrpx Kps\ImagePath: %SystemRoot%\System32\svchost.exe -k imgsvc

Leave a Reply