Backdoor IRCBot – Server.exe – 00dc14d8a4455db3ad27f0b15d1f499a

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor IRCBot
SHA256: beaa1f9165033fb8db481d2ee7c753ac70fe214ade021c0ac49c6377f93f5216
SHA1: 4f7e9d87b1cbde0fd92c1f16de41c6a3ef2c748c
MD5: 00dc14d8a4455db3ad27f0b15d1f499a
File size: 546218 bytes

Created files:

%SysDir%\Server.exe – Backdoor IRCBot

Backdoor IRCBot created autostart registry keys:

HKLM\System\CurrentControlSet\Services\MSsyong\Type: 10010000
HKLM\System\CurrentControlSet\Services\MSsyong\Start: 02000000
HKLM\System\CurrentControlSet\Services\MSsyong\DisplayName: ???????????????,???SQL Server???????
HKLM\System\CurrentControlSet\Services\MSsyong\ImagePath: %WinDir%\System32\Server.exe -NetSata

Leave a Reply