Backdoor IRCBot – temp1832715129.bat – 22f9a220ef3486d868efedf833ec8611

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor IRCBot
Also known as: Trojan Generic, Backdoor Maximus
SHA256: 2bf738e755bc1b9c4a659e1cdb7cd15734415c11cea3dfb57ec2a3db69b89cde
SHA1: d22f3f658396e8bc13d4358c8bd32720b72100d4
MD5: 22f9a220ef3486d868efedf833ec8611
File size: 100384 bytes

Created files:

C:\Windows\Temp\temp1832715129.bat – Backdoor IRCBot
%AppData%\A1832715129.exe – Backdoor IRCBot
%Startup%\A1832715129.exe – Backdoor IRCBot

Backdoor IRCBot created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\A1832715129: %AppData%\A1832715129.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\A1832715129: %AppData%\A1832715129.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnceEx\A1832715129: %AppData%\A1832715129.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\A1832715129: %AppData%\A1832715129.exe

Leave a Reply