Backdoor IRCBot – winf32.exe – 0c72986be1f55b6dc1075afeadd2ca4e

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor IRCBot
Also known as: Trojan Generic, Trojan Eldorado
SHA256: 2ccfb0b68dc65c8afbfba0621c52006f5cc3780d33405c3b5be8251b13aa4562
SHA1: 42af8cc0b1cd159aa9ceff585fbbe8c84583ff18
MD5: 0c72986be1f55b6dc1075afeadd2ca4e
File size: 109056 bytes

Created files:

%SysDir%\winf32.exe – Backdoor IRCBot

Backdoor IRCBot created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Update 64 BIT: winf32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\Microsoft Update 64 BIT: winf32.exe

Leave a Reply