Backdoor RBot – ynorlc.exe – c1180cfb1cbee0d1297cc65af6f3f849

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor RBot
Also known as: Backdoor IRCBot
SHA256: 44a1b08b7e12e3bd57cce678641aa7a248bd444042695055ee13f987114bd654
SHA1: d28f2f48f0e1d5ad7c6a5735b0c56391eeab15f4
MD5: c1180cfb1cbee0d1297cc65af6f3f849
File size: 109568 bytes

Created files:

%SysDir%\ynorlc.exe – Backdoor RBot

Backdoor RBot created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Update Machine: ynorlc.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\Microsoft Update Machine: ynorlc.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Update Machine: ynorlc.exe

Leave a Reply