BRUZWB.DLL – Backdoor PcClien

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

BRUZWB.DLL – Backdoor PcClien removal

FileMD5Virus Alias
BRUZWB.DLL c691242cd1c8e88d1a42b733b020815a Backdoor PcClien
BRUZWB.DLL c691242cd1c8e88d1a42b733b020815a Trojan Eldorado
BRUZWB.DLL c691242cd1c8e88d1a42b733b020815a Trojan Agent
BRUZWB.DLL c691242cd1c8e88d1a42b733b020815a Backdoor Bifrose

BRUZWB.DLL size: 49664 bytes
BRUZWB.DLL hash: C691242CD1C8E88D1A42B733B020815A

Created files:

%Program Files Common%\Microsoft Shared\bruzwb.dll
%Program Files Common%\Microsoft Shared\bruzwb.exe
%TEMP%\bruzwb.dll
%TEMP%\bruzwbreg.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\COMSysApp\Type: 10010000
HKLM\System\CurrentControlSet\Services\COMSysApp\Start: 02000000
HKLM\System\CurrentControlSet\Services\COMSysApp\ImagePath: 43003A005C00500072006F006700720061006D002000460069006C00650073005C0043006F006D006D006F006E002000460069006C00650073005C004D006900630072006F0073006F006600740020005300680061007200650064005C006200720075007A00770062002E00650078006500200063006F006D007300790073006100700070000000

Detected by UnHackMe:

BRUZWB.DLL
Default location: %PROGRAM FILES COMMON%\MICROSOFT SHARED\BRUZWB.DLL

Dropper information:
MD5: 0fd4d899c535c6189c2eca070814b976
File size: 48128 bytes

Leave a Reply