DOWNLOAD_ME.EXE – Backdoor IRCBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

DOWNLOAD_ME.EXE – Backdoor IRCBot removal

FileMD5Virus Alias
DOWNLOAD_ME.EXE a001db659513dcb115b40483928df6ee Backdoor IRCBot
DOWNLOAD_ME.EXE a001db659513dcb115b40483928df6ee Trojan Eldorado
DOWNLOAD_ME.EXE a001db659513dcb115b40483928df6ee Trojan Hllw
DOWNLOAD_ME.EXE a001db659513dcb115b40483928df6ee Trojan Crypt

DOWNLOAD_ME.EXE size: 73760 bytes

Created files:

%SYSDIR%\kazaabackupfiles\download_me.exe
%SYSDIR%\winlokin.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Winsock2 driver: WINLOKIN.EXEspyrulz#!nill!r0xWinsock2 driver ddos.botddos bot by denirulz?mIRC v6.03 Khaled Mardam-Be
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce\Winsock2 driver: WINLOKIN.EXEspyrulz#!nill!r0xWinsock2 driver ddos.botddos bot by denirulz?mIRC v6.03 Khaled Mardam-Be

Detected by UnHackMe:

DOWNLOAD_ME.EXE
Default location: %SYSDIR%\KAZAABACKUPFILES\DOWNLOAD_ME.EXE

Leave a Reply