FREEZ.EXE – Backdoor Bifrose

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

FREEZ.EXE – Backdoor Bifrose removal

FileMD5Virus Alias
FREEZ.EXE f6ccc9db7e8378befee4caaf0cd31681 Backdoor Bifrose
FREEZ.EXE f6ccc9db7e8378befee4caaf0cd31681 Trojan Artemis
FREEZ.EXE f6ccc9db7e8378befee4caaf0cd31681 Trojan XPACK
FREEZ.EXE f6ccc9db7e8378befee4caaf0cd31681 Trojan Eldorado
FREEZ.EXE f6ccc9db7e8378befee4caaf0cd31681 Trojan Buzus
FREEZ.EXE f6ccc9db7e8378befee4caaf0cd31681 Worm Autorun

FREEZ.EXE size: 180805 bytes
FREEZ.EXE hash: F6CCC9DB7E8378BEFEE4CAAF0CD31681

Created files:

%TEMP%\IXP000.TMP\freez.exe
%TEMP%\IXP000.TMP\HAQMSN~1.EXE

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\wextract_cleanup0: rundll32.exe %WinDir%\System32\advpack.dll,DelNodeRunDLL32 “%TEMP%\IXP000.TMP\”

Detected by UnHackMe:

FREEZ.EXE
Default location: %TEMP%\IXP000.TMP\FREEZ.EXE

Dropper information:
MD5: 51b22140f787d742adfcc89654136668
File size: 394240 bytes

Leave a Reply