NETWORK SETUP WIZARD.EXE – Backdoor IRCBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NETWORK SETUP WIZARD.EXE – Backdoor IRCBot removal

FileMD5Virus Alias
NETWORK SETUP WIZARD.EXE 52d1b9b0683eaa871e1d1c139b8acadf Backdoor IRCBot
NETWORK SETUP WIZARD.EXE 52d1b9b0683eaa871e1d1c139b8acadf Trojan SuspiciousFile
NETWORK SETUP WIZARD.EXE 52d1b9b0683eaa871e1d1c139b8acadf Backdoor Maximus
NETWORK SETUP WIZARD.EXE 52d1b9b0683eaa871e1d1c139b8acadf Trojan Delphi
NETWORK SETUP WIZARD.EXE 52d1b9b0683eaa871e1d1c139b8acadf Trojan Delf

NETWORK SETUP WIZARD.EXE size: 1328802 bytes
NETWORK SETUP WIZARD.EXE hash: 52D1B9B0683EAA871E1D1C139B8ACADF

Created files:

%SysDir%\sIRC4.exe
%SysDir%\xdccPrograms\Network Setup Wizard.exe
%SysDir%\xdccPrograms\Opera_1161_int_Setup.exe
%SysDir%\xdccPrograms\Wireless Network Setup Wizard.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe sIRC4.exe

Detected by UnHackMe:

NETWORK SETUP WIZARD.EXE
Default location: %SYSDIR%\XDCCPROGRAMS\NETWORK SETUP WIZARD.EXE

Dropper information:
MD5: 3bd3ce0feb2c973fdeeb222f9bfed6c1
File size: 1321426 bytes

Leave a Reply