NETWORK SETUP WIZARD.EXE – Backdoor IRCBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NETWORK SETUP WIZARD.EXE – Backdoor IRCBot removal

FileMD5Virus Alias
NETWORK SETUP WIZARD.EXE 6d61c5c79d0a3f152ad0e5a985b4b462 Backdoor IRCBot
NETWORK SETUP WIZARD.EXE 6d61c5c79d0a3f152ad0e5a985b4b462 Trojan SuspiciousFile
NETWORK SETUP WIZARD.EXE 6d61c5c79d0a3f152ad0e5a985b4b462 Backdoor Maximus
NETWORK SETUP WIZARD.EXE 6d61c5c79d0a3f152ad0e5a985b4b462 Trojan Delphi
NETWORK SETUP WIZARD.EXE 6d61c5c79d0a3f152ad0e5a985b4b462 Trojan Delf

NETWORK SETUP WIZARD.EXE size: 923992 bytes
NETWORK SETUP WIZARD.EXE hash: 6D61C5C79D0A3F152AD0E5A985B4B462

Created files:

%SysDir%\sIRC4.exe
%SysDir%\xdccPrograms\Network Setup Wizard.exe
%SysDir%\xdccPrograms\Opera_1161_int_Setup.exe
%SysDir%\xdccPrograms\Wireless Network Setup Wizard.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe sIRC4.exe

Detected by UnHackMe:

NETWORK SETUP WIZARD.EXE
Default location: %SYSDIR%\XDCCPROGRAMS\NETWORK SETUP WIZARD.EXE

Dropper information:
MD5: 00b7bcf433710c9cdef93a260e3351e1
File size: 919161 bytes

Leave a Reply