regi.exe – Backdoor Farfli

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

regi.exe – Backdoor Farfli removal

FileVirus Alias
regi.exe Backdoor Farfli
regi.exe Trojan OnLineGames
regi.exe Trojan Generic
regi.exe Backdoor PcClien

Created files:

%Program Files%\DocuA\a.exe – Backdoor Farfli
%Program Files%\DocuA\Launcher_Patch.exe – Backdoor Farfli
%Program Files%\DocuA\Micorp.dll – Backdoor Farfli
%Program Files%\DocuA\Patch.lst – Backdoor Farfli
%Program Files%\DocuA\regi.exe – Backdoor Farfli
%Program Files%\DocuA\uk.exe – Backdoor Farfli
%Program Files%\DocuA\__tmp_rar_sfx_access_check_477736 – Backdoor Farfli

Autostart registry keys:

HKLM\Software\Classes\CLSID\{3222628A-64D3-425F-8C47-2C545E56B934}\InprocServer32 : %Program Files%\DocuA\Micorp.dll

Detected by UnHackMe:

regi.exe
Default location: %Program Files%\DocuA\regi.exe

Dropper information:
SHA256: 65cbc43fc50d4cd1d2f8fa1a994bf40281e172fb36dd278124c085bdf4b70f52
SHA1: fc5f5089ed9003b6e250c93dd2aeb83eb6c6e43d
MD5: 7d41c4b5358c2cde42f62db6eafa5f3b
File size: 776589 bytes

Leave a Reply