SOGOU.EXE – Backdoor Farfli

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SOGOU.EXE – Backdoor Farfli removal

FileMD5Virus Alias
SOGOU.EXE 54f9f49e83cefc5f67d847b8b0e1895c Backdoor Farfli
SOGOU.EXE 54f9f49e83cefc5f67d847b8b0e1895c Trojan Generic
SOGOU.EXE 54f9f49e83cefc5f67d847b8b0e1895c Trojan Downloader
SOGOU.EXE 54f9f49e83cefc5f67d847b8b0e1895c Worm AMN
SOGOU.EXE 54f9f49e83cefc5f67d847b8b0e1895c Backdoor PcClien
SOGOU.EXE 54f9f49e83cefc5f67d847b8b0e1895c Backdoor Zegost

SOGOU.EXE size: 204800 bytes
SOGOU.EXE hash: 54F9F49E83CEFC5F67D847B8B0E1895C

Created files:

%Program Files Common%\Sogou.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\xiaoyu: C:\progra~1\Common Files\Sogou.exe
HKLM\System\CurrentControlSet\Services\BITS\InitTime: 20130114
HKLM\System\CurrentControlSet\Services\BITS\Version: Ball
HKLM\System\CurrentControlSet\Services\BITS\Group: Default

Detected by UnHackMe:

SOGOU.EXE
Default location: %PROGRAM FILES COMMON%\SOGOU.EXE

Dropper information:
MD5: 54f9f49e83cefc5f67d847b8b0e1895c
File size: 204800 bytes

Leave a Reply