SVCHOST.EXE – Backdoor Farfli

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SVCHOST.EXE – Backdoor Farfli removal

File MD5 Virus Alias
SVCHOST.EXE 9d1cf1181cac11d10cd8724a899cc3f3 Backdoor Farfli
SVCHOST.EXE 9d1cf1181cac11d10cd8724a899cc3f3 Trojan Generic
SVCHOST.EXE 9d1cf1181cac11d10cd8724a899cc3f3 Trojan Downloader
SVCHOST.EXE 9d1cf1181cac11d10cd8724a899cc3f3 Trojan Magania
SVCHOST.EXE 9d1cf1181cac11d10cd8724a899cc3f3 Trojan Agent

SVCHOST.EXE size: 16019545 bytes
SVCHOST.EXE hash: 9D1CF1181CAC11D10CD8724A899CC3F3

Created files:

%WinDir%\svchost.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Protection program\ReleiceName: Ycokqq walvha
HKLM\System\CurrentControlSet\Services\Ycokqq walvha\ConnectGroup: ??????
HKLM\System\CurrentControlSet\Services\Ycokqq walvha\MarkTime: 2013-11-16 06:35

Detected by UnHackMe:

SVCHOST.EXE
Default location: %WinDir%\SVCHOST.EXE

Dropper information:
MD5: 36354d8af0e2c869b48bf8201e415b0a
File size: 290905 bytes

Leave a Reply