Solved! Use SVMSSC.EXE (Backdoor Farfli) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SVMSSC.EXE – Backdoor Farfli removal

File MD5 Virus Alias
SVMSSC.EXE a8e985d4e327fd7650014f6a2a852565 Backdoor Farfli
SVMSSC.EXE a8e985d4e327fd7650014f6a2a852565 Trojan PcClient
SVMSSC.EXE a8e985d4e327fd7650014f6a2a852565 Trojan Eldorado
SVMSSC.EXE a8e985d4e327fd7650014f6a2a852565 Trojan Graftor
SVMSSC.EXE a8e985d4e327fd7650014f6a2a852565 Backdoor PcClien
SVMSSC.EXE a8e985d4e327fd7650014f6a2a852565 Backdoor Hupigon

SVMSSC.EXE size: 15864261 bytes
SVMSSC.EXE hash: A8E985D4E327FD7650014F6A2A852565

Created files:

%Program Files%\Microsoft Explorer\svmssc.exe
C:\SystemTemp

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Microsodfft .Net Framdfsdork COM+ Supportfs\Type: 10010000
HKLM\System\CurrentControlSet\Services\Microsodfft .Net Framdfsdork COM+ Supportfs\Start: 02000000
HKLM\System\CurrentControlSet\Services\Microsodfft .Net Framdfsdork COM+ Supportfs\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Microsodfft .Net Framdfsdork COM+ Supportfs\DisplayName: .Net CLRSsdfg
HKLM\System\CurrentControlSet\Services\Microsodfft .Net Framdfsdork COM+ Supportfs\ImagePath: “%Program Files%\Microsoft Explorer\svmssc.exe”
HKLM\System\CurrentControlSet\Services\Microsodfft .Net Framdfsdork COM+ Supportfs\FailureActions: 0000000000000000000000000300000053006500010000000000000001000000000000000100000000000000
HKLM\System\CurrentControlSet\Services\Microsodfft .Net Framdfsdork COM+ Supportfs\Description: Midfsssoft .NET and Windfows XP COM+ Integrafstion with SOAP

Detected by UnHackMe:

SVMSSC.EXE
Default location: %PROGRAM FILES%\MICROSOFT EXPLORER\SVMSSC.EXE

Dropper information:
MD5: c5cddc844e0e2e2f0f2a0e59c491fed5
File size: 119321 bytes

Leave a Reply