SYSWINDOWS.EXE – Backdoor Bifrose

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SYSWINDOWS.EXE – Backdoor Bifrose removal

FileMD5Virus Alias
SYSWINDOWS.EXE 92342c9f11838e17fc7b271dadf36fab Backdoor Bifrose
SYSWINDOWS.EXE 92342c9f11838e17fc7b271dadf36fab Trojan Generic
SYSWINDOWS.EXE 92342c9f11838e17fc7b271dadf36fab Trojan Eldorado
SYSWINDOWS.EXE 92342c9f11838e17fc7b271dadf36fab Trojan DNAScan
SYSWINDOWS.EXE 92342c9f11838e17fc7b271dadf36fab Worm Autorun
SYSWINDOWS.EXE 92342c9f11838e17fc7b271dadf36fab Trojan Agent

SYSWINDOWS.EXE size: 172095 bytes
SYSWINDOWS.EXE hash: 92342C9F11838E17FC7B271DADF36FAB

Created files:

%Program Files Common%\systems\nov
%Program Files Common%\systems\pinks.dll
%Program Files Common%\systems\SysWindows.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Winsys: “%Program Files Common%\Systems\SysWindows.exe”

Detected by UnHackMe:

SYSWINDOWS.EXE
Default location: %PROGRAM FILES COMMON%\SYSTEMS\SYSWINDOWS.EXE

Dropper information:
MD5: 92342c9f11838e17fc7b271dadf36fab
File size: 172095 bytes

Leave a Reply