SERVER.EXE – Trojan Barys

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SERVER.EXE – Trojan Barys removal

FileMD5Virus Alias
SERVER.EXE 2461917c727dcf00ebcde14aaf22330b Trojan Barys
SERVER.EXE 2461917c727dcf00ebcde14aaf22330b Trojan SuspiciousFile
SERVER.EXE 2461917c727dcf00ebcde14aaf22330b Trojan Artemis
SERVER.EXE 2461917c727dcf00ebcde14aaf22330b Trojan XPACK
SERVER.EXE 2461917c727dcf00ebcde14aaf22330b Trojan Eldorado
SERVER.EXE 2461917c727dcf00ebcde14aaf22330b Trojan DNAScan

SERVER.EXE size: 666624 bytes
SERVER.EXE hash: 2461917C727DCF00EBCDE14AAF22330B

Created files:

C:\directory\CyberGate\f1q6w51\server.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{YGX22H06-O2HY-20F0-1H62-T57K62326SDO}\StubPath: c:\directory\CyberGate\f1q6w51\server.exe Restart
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 63003A005C006400690072006500630074006F00720079005C004300790062006500720047006100740065005C0066003100710036007700350031005C007300650072007600650072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 63003A005C006400690072006500630074006F00720079005C004300790062006500720047006100740065005C0066003100710036007700350031005C007300650072007600650072002E006500780065000000

Detected by UnHackMe:

SERVER.EXE
Default location: C:\DIRECTORY\CYBERGATE\F1Q6W51\SERVER.EXE

Dropper information:
MD5: 2461917c727dcf00ebcde14aaf22330b
File size: 666624 bytes

Leave a Reply