SERWER.EXE – Trojan Barys

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SERWER.EXE – Trojan Barys removal

FileMD5Virus Alias
SERWER.EXE 5d64e3c379f289acad1b2210af83b09b Trojan Barys
SERWER.EXE 5d64e3c379f289acad1b2210af83b09b Trojan Generic
SERWER.EXE 5d64e3c379f289acad1b2210af83b09b Backdoor Maximus
SERWER.EXE 5d64e3c379f289acad1b2210af83b09b Trojan Siggen
SERWER.EXE 5d64e3c379f289acad1b2210af83b09b Trojan Delf

SERWER.EXE size: 286726 bytes
SERWER.EXE hash: 5D64E3C379F289ACAD1B2210AF83B09B

Created files:

%AppData%\svchosted.exe
%WinDir%\Temp\serwer.exe
%WinDir%\Temp\win32.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\nservice32: %WinDir%\System32\config\Systemprofile\Application Data\svchosted.exe

Detected by UnHackMe:

SERWER.EXE
Default location: %TEMP%\SERWER.EXE

Dropper information:
MD5: 33292ebff1934a3cce8dad5abc1ace46
File size: 303514 bytes

Leave a Reply