Trojan Barys – onex.dll – ac15d1c924abb0d36943ab27c2e04db9

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Barys
Also known as: Trojan Delphi, Trojan Agent
SHA256: 89e3b664053a1dae6a20f9b02dd79b92293aaa758c605780069cda63af765f26
SHA1: 0803768dbf44076813688b6c482a647673f2c92e
MD5: ac15d1c924abb0d36943ab27c2e04db9
File size: 76288 bytes

Created files:

%WinDir%\Debug\onex.dll – Trojan Barys
%WinDir%\L2Schemas\idq.dll – Trojan Barys
%WinDir%\Media\d3d9.dll – Trojan Barys
%WinDir%\srchasst\htui.dll – Trojan Barys
%AppData%\test.inf – Trojan Barys

Trojan Barys created autostart registry keys:

HKLM\Software\Classes\CLSID\{6197F6F9-1020-4D17-87D1-AAF74BACC0BD}\InprocServer32 : %WinDir%\srchasst\htui.dll
HKLM\Software\Classes\CLSID\{6197F6F9-1020-4D17-87D1-AAF74BACC0BD}\InprocServer32\ThreadingModel: Apartment

Leave a Reply