Quantcast
Channel: How to Remove Malware
Viewing all articles
Browse latest Browse all 38585

INYJBRYCN.EXE is Backdoor PCRat

$
0
0

The program INYJBRYCN.EXE is used for hidden penetration into PC and its remote administration.
UnHackMe is recommended as a reliable program for solving the problem with INYJBRYCN.EXE.
Download for free: http://www.unhackme.com

Malware Analysis of INYJBRYCN.EXE
Full path on a computer: %SysDir%\inyjbrycn.exe

Detected by UnHackMe:

INYJBRYCN.EXE
Default location: %SysDir%\inyjbrycn.exe

Removal Results: Success
Number of reboot: 1

INYJBRYCN.EXE is known as:

Backdoor.PCRat, Password-Stealer ( e4a17cde0 ), Password-Stealer ( 002d15bf1 ), Trojan.Magania.euwr, Trojan.Magania.czhtp, Backdoor.Trojan, Crypt.BHCB, BKDR_INJECT.SMJ, WIN.Spy.Magania-278, Trojan-GameThief.Magania.euwr, Trojan.A.PSW-Magania.736616, Virus.Part.b, Troj.Zegost-S, Trojan.PSW.Magania.baea, Hack.Huigezi.ec.(kcloud), Backdoor.PcClient.ZR, Trojan.Agent.Gen-Sinar, Dropper.PcClient, BScope.Trojan.SvcHorse.01643, a variant of Win32.Farfli.AKJ, Backdoor.Farfli.4805, Backdoor.Zegost, W32.Injector.MAG.tr, Agent2.AXBR, Trj.Downloader.MDW

INYJBRYCN.EXE hash:

  • MD5: be3b0447c0267911145cbf5691bfe8f4
How to quickly detect INYJBRYCN.EXE presence?
Registry:
  • HKLM\Software\Microsoft\Active Setup\Installed Components\{gvet11zg-2all-zm73-mci1-0uw61z0oih1d}\stubpath: “%SysDir%\inyjbrycn.exe”
  • HKLM\System\CurrentControlSet\Services\PCRatStact\Type: 0×00000120
Files:
  • %Temp%\32328_lang.dll
  • %SysDir%\inyjbrycn.exe
  • %SysDir%\inyjbrycn.exe_lang.ini
  • %SysDir%\syslog.dat


Viewing all articles
Browse latest Browse all 38585

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>