Home Malware Programs Backdoors Backdoor.Zyklon

Backdoor.Zyklon

Posted: March 28, 2017

Threat Metric

Threat Level: 6/10
Infected PCs: 4,682
First Seen: March 28, 2017
Last Seen: May 2, 2022
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\itunes.vbs File name: itunes.vbs
Size: 308B (308 bytes)
MD5: 4642f2748a6849ca0a44c6b2f41d8670
Detection count: 28
Mime Type: unknown/vbs
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: August 29, 2017
%APPDATA%\itunes.exe File name: itunes.exe
Size: 5.15 MB (5156864 bytes)
MD5: 6bb44c92ecc8b97c940fb8b83c10a99b
Detection count: 22
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: July 18, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\itunes_br.dat%APPDATA%\itunes_el.dat%APPDATA%\itunes_ftp.dat%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\itunes.vbs
Loading...