Troj/FakeAV-BNY is a Trojan for the Windows platform.
Troj/FakeAV-BNY includes functionality to:
- run automatically
- steal confidential information
- access the internet and communicate with a remote server via HTTP
Troj/FakeAV-BNY communicates via HTTP with the following locations:
sekvend . com
When Troj/FakeAV-BNY is installed it creates the file <User>\Application Data\netprotocol.exe.
The following registry entry is created to run netprotocol.exe on startup:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Netprotocol
<User>\Application Data\netprotocol.exe
Source: Sophos
| < Prev | Next > |
|---|






