Threat Encyclopedia

Selected viruses, spyware, and other threats: sorted alphabetically

Win32/Farfli.AE

Aliases:Backdoor.Win32.ZeroPot.g (Kaspersky), Backdoor:Win32/Zegost.B (Microsoft), BackDoor.Capture (Dr.Web) 
Type of infiltration:Trojan  
Size:124224 B 
Affected platforms:Microsoft Windows 
Signature database version:4972 (20100324) 

Short description

Win32/Farfli.AE is a trojan that installs Win32/Farfli.AA malware.

Installation

When executed, the trojan copies itself into the following location:
  • %temp%123.text (124224 B)

Other information

The trojan replaces the following files with a copy of itself or with another malware file:
  • %windir%uxtheme.dll (102400 B, Win32/Farfli.AA)