The file is usually dropped in Internet Explorer folder under the name of setupapi.dll. The trojan is used to steal passwords to ftps servers. In order to get access to this information it searches for well known ftp programs installed on the client Please let BitDefender disinfect your files.
presence of setupapi.dll in Internet Explorer folder

Subscribe
Hot Articles