Threat Database Trojans Suspicious.Bifrose

Suspicious.Bifrose

Suspicious.Bifrose is a dangerous Trojan program that may drop malicious parasites onto an infected computer. Suspicious.Bifrose may surreptitiously give a remote attacker full access to a compromised PC. Suspicious.Bifrose may also disable the Windows Firewall in order to avoid being detected when dropping malicious files. If detected, the removal of Suspicious.Bifrose should be done as soon as possible.

File System Details

Suspicious.Bifrose may create the following file(s):
# File Name Detections
1. %FontsDir%\iexplo.exe
2. %ProgramFiles%\sovhst.exe
3. %Windir%\MICROSOFT\winsys.dll
4. %ProgramFiles%\Common Files\PushWare\cpush.dll
5. %System%\dllcache\linkinfo.dll
6. %ProgramFiles%\Common Files\PushWare\Uninst.exe
7. %FontsDir%\tbh.ini
8. %Temp%\abbF.tmp
9. c:\AUTORUN.INF
10. %Windir%\system\VGA13.dat
11. %Temp%\dll1.tmp
12. %Temp%\abb14.tmp
13. %Windir%\Tasks\NSk5AtYYEPKtaSgzknZvW.ico
14. c:\MZ.PIF
15. %Temp%\abb9.tmp

Registry Details

Suspicious.Bifrose may create the following registry entry or registry entries:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]

Trending

Most Viewed

Loading...