Threat Database Trojans Trojan-Dropper.Win32.Agent.xzr

Trojan-Dropper.Win32.Agent.xzr

By GoldSparrow in Trojans

Trojan-Dropper.Win32.Agent.xzr is a mischievous backdoor trojan that runs in the background and enables an attacker remote access to the infected computer system. Trojan-Dropper.Win32.Agent.xzr launches automatically when computer boots up because it has dropped its start-up item in the registry entry. Trojan-Dropper.Win32.Agent.xzr will download files to the computer without a targeted user's consent which will lead to security risk. Trojan-Dropper.Win32.Agent.xzr can circulate via the network if the corrupt drive is shared on the network.

File System Details

Trojan-Dropper.Win32.Agent.xzr may create the following file(s):
# File Name Detections
1. %ProgramFiles%\Bifrost\server.exe
2. %System%\server1.exe
3. %System%\molebox.exe

Registry Details

Trojan-Dropper.Win32.Agent.xzr may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}
HKEY_LOCAL_MACHINE\SOFTWARE\032
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideo
HKEY_CURRENT_USER\Software\032
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideo

Trending

Most Viewed

Loading...