Threat Database Trojans Trojan.Silentbrute

Trojan.Silentbrute

By GoldSparrow in Trojans

Threat Scorecard

Ranking: 161
Threat Level: 90 % (High)
Infected Computers: 140,172
First Seen: August 23, 2013
Last Seen: September 20, 2023
OS(es) Affected: Windows

Trojan.Silentbrute is a Trojan that opens a back door and adds malevolent files onto the compromised PC. Once run, Trojan.Silentbrute creates a copy of itself to the particular locations. Trojan.Silentbrute then creates the registry entry so that it can load automatically whenever the PC user boost up Windows. Trojan.Silentbrute then connects to a command-and-control (C&C) server using the partcular web address and then waits for instructions. Trojan.Silentbrute will also add lists of common user names and passwords and use them in brute force attacks against a list of attacked hosts. Trojan.Silentbrute will send back successful credentials to the C&C server using one of the particular URLs.

File System Details

Trojan.Silentbrute may create the following file(s):
# File Name Detections
1. %UserProfile%\Application Data\System\[THREAT NAME].exe

Registry Details

Trojan.Silentbrute may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\"[THREAT NAME]" =

URLs

Trojan.Silentbrute may call the following URLs:

[bestsexycams.biz/brut]/cmd.php
[http://][C&C SERVER ADDRESS]/bruteres.php
[http://][C&C SERVER ADDRESS]/checkres.php
[my.ololo.in]/cmd.php
[u.ololo.in]/cmd.php

Trending

Most Viewed

Loading...