Threat Database Backdoors Backdoor.Boda

Backdoor.Boda

By Sumo3000 in Backdoors

Backdoor.Boda is a backdoor Trojan that opens a back door on the compromised PC. While being run, Backdoor.Boda creates harmful files on the targeted computer. Backdoor.Boda also creates the configuration file that stores command-and-control (C&C) server information. Backdoor.Boda creates registry entries, one of them enabling it to run automatically every time Windows started. Backdoor.Boda terminates legitimate processes related to anti-virus software on the infected computer. Backdoor.Boda may then inject a code into certain processes on the vulnerable PC. Backdoor.Boda opens a back door and enables cybercriminals to obtain remote access and control over the affected computer. Backdoor.Boda gathers information related to compromised system and may transfer it to a remote server

SpyHunter Detects & Remove Backdoor.Boda

File System Details

Backdoor.Boda may create the following file(s):
# File Name MD5 Detections
1. %UserProfile%\Application Data\config.sys
2. %Temp%\seccenter.xxx
3. file.exe 815db4b8b5935ee0150bb5dd99847fb1 0
4. file.exe a7c79c7e13a6f3e5bfe4852efd937096 0
5. file.exe e7c326f7cc20783ffc564d6e91f0457b 0
6. file.exe 432dce23d00694b103dd838144253d1b 0
7. file.exe d399e5b8d0d6a01e14e713488d1ee6d9 0

Registry Details

Backdoor.Boda may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Classes\"softbin" = "[BINARY DATA]"
HKEY_CURRENT_USER\Software\Micorsoft\Windows\CurrentVersion\Run\"Update" = "%UserProfile%\Application Data\googleupdate.exe"

Trending

Most Viewed

Loading...