Threat Database Backdoors Backdoor.Elporat

Backdoor.Elporat

By Domesticus in Backdoors

Backdoor.Elporat is a backdoor Trojan that opens a back door on the targeted PC. Backdoor.Elporat may distribute other PC infections on the compromised machine and steal confidential information from the infected computer. Backdoor.Elporat can record keystrokes and transmit them to a remote server for cybercriminals. Backdoor.Elporat may propagate as a mischievous Microsoft Word document which exploits the Microsoft Office RTF File Stack Buffer Overflow Vulnerability (CVE-2010-3333). While being activated, Backdoor.Elporat may create and run several infected files. Backdoor.Elporat may also create the specific shortcut file so that it can launch automatically whenever you boot up Windows.

File System Details

Backdoor.Elporat may create the following file(s):
# File Name Detections
1. %System%\STREAM.SYS
2. %UserProfile%\Application Data\Microsoft\Internet Explorer\IEXPL0RE.EXE
3. %SystemDrive%\RECYCLER\thumb.dat
4. %Temp%\perf[4 OR 5 RANDOM CHARACTERS].dat
5. %Windir%\system\MSMAPI32.SRG
6. %UserProfile%\Start Menu\Programs\Startup\IEXPL0RE.LNK
7. %Windir%\system\lock.dat

URLs

Backdoor.Elporat may call the following URLs:

clickpdfsearch.com

Trending

Most Viewed

Loading...