Threat Database Backdoors Backdoor.Mirafox

Backdoor.Mirafox

By ZulaZuza in Backdoors

Threat Scorecard

Ranking: 1,316
Threat Level: 20 % (Normal)
Infected Computers: 14,643
First Seen: September 21, 2012
Last Seen: September 20, 2023
OS(es) Affected: Windows

Backdoor.Mirafox is a backdoor Trojan that opens a back door on the compromised PC. While being executed, Backdoor.Mirafox may create copies of itself by generating and downloading malevolent files. Backdoor.Mirafox also creates several registry entries so that it can launch automatically whenever Windows is started. Backdoor.Mirafox gathers the specific information about the infected computer including operating system version, computer name and CPU information, which is then transmitted to a command-and-control (C&C) server.

File System Details

Backdoor.Mirafox may create the following file(s):
# File Name Detections
1. %CurrentFolder%\Reader_SL.exe
2. %CurrentFolder%\csrss.exe
3. %CurrentFolder%\MSN.exe
4. %UserProfile%\Start Menu\Programs\Startup\Update.bat

Registry Details

Backdoor.Mirafox may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\"Load" = "%CurrentFolder%\[THREAT FILE NAME].exe"

URLs

Backdoor.Mirafox may call the following URLs:

coxziptwo.com

Trending

Most Viewed

Loading...