Threat Database Backdoors Backdoor.Qadars

Backdoor.Qadars

By JubileeX in Backdoors

Threat Scorecard

Ranking: 10,234
Threat Level: 20 % (Normal)
Infected Computers: 564
First Seen: October 8, 2013
Last Seen: September 18, 2023
OS(es) Affected: Windows

Backdoor.Qadars is a backdoor Trojan that opens a back door on the corrupted PC, steals information and can drop potentially harmful files. Once run, Backdoor.Qadars creates the potentially harmful files on the infected computer. Backdoor.Qadars may connect to one of the particular command-and-control (C&C) servers. Backdoor.Qadars then opens a back door on the compromised PC, permitting a cybercriminal to carry out the damaging activities such as execute man-in-the-browser attacks, grab information from the targeted PC, covering data on the installed OS, hardware and software, steal certificates and credentials, drop files, manipulate cookies, restart the PC, update the Trojan and remove it. Backdoor.Qadars may also aim to fool the victim into installing other malware infections on their mobile device.

File System Details

Backdoor.Qadars may create the following file(s):
# File Name Detections
1. %User Profile%\Application Data\Microsoft\AddIns\mudemqk.exe
2. %Windir%\Tasks\[32 RANDOM HEXADECIMAL CHARACTERS].job

URLs

Backdoor.Qadars may call the following URLs:

[http://]lote.arqadas.net/repor[REMOVED]
[http://]root.turktravestiler.net/scan[REMOVED]
[http://]root1.turktravestiler.net/scan[REMOVED]
[http://]root2.turktravestiler.net/scan[REMOVED]
[http://]sys.turktravestiler.org/repor[REMOVED]
[http://]vote.arkadasci.com/repor[REMOVED]
https://hsmvem.com

Trending

Most Viewed

Loading...