Threat Database Backdoors Backdoor.Teambot

Backdoor.Teambot

By LoneStar in Backdoors

Backdoor.Teambot will quietly enter a system without a user's permission and then open a backdoor into the system. The backdoor will allow malicious users access to the compromised system. When inside a computer, Backdoor.Teambot will download, delete and modify certain files; it will modify the registry and allow additional malware onto the machine. Malicious users can use Backdoor.Teambot to steal personal information which they can use for identity theft or fraud. Remove Backdoor.Teambot from your system the moment you detect it.

File System Details

Backdoor.Teambot may create the following file(s):
# File Name Detections
1. %Windir%\TV.dll
2. %Windir%\ts.dll
3. %Windir%\svchost.exe
4. %Windir%\log\PIC071.exe
5. %UserProfile%\Application Data\TeamViewer\TeamViewer4_Logfile.log
6. %Windir%\log\DSC456.jpg
7. %Windir%\log\START.JS

Registry Details

Backdoor.Teambot may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\WinRAR SFX\"C%%WINDOWS%log" = "%Windir%\log"
HKEY_CURRENT_USER\Software\WinRAR SFX\"C%%WINDOWS" = "%SystemDrive%\WINDOWS"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\"sv[ONE MULTIBYTE CHARACTER]host" = "%Windir%\svchost.exe"

Trending

Most Viewed

Loading...