Threat Database Backdoors BKDR_BIFROSE.DQJ

BKDR_BIFROSE.DQJ

BKDR_BIFROSE.DQJ is a backdoor Trojan that enables remote attackers access to a compromised system. BKDR_BIFROSE.DQJ can be obtained via infected browser add-ons. Once executed, BKDR_BIFROSE.DQJ will drop a copy of itself as well as other potentially harmful files. BKDR_BIFROSE.DQJ will also create a registry entry to ensure that it is loaded with each system start-up. BKDR_BIFROSE.DQJ also drops a keylogging program onto a system which can record a victim's keystrokes and gather confidential information.

File System Details

BKDR_BIFROSE.DQJ may create the following file(s):
# File Name Detections
1. %Windows%\calc.exe

Registry Details

BKDR_BIFROSE.DQJ may create the following registry entry or registry entries:
Tibiabot = "%Windows%\calc.exe"
{A607F45D-EB17-BE13-3893-3749250B46A6}
Windows\CurrentVersion\Run
Installed Components\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\
StubPath = "%Windows%\calc.exe"

Trending

Most Viewed

Loading...