Threat Database Backdoors BKDR_ZACCESS.KP

BKDR_ZACCESS.KP

By LoneStar in Backdoors

BKDR_ZACCESS.KP is a backdoor Trojan and one of the latest versions of the ZeroAccess/Sirefef/ rootkit. While being installed installed, BKDR_ZACCESS.KP checks the current PC user privileges. If the computer user is an administrator, BKDR_ZACCESS.KP proceeds with its installation routine. But if the computer user is a non-administrator user, BKDR_ZACCESS.KP elevates its privileges to proceed with malware installation. BKDR_ZACCESS.KP drops and runs BKDR_ZACCESS.SMQQ, which leads to an illustrattion of a User Account Control (UAC) notification on the screen. When it is being displayed, computer users may possibly not permit the file to run, thinking that the file is infected, halting BKDR_ZACCESS.KP installation. To avoid this, BKDR_ZACCESS.KP encourages the UAC dialog box to appear by running a legal and harmless Adobe Flash installer (InstallerFlashPlayer.exe).

File System Details

BKDR_ZACCESS.KP may create the following file(s):
# File Name Detections
1. msimg32.dll

Trending

Most Viewed

Loading...