Threat Database Trojans Mal/Bredo-Q

Mal/Bredo-Q

By SpideyMan in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 1,821
First Seen: November 30, 2011
Last Seen: July 15, 2022
OS(es) Affected: Windows

Mal/Bredo-Q is a damaging Trojan that is included in the spam emails supposedly sent by USPS or Royal Mail. The bogus emails use a variety of subject lines and include adaptions based on whether the scammers think they are targeting a British or American computer user (Brits are attracted to open the attachment with an email seemingly from the Royal Mail, while American-based recipients may believe the message comes from USPS). The wording can differ, but here are some examples of both the USPS and Royal Mail versions of the malicious email. The fake email involves a malicious ZIP file which, in truth, is Mal/Bredo-Q. Mal/Bredo-Q corrupts PCs that are running Windows. When the malicious email attachment within the ZIP file is run, Mal/Bredo-Q copies to Windows system folder and modifies the registry so that it can run automatically every time you turn on your computer. Mal/Bredo-Q also connects to remote servers and installs several malicious programs on the corrupted PC system. If you receive such emails, do not click on the attachment and delete the unwanted email as soon as you can to protect your computer from Mal/Bredo-Q.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Fortinet W32/Yakes.B!tr
BitDefender Gen:Variant.Kazy.53408
Kaspersky UDS:DangerousObject.Multi.Generic
Symantec Suspicious.MLApp
Symantec Packed.Generic.349
AVG Generic26.NGG
Ikarus Trojan.Win32.Diple
AhnLab-V3 Trojan/Win32.Diple
Antiy-AVL Trojan/Win32.Diple.gen
Sophos Mal/Bredo-Q
AntiVir TR/Kazy.46645
BitDefender Gen:Variant.Kazy.46645
Kaspersky Trojan.Win32.Diple.djzk
Avast Win32:Malware-gen
Symantec Trojan.Gen.2

SpyHunter Detects & Remove Mal/Bredo-Q

File System Details

Mal/Bredo-Q may create the following file(s):
# File Name MD5 Detections
1. SIyHoyHlXaPT.exe f96d7f92e85f57f4b879c4f3236d2643 25
2. Post_Label.exe 18fab82394326e94dfc23457c94a02a8 2
3. V9u4IE0Dr6G.dll a631b3f3e70aa524f69f3b8ab3b6bf3d 2
4. g9zDdAmZAoyENB.exe 9169f80595ed8a1df01acbb3bbeb8f5f 1
5. EhbewqoZqepb.dll c8aa46a53c7744a91dec77f4a00d2320 1
6. mstfzae.com 7542970b3b3d15b54ee11ce6e866a021 1
7. Post_Label.exe 2753f5a542e031e3e06e3940559809d1 0
8. DHl-Express-Delivery-Tracking-Report-102011.exe 6892737dc9df55ee99f8bbdc335b3950 0

Trending

Most Viewed

Loading...