Threat Database Trojans Trojan.Dididix

Trojan.Dididix

By Domesticus in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 2
First Seen: July 16, 2012
Last Seen: May 28, 2022
OS(es) Affected: Windows

Trojan.Dididix is a Trojan that can modify the master boot record (MBR) of the targeted PC. When activated, Trojan.Dididix copies the specific file. Trojan.Dididix then writes a driver file and an encrypted .exe file into sectors after the end of the last partition on the disk drive of the corrupted machine. Trojan.Dididix saves the actual master boot record (MBR) and then overwrites it (Boot.Dididix). The modified MBR hooks the BIOS interrupt to load the driver file when you boot up Windows, and then loads and executes the saved MBR. The driver file then decrypts the encrypted .exe file and drops it as the particular file. Trojan.Dididix can also erase files on the infected computer.

File System Details

Trojan.Dididix may create the following file(s):
# File Name Detections
1. %System%\drivers\beep.sys
2. %System%\winsys.exe
3. %Windir%\Help\intel.chm.

Trending

Most Viewed

Loading...