Threat Database Backdoors Win-Trojan/Bifrose.32256.T

Win-Trojan/Bifrose.32256.T

By Domesticus in Backdoors

Win-Trojan/Bifrose.32256.T is a backdoor trojan that offers an unauthorized user some remote control over your computer system making it possible to gather your personal information through accessing your files. Win-
Trojan/Bifrose.32256.T is able to modify other files by corrupting, prepending or overwriting them with its own body. Win-Trojan/Bifrose.32256.T decreases your computer's security and stability. Win-Trojan/Bifrose.32256.T

enables an attacker to take full control of an infected computer and logs all keystrokes to a text file which can be accessed by the hacker. Win-Trojan/Bifrose.32256.T covers itself from process monitors and task manager. Win-Trojan/Bifrose.32256.T should be removed immediately before it leads to further computer issues.

File System Details

Win-Trojan/Bifrose.32256.T may create the following file(s):
# File Name Detections
1. %AppData%\Bifrost\server.exe

Registry Details

Win-Trojan/Bifrose.32256.T may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Mycrosnft
HKEY_LOCAL_MACHINE\SOFTWARE\Mycrosnft\Windows
HKEY_CURRENT_USER\urrentProcess
HKEY_LOCAL_MACHINE\SOFTWARE\Mycrosnft\Active SetuNNInstalled Components
HKEY_LOCAL_MACHINE\SOFTWARE\Mycrosnft\Windows\CurrentVersion
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideo
stubpath = “%AppData%\Bifrost\server.exe s”
HKEY_LOCAL_MACHINE\SOFTWARE\Mycrosnft\Active SetuNNInstalled Components\{C5DB63F5-0A87-8A24-F231-3DB02CE7FC71}
HKEY_LOCAL_MACHINE\SOFTWARE\Bifrost
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideo
HKEY_CURRENT_USER\Software\Bifrost

Trending

Most Viewed

Loading...