Threat Database Backdoors Win-Trojan/Refroso.22016

Win-Trojan/Refroso.22016

Win-Trojan/Refroso.22016 is a backdoor Trojan that spreads through the exploitation of local network shares. Win-Trojan/Refroso.22016 also has the capability of taking part in DDos attacks by joining a predefined IRC server and channel. Win-Trojan/Refroso.22016 presents a serious security risk for the system that it is installed onto. In some cases, the installation of Win-Trojan/Refroso.22016 can take place without notification to the computer user.

File System Details

Win-Trojan/Refroso.22016 may create the following file(s):
# File Name Detections
1. %ProgramFiles%\Bifrost\server.exe

Registry Details

Win-Trojan/Refroso.22016 may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Bifrost
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideo
HKEY_CURRENT_USER\Software\Bifrost
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideo

Trending

Most Viewed

Loading...