Win-Trojan/Refroso.22016 Description
Win-Trojan/Refroso.22016 is a backdoor Trojan that spreads through the exploitation of local network shares. Win-Trojan/Refroso.22016 also has the capability of taking part in DDos attacks by joining a predefined IRC server and channel. Win-Trojan/Refroso.22016 presents a serious security risk for the system that it is installed onto. In some cases, the installation of Win-Trojan/Refroso.22016 can take place without notification to the computer user.
Technical Information
Registry Details
Win-Trojan/Refroso.22016 creates the following registry entry or registry entries:
RegistryKey
HKEY_LOCAL_MACHINE\SOFTWARE\Bifrost
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideo
HKEY_CURRENT_USER\Software\Bifrost
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideo