Home Malware Programs Malware HeurEngine.EP

HeurEngine.EP

Posted: May 12, 2011

HeurEngine.EP is a malware infection that is used to port other infected files or programs onto an affected computer system. HeurEngine.EP can be installed by careless PC users when using Internet or can be installed by other malware threats. HeurEngine.EP has dropped its start-up item in the registry entry so that it will launch automatically every time Windows is started. HeurEngine.EP is a privacy risk that may lead to identity theft.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%\Bifrost\server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\BifrostHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideoHKEY_LOCAL_MACHINE\SOFTWARE\BifrostHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideo
Loading...