Home Malware Programs Trojans Trojan.Win32.Buzus.fqgj

Trojan.Win32.Buzus.fqgj

Posted: April 4, 2011

Trojan.Win32.Buzus.fqgj is a malicious trojan infection that penetrates your computer system through security loopholes in order to corrupt executable files in Windows system. Trojan.Win32.Buzus.fqgj opens up a backdoor to enable remote access and result in irretrievable harm. Trojan.Win32.Buzus.fqgj injures PCs via adult porn and shareware websites and through spam email advertisements. Trojan.Win32.Buzus.fqgj can create a start-up registry entry to allow its automatic execution at every time Windows starts. Trojan.Win32.Buzus.fqgj also downloads additional malware onto the affected computer.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%\Bifrost\server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\BifrostHKEY_LOCAL_MACHINE\SOFTWARE\BifrostHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideoHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideostubpath = "%ProgramFiles%\Bifrost\server.exe s"
Loading...