Home Malware Programs Backdoors BackDoor-CEP.svr

BackDoor-CEP.svr

Posted: March 11, 2010

BackDoor-CEP.svr is a malicious Backdoor program which exploits vulnerabilities of installed software to obtain remote, unauthorized access to your computer. BackDoor-CEP.svr is secretly installed by viruses, worms, and malicious adware programs. BackDoor-CEP.svr works stealthily, making it very difficult to detect and remove without using reliable anti-spyware software.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %AppData%\addon.dat
    2 %ProgramFiles%\consul\consul.exe
    3 %ProgramFiles%\consul\klog.dat

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\consul][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{B7B26565-60FD-FF6D-D61C-7DB1F260FA16}][HKEY_LOCAL_MACHINE\SOFTWARE\consul]
Loading...