Home Malware Programs Trojans Backdoor.Outbreak.C

Backdoor.Outbreak.C

Posted: February 22, 2010

Backdoor.Outbreak.C is a malicious Trojan that runs in the background and gives hackers remote access to the system. Backdoor.Outbreak.C can easily steal passwords, log keystrokes, create screenshots to control the affected computer. Backdoor.Outbreak.C compromises system integrity by making modifications that enable the attacker to use it for malicious activities. Backdoor.Outbreak.C shows characteristics of a security threat and should be removed from the system immediately.

Aliases

Backdoor.Win32.Outbreak.100.a (Kaspersky Lab)
Generic BackDoor.d (McAfee)
BKDR_OUTBREAK.B (Trend Micro)
Troj/Bdoor-DJ (Sophos)
TrojanSpy:Win32/Logsnif.gen (Microsoft)
Win-Trojan/Outbreak.110082 (AhnLab)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Windir%\Server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Server\Security][HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Server][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Server\Security][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Server]
Loading...