Home Malware Programs Backdoors Backdoor.Win32.Rbot.ajdr

Backdoor.Win32.Rbot.ajdr

Posted: June 10, 2010

Backdoor.Win32.Rbot.ajdr is a backdoor Trojan that runs in the background and allows hackers access to the compromised computer. Backdoor.Win32.Rbot.ajdr contains a hacktool for attackers to break into the PC. Backdoor.Rbot can change Windows Explorer settings to download other malicious files from external servers. Backdoor.Win32.Rbot.ajdr monitors user activities to obtain valuable personal information. Backdoor.Rbot poses a dangerous threat to any computer or system and should be terminated immediately.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %CommonPrograms%\Magic FLAC CD Burner\Magic FLAC CD Burner On Web.url
    2 %CommonPrograms%\Magic FLAC CD Burner\Recommended software\Magic APE to MP3 Converter.url
    3 %CommonPrograms%\Magic FLAC CD Burner\Recommended software\Magic FLAC to MP3 Converter.url
    4 %CommonPrograms%\Magic FLAC CD Burner\Uninstall Magic FLAC CD Burner.lnk
    5 %ProgramFiles%\Magic FLAC CD Burner\wav.ax
    6 %ProgramFiles%\Magic FLAC CD Burner\write.ax

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Media Type\Extensions\.mp3][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication]
Loading...