Home Malware Programs Worms Breatle

Breatle

Posted: March 28, 2006

Breatle is an Internet worm that infects vulnerable PCs running Windows computer with unpatched security flaws. The spyware installs hidden FTP server, which gives the attacker unauthorized remote access to an infected PC. Breatle activity results in user privacy violation and possible computer damage.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 breatle.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunWinUpdateB=%System%reatle.exe
Loading...