Home Malware Programs Trojans Bredolab.gen.u

Bredolab.gen.u

Posted: September 7, 2010

Bredolab.gen.u is a malicious backdoor Trojan from the notorious Bredolab family of malware. Bredolab.gen.u has the ability to connect to a remote server to download other malicious files onto the infected system. Bredolab.gen.u can open up the system to outside attackers where personal information or files can be compromised. Bredolab.gen.u can also be very difficult to detect and remove manually.

Aliases

Virus.Win32.DelfInject (Ikarus)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\Bifrost\Server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\Bifrost][HKEY_LOCAL_MACHINE\SOFTWARE\Bifrost][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}]
Loading...