Home Malware Programs Trojans Mal/Inject-M

Mal/Inject-M

Posted: May 7, 2010

Mal/Inject-M is a backdoor Trojan that attempts to propagate by exploiting local network shares. Mal/Inject-M will also attempt to join a predefined IRC server and channel in order to allow hackers to participate in dangerous distributed denial-of-service attacks (DDoS attack). DDoS is an attempt by hackers to make a computer resource unavailable to its intended users. Mal/Inject-M poses a severe security threat to any PC and should be removed upon detection.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%\Bifrost\server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\Bifrost][HKEY_LOCAL_MACHINE\SOFTWARE\Bifrost][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}]
Loading...