Home Malware Programs Trojans Trojan.Win32.VBKrypt.djjo

Trojan.Win32.VBKrypt.djjo

Posted: June 28, 2011

Trojan.Win32.VBKrypt.djjo is a variant of the backdoor Trojan Bifrose. Like other types of Bifrose Trojans, Trojan.Win32.VBKrypt.djjo will attempt to attack your security and send information to external parties to let remote criminals take over control of your PC. Trojan.Win32.VBKrypt.djjo may attempt to hide itself by using the name of a normal Windows process and will run whenever the infected operating system starts. You may be able to detect a Trojan.Win32.VBKrypt.djjo infection by noticing unusual network activity or changed port settings. Deleting Trojan.Win32.VBKrypt.djjo should be done both quickly and with some help from a trusted anti-virus scanner if you have such available.

The Disturbing Lack of Signs of a Trojan.Win32.VBKrypt.djjo Infection

Different versions of Trojan.Win32.VBKrypt.djjo infections may create different files, but in general, they'll be named innocuous names like Internet.exe or server.exe. Trojan.Win32.VBKrypt.djjo has been seen hiding these files in Application Data and Program Files folders, sometimes in custom-made sub-folders.

Trojan.Win32.VBKrypt.djjo may be detected with at least two other aliases: Mal/Scribble-D, Trojan.Peed, with the exact alias determined by which brand of security software detects the Trojan.Win32.VBKrypt.djjo infection.

Trojan.Win32.VBKrypt.djjo may use processes named uniquely after Trojan.Win32.VBKrypt.djjo's files, or Trojan.Win32.VBKrypt.djjo may use processes that borrow the names of native Windows components such as iexplore.exe. In some cases, Trojan.Win32.VBKrypt.djjo has also been seen hiding memory processes to prevent them from showing up in Task Manager and other memory-monitoring programs.

Other than the existence of unusual files, folders and memory processes, you may not see any other evidence of a Trojan.Win32.VBKrypt.djjo infection. Monitoring unauthorized port activity such as the transfer of information over networks or changes in port open/close settings can also show signs of Trojan.Win32.VBKrypt.djjo. However, obvious indicators are minimal to nonexistent, making preemptive defense against a Trojan.Win32.VBKrypt.djjo infection especially important.

Trojan.Win32.VBKrypt.djjo's Sinister Intentions for Your Computer

Regardless of Trojan.Win32.VBKrypt.djjo's exact configuration and methods of concealment, Trojan.Win32.VBKrypt.djjo will attempt to make contact with remote hackers. Remote contact like that indulged in by Trojan.Win32.VBKrypt.djjo is often a beginning for other attacks such as:

  • Remote attackers may use Trojan.Win32.VBKrypt.djjo to install a Remote Administration Tool. RATs allow remote entities to exert absolute control over your PC and can force the computer to perform self-destructive actions, including DDoS attacks.
  • Trojan.Win32.VBKrypt.djjo may be configured to download and install other harmful programs. These programs can take the form of fake security applications or rogue security programs, spyware like keyloggers that focus on stealing personal information, worms that can spread by using USB drives and networks or even other Trojans.
  • Trojan.Win32.VBKrypt.djjo may itself be configured to steal private information. Passwords, personal identity credentials, and credit card numbers are all frequently targeted by infections similar to Trojan.Win32.VBKrypt.djjo.
  • In unusually destructive cases, Trojan.Win32.VBKrypt.djjo may even be instructed to cause long-lasting damage to your PC, up to and including making your computer completely inoperable.

The serious nature of any Trojan.Win32.VBKrypt.djjo threat necessitates that you remove Trojan.Win32.VBKrypt.djjo with advanced anti-virus software whenever you suspect that Trojan.Win32.VBKrypt.djjo is infecting your hard drive.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %PROGRAM_FILES%\Trojan.Win32.VBKrypt.djjo
    2 c:\Documents and Settings\All Users\Start Menu\Trojan.Win32.VBKrypt.djjo\ c:\Documents and Settings\All Users\Trojan.Win32.VBKrypt.djjo

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\Software\Trojan.Win32.VBKrypt.djjo
Loading...