Home Malware Programs Trojans Win-Trojan/Buzus.Gen

Win-Trojan/Buzus.Gen

Posted: March 21, 2011

Win-Trojan/Buzus.Gen is a malicious computer trojan made to access your computer system by degrading system security and making changes to running processes in Windows registry. Win-Trojan/Buzus.Gen may corrupt users' systems while visiting infected adult related websites or through chat or instant-messaging applications. Win-Trojan/Buzus.Gen will automatically executes corrupt .exe and .dll files at every system start-up. Win-Trojan/Buzus.Gen tries to connect with a distant IRC server to enter a targeted system.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%\Bifrost\server.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\BifrostHKEY_LOCAL_MACHINE\SOFTWARE\BifrostHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9D71D88C-C598-4935-C5D1-43AA4DB90836}]stubpath = "%ProgramFiles%\Bifrost\server.exe s"HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideoHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideo
Loading...