Home Malware Programs Backdoors Backdoor.Kerlisen

Backdoor.Kerlisen

Posted: August 9, 2013

Threat Metric

Threat Level: 2/10
Infected PCs: 10
First Seen: August 9, 2013
OS(es) Affected: Windows

Backdoor.Kerlisen is a backdoor Trojan that opens a back door on the affected computer. When Backdoor.Kerlisen is executed, it may drop the potentially malicious files. Backdoor.Kerlisen then opens a back door on the affected PC, enabling an attacker to perform malicious actions, such as execute remote commands, set up a HTTP proxy, set up a sniffer, and insert different payloads. Backdoor.Kerlisen can destroy data on the targeted PC and even the computer. Backdoor.Kerlisen may reduce the PC's security and stability. Backdoor.Kerlisen may also decrease the PC's performance. Backdoor.Kerlisen may violate the target PC user's privacy and security. Backdoor.Kerlisen may grab personal information on the infected computer and send it to a remote attacker.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%System%\drivers\dumpeta.sys File name: %System%\drivers\dumpeta.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\fsDriver.sys File name: %System%\drivers\fsDriver.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\BTHSERV.Sys File name: %System%\drivers\BTHSERV.Sys
File type: System file
Mime Type: unknown/Sys
Group: Malware file
%System%\drivers\butedger.sys File name: %System%\drivers\butedger.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\nbistapi.sys File name: %System%\drivers\nbistapi.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\Processr.sys File name: %System%\drivers\Processr.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\vmartmg.sys File name: %System%\drivers\vmartmg.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\wd.sys File name: %System%\drivers\wd.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\sdstor.sys File name: %System%\drivers\sdstor.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\sqldpas.sys File name: %System%\drivers\sqldpas.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\wuacult.sys File name: %System%\drivers\wuacult.sys
File type: System file
Mime Type: unknown/sys
Group: Malware file
%System%\drivers\wlbsctrl.dll File name: %System%\drivers\wlbsctrl.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Loading...