Home Malware Programs Backdoors Backdoor.Win32.Agent.bfxu

Backdoor.Win32.Agent.bfxu

Posted: August 5, 2011

Backdoor.Win32.Agent.bfxu is a backdoor Trojan that runs in the background and opens a backdoor on your computer and allows the hacker to issue commands remotely to control the infected PC. Backdoor.Win32.Agent.bfxu does not use network resources to propagated, but can propagate through a network by attaching itself to other computer malware items. Backdoor.Win32.Agent.bfxu shows a pornographic image and blocks its victim's regular access to his/her machine. Backdoor.Win32.Agent.bfxu may record and reset your account settings or change your default home page to a different one, which sometimes cannot be changed back. You need to remove remove Backdoor.Win32.Agent.bfxu from your PC system immediately once you detect it to secure your computer.

Aliases

BackdoorWin32Agentbfxu

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%UserProfile%\Start Menu\Backdoor.Win32.Agent.bfxu\Backdoor.Win32.Agent.bfxu.lnk File name: %UserProfile%\Start Menu\Backdoor.Win32.Agent.bfxu\Backdoor.Win32.Agent.bfxu.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Desktop\Backdoor.Win32.Agent.bfxu.lnk File name: %UserProfile%\Desktop\Backdoor.Win32.Agent.bfxu.lnk
File type: Shortcut
Mime Type: unknown/lnk
%Program Files%\Backdoor.Win32.Agent.bfxu\Backdoor.Win32.Agent.bfxu.exe File name: %Program Files%\Backdoor.Win32.Agent.bfxu\Backdoor.Win32.Agent.bfxu.exe
File type: Executable File
Mime Type: unknown/exe
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Backdoor.Win32.Agent.bfxu.lnk File name: %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Backdoor.Win32.Agent.bfxu.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Start Menu\Backdoor.Win32.Agent.bfxu\Registration.lnk File name: %UserProfile%\Start Menu\Backdoor.Win32.Agent.bfxu\Registration.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Start Menu\Backdoor.Win32.Agent.bfxu\Help.lnk File name: %UserProfile%\Start Menu\Backdoor.Win32.Agent.bfxu\Help.lnk
File type: Shortcut
Mime Type: unknown/lnk

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\13376694984709702142491016734454HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "13376694984709702142491016734454"
Loading...