Home Malware Programs Backdoors Backdoor.Win32.Bifrose.fxu

Backdoor.Win32.Bifrose.fxu

Posted: August 31, 2011

Backdoor.Win32.Bifrose.fxu is a backdoor Trojan that runs in the background and is able to secretly access an affected PC system. Once installed on a compromised machine, Backdoor.Win32.Bifrose.fxu enables cybercriminals remote access to an infected computer system. Backdoor.Win32.Bifrose.fxu can steal your confidential information such as username, password, and credit card number. Backdoor.Win32.Bifrose.fxu is able to record keystrokes, harm system files and infect applications. Backdoor.Win32.Bifrose.fxu is a dangerous security threat that you should delete immediately with a malware remover.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



c:\bifrost\server.exe File name: c:\bifrost\server.exe
File type: Executable File
Mime Type: unknown/exe
c:\extracted\explorer.exe File name: c:\extracted\explorer.exe
File type: Executable File
Mime Type: unknown/exe
%System%\bifrost\test.exe File name: %System%\bifrost\test.exe
File type: Executable File
Mime Type: unknown/exe
%AppData%\bifrost\server.exe File name: %AppData%\bifrost\server.exe
File type: Executable File
Mime Type: unknown/exe
%ProgramFiles%\bifrost\server.exe File name: %ProgramFiles%\bifrost\server.exe
File type: Executable File
Mime Type: unknown/exe
%ProgramFiles%\microsoft\yahoo.exe File name: %ProgramFiles%\microsoft\yahoo.exe
File type: Executable File
Mime Type: unknown/exe

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\{CLSID Path}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{038C8021-80E5-ABA8-72B7-F983B9D47651}HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\MediaResources\msvideoHKEY_CURRENT_USER\Software\windowsHKEY_LOCAL_MACHINE\SOFTWARE\windowsHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideo
Loading...