Archive for the ‘B’ Category

B Xone

Aliases: Backdoor.Win32.Delf.aty, Trojan.Win32.Agent.adw, Trojan-Downloader.Win32.Delf.bkf, Trojan-Dropper.Win32.Joiner.bd, Trojan-PSW.Win32.LdPinch.fsr, Backdoor.Win32.Delf.dld
Variants: 1.6, 1.7, 1.8, 1.9, 2.0
Port: 2006
Size: 412kb
Author: Opium
Created: AUG 2006
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\
HKLM\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\
HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\
Infection: svchost.exe, consrerva.dat

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

B-|R.A.T|-T

Aliases: “BRATT”, Backdoor.Win32.VB.adl
Port: 4123, 4124, 4125, 4126, 4127
Author: BrosTeam
Created: TBD
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\
Infection: 0003.exe, dsfiles.dll, sdssdgjeg012.exe, temp12345678.exe

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

B-List

Aliases: Constructor.Win32.VB.ab, Trojan-Downloader.Win32.VB.gu
Variants: 1.0
Size: 3kb
Author: Zed
Created: DEC 2004
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Infection: lsass.exe

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

B-S Yahoo! Spy

Aliases: Trojan.PSW.BStroj.18, Trojan.PSW.BStroj.19, Trojan.PSW.BStroj.191
Variants: 1.8.0, 1.90, 1.91
Size: 44kb
Author: bj_ajdary
Created: MAY 2002
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Infection: yah-server.exe, net-server.exe, msmsngs.exe, ypager.exe, yupdater.exe, ya-server.exe, msn-server.exe

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

B.F. Evolution

Aliases: “Blood Fest Evolution” – B.F.Evolution 5.3.12, Backdoor.HVL-Rat.5312, Backdoor.HVL-Rat.5312.b
Variants: 5.3.12
Port: 1099
Size: 382kb
Author: Lost DaTa
Created: JUN 1999
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
Infection: .exe (a apace before ‘.exe’), bf evolution.exe, patcher.exe

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)