Threat Search: 

ThreatExpert's Statistics for BKDR_BIFROSE.AQJ [Trend Micro]:

BKDR_BIFROSE.AQJ [Trend Micro] is also known as:
Threat AliasNumber of Incidents
BackDoor-CEP [McAfee]39
Backdoor.Bifrose.K [Symantec]33
Backdoor.Win32.Bifrose.de [Kaspersky Lab]17
Backdoor.Bifrose [Symantec]14
Backdoor.Win32.Bifrose [Ikarus]10
Backdoor.Bifrose [PC Tools]9
Backdoor.Bifrose.LV [PC Tools]9
Backdoor.Win32.Bifrose.agq [Kaspersky Lab]8
Backdoor:Win32/Bifrose.gen!D [Microsoft]8
Mal/Bifrose-B [Sophos]7
BackDoor-CEP.svr [McAfee]6
Troj/Bifrose-VB [Sophos]6
Backdoor.Win32.Bifrose.aa [Kaspersky Lab]5
Backdoor.Win32.Bifrose.agp [Kaspersky Lab]5
Backdoor.Bifrose.BPM [PC Tools]4
Backdoor.Bifrose.D [PC Tools]4
Backdoor.Win32.Bifrose.ccs [Kaspersky Lab]4
Backdoor:Win32/Bifrose.FK [Microsoft]4
Backdoor:Win32/Bifrose.gen!A [Microsoft]4
Backdoor-CEP.gen.b [McAfee]3
Backdoor.Win32.Bifrose.ccb [Kaspersky Lab]2
Backdoor.Win32.Bifrose.cdy [Kaspersky Lab]2
Bloodhound.Unknown [Symantec]2
Mal/Generic-A [Sophos]2
Win-Trojan/Bifrose.38056.B [AhnLab]2
Backdoor.Agent [PC Tools]1
Backdoor.Agent.AKEO [PC Tools]1
Backdoor.Bifrose!sd5 [PC Tools]1
Backdoor.Bifrose.ASN [PC Tools]1
Backdoor.Bifrose.XI [PC Tools]1
Backdoor.Bifrost.OH [PC Tools]1
Backdoor.Win32.Bifrose.acl [Kaspersky Lab]1
Backdoor.Win32.Bifrose.bjny [Kaspersky Lab]1
Backdoor.Win32.Bifrose.cck [Kaspersky Lab]1
Backdoor.Win32.Bifrose.ewk [Kaspersky Lab]1
Backdoor.Win32.Bifrose.gx [Kaspersky Lab]1
Backdoor.Win32.Bifrose.rt [Kaspersky Lab]1
Backdoor.Win32.Bifrose.vy [Kaspersky Lab]1
Backdoor:Win32/Bifrose.FL [Microsoft]1
Generic BackDoor.ac [McAfee]1
Mal/Bifrose-F [Sophos]1
Mal/Inet-Fam [Sophos]1
Troj/Dropper-SX [Sophos]1
Trojan-Spy.Win32.Agent.CA [Ikarus]1
Win-Trojan/Bifrose.37549 [AhnLab]1
Win-Trojan/Bifrose.38058.C [AhnLab]1

BKDR_BIFROSE.AQJ [Trend Micro] has the following possible country of origin:
OriginNumber of Incidents
Sweden29

BKDR_BIFROSE.AQJ [Trend Micro] is known to be created as:
%System%\adsl.exe
%System%\av.exe
%System%\ctfmom.exe
%System%\dll.exe
%System%\explorer.exe
%System%\ginroot32.exe
%System%\maradona.exe
%System%\meq.exe
%System%\msn.exe
%System%\msnm.exe
%System%\nvnsc32.exe
%System%\server.exe
%System%\startkey.exe
%System%\update.exe
%System%\wincmd.exe
%Temp%\01a2f30c.exe
%Temp%\66047a88.exe
%Temp%\ca1062e3.exe
%Temp%\dsdd.exe
%Temp%\temp.exe
%Windir%\cccc.exe
%Windir%\ctfmon.exe
%Windir%\explorers.exe
%Windir%\msn.exe
%Windir%\server.exe
%Windir%\systems.exe
c:\adsl.exe
c:\server.exe
c:\svchost.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.