Threat Search: 

ThreatExpert's Statistics for Constructor.Win32.Bifrose.j [Kaspersky Lab]:

Constructor.Win32.Bifrose.j [Kaspersky Lab] is also known as:
Threat AliasNumber of Incidents
Backdoor.Bifrose [Symantec]1,037
Constructor/Bifrose.1466368 [AhnLab]646
Mal/Bifrose-S [Sophos]538
Virus.Win32.Bifrose [Ikarus]538
Backdoor.Win32.Bifrose [Ikarus]519
BackDoor-CEP [McAfee]468
Constructor:Win32/Bifrose.A [Microsoft]448
Mal/Generic-A [Sophos]442
Backdoor.Bifrose!sd6 [PC Tools]402
Constructor.Bifrose!sd6 [PC Tools]367
Win-Trojan/Xema.variant [AhnLab]349
BackDoor-CEP.gen.au [McAfee]332
Backdoor:Win32/Bifrose.gen!B [Microsoft]152
Mal/Bifrose-S, Mal/Bifrose-S [Sophos]129
Backdoor:Win32/Bifrose [Microsoft]109
Constructor.generic!ct [PC Tools]92
Constructor/Bifrose.723456 [AhnLab]56
Mal/Generic-E, Mal/Bifrose-S [Sophos]49
Mal/Generic-E, Mal/Bifrose-S, Mal/Bifrose-S [Sophos]44
Mal/UnkPack-Fam [Sophos]43
Backdoor.Bifrose [PC Tools]37
Constructor.Win32.Bifrose.gy [Kaspersky Lab]24
Backdoor.Trojan [Symantec]22
Backdoor-CEP [McAfee]22
Backdoor.Trojan [PC Tools]15
Constructor.Win32.Bifrose [Ikarus]15
Cryp_PESpin [Trend Micro]14
Trojan-Spy.Win32.Banker.ark [Ikarus]11
Backdoor:Win32/Trenk!rts [Microsoft]7
Trojan-Dropper.Win32.VB.mwt [Kaspersky Lab]7
BackDoor-CEP!cg [McAfee]4
Constructor/Bifrose.617472 [AhnLab]4
New Malware.aq [McAfee]4
Virus.Win32.Bifrose.BN [Ikarus]4
Virus:Win32/Sality.G [Microsoft]4
Backdoor.Win32.Poison.pg [Kaspersky Lab]3
New Win32 [McAfee]3
Trojan.Agent.ECMZ [PC Tools]3
Trojan.Win32.Midgare.fcz [Kaspersky Lab]3
Trojan.Win32.Midgare.hhn [Kaspersky Lab]3
VirTool.Win32.DelfInject [Ikarus]3
Virus.Trojan.Win32.Midgare [Ikarus]3
Application.Ardamax_Keylogger [PC Tools]2
Backdoor.Bifrose!ct [PC Tools]2
Backdoor.Win32.Bifrose.fpb [Kaspersky Lab]2
Backdoor.Win32.Poison [Ikarus]2
Constructor/Bifrose.748032.B [AhnLab]2
Mal/Generic-E [Sophos]2
Mal/Sality-A [Sophos]2
PE_SALITY.EN [Trend Micro]2
Trojan.Midgare!sd6 [PC Tools]2
Trojan.StartPage [Ikarus]2
Trojan.Win32.Agent.bcn [Kaspersky Lab]2
Trojan.Win32.Midgare.ebu [Kaspersky Lab]2
Trojan-Dropper.Win32.Agent.amle [Kaspersky Lab]2
Virus.Trojan.Win32.Midgare.hhn [Ikarus]2
Virus.Win32.Agent.GZY [Ikarus]2
Virus:Win32/Sality.AM [Microsoft]2
W32.Sality.AE [Symantec]2
W32/Sality.gen [McAfee]2
Win-Trojan/Bifrose.743424.B [AhnLab]2
Win-Trojan/Buzus.98304.X [AhnLab]2
Backdoor.Darkmoon [PC Tools]1
Backdoor.Darkmoon [Symantec]1
Backdoor.Graybird [PC Tools]1
Backdoor.Graybird [Symantec]1
Backdoor.Sdbot [Symantec]1
Backdoor.Win32.Bifrose.apav [Kaspersky Lab]1
Backdoor.Win32.Bifrose.apbz [Kaspersky Lab]1
Backdoor.Win32.Bifrose.avah [Kaspersky Lab]1
Backdoor.Win32.Bifrose.bkns [Kaspersky Lab]1
Backdoor.Win32.Bifrose.tvk [Kaspersky Lab]1
Backdoor.Win32.Donbot.b [Kaspersky Lab]1
Backdoor.Win32.Poison.nea [Kaspersky Lab]1
Backdoor.Win32.Poison.num [Kaspersky Lab]1
Backdoor.Win32.Poison.sab [Kaspersky Lab]1
Backdoor.Win32.Poison.syr [Kaspersky Lab]1
Backdoor.Win32.Poison.ypa [Kaspersky Lab]1
Backdoor-CEP!a [McAfee]1
BackDoor-CEP!bo [McAfee]1
BackDoor-CEP!hi [McAfee]1
BackDoor-CEP!ic [McAfee]1
BackDoor-CEP!jn [McAfee]1
BackDoor-CEP!rm [McAfee]1
BackDoor-CEP!v [McAfee]1
Constructor/Bifrose.555008 [AhnLab]1
Constructor/Bifrose.583680 [AhnLab]1
Constructor/Bifrose.627712 [AhnLab]1
Constructor/Bifrose.672705 [AhnLab]1
Constructor/Bifrose.706048 [AhnLab]1
Constructor/Bifrose.996352 [AhnLab]1
Downloader [Symantec]1
Dropper/Malware.663040.C [AhnLab]1
Generic BackDoor!a [McAfee]1
Mal/Inet-Fam [Sophos]1
Mal/VB-AO, Mal/VB-AB [Sophos]1
Packed.Win32.PePatch.lc [Kaspersky Lab]1
Packed.Win32.Tdss.c [Kaspersky Lab]1
Packer.RLPack.D [Ikarus]1
Trojan Horse [Symantec]1

Constructor.Win32.Bifrose.j [Kaspersky Lab] has the following possible countries of origin:
OriginNumber of Incidents
Sweden657
Russian Federation18
France11
Saudi Arabia10
United Kingdom6
Croatia3
Germany2

Constructor.Win32.Bifrose.j [Kaspersky Lab] is known to be created as:
%LocalSettings%\tempbifrost.exe
%Profiles%\bifrost.exe
%Profiles%\final.exe
%Profiles%\saad\desktop\ns.exe
%ProgramFiles%\bifrost 1.2\data_file.exe
%ProgramFiles%\bifrost\bifrost.exe
%ProgramFiles%\bifrost1.3d_privat.exe
%ProgramFiles%\original\bifrost1.2d\bifrost1.2d.exe
%ProgramFiles%\windows\bifrost.exe
%System%\bifrost.exe
%System%\bifrost\bifrost.exe
%System%\bifrost-x0ne.exe
%System%\game_over.exe
%Temp%\1.exe
%Temp%\2.exe
%Temp%\bifrost 1.2.1d\bifrost.exe
%Temp%\bifrost final version 2010\biforst.exe
%Temp%\bifrost.exe
%Temp%\bifrost_1.2.1d\bifrost.exe
%Temp%\bifrost_dr-_x.exe
%Temp%\bifrost_hakatak.exe
%Temp%\bifrost1.2.d.exe
%Temp%\bifrost-dz.exe
%Temp%\bifrost-tryag\bifrost-tryag.exe
%Temp%\dx_hacker.exe
%Temp%\file1.exe
%Temp%\ixp000.tmp\bifrost.exe
%Temp%\ixp000.tmp\moonwalk.exe
%Temp%\ixp000.tmp\s1.exe
%Temp%\rarsfx0\2.exe
%Temp%\rarsfx0\bifrost.exe
%Temp%\s3od.exe
%Temp%\test1.exe
%Temp%\tmp1.exe
%Temp%\virus_pal.exe
%Temp%\wrjdrkudsx.exe
%Windir%\bifrost.exe
%Windir%\bifrost_dr-anakonda.exe
%Windir%\bifrost_zrika5.exe
%Windir%\temp\bifrost.exe
c:\bifrost.exe
c:\extracted\bifrost.exe
Notes:
  • %LocalSettings% is a variable that specifies the current user's local settings folder. By default, this is C:\Documents and Settings\[UserName]\Local Settings (Windows NT/2000/XP).
  • %Profiles% is a variable that refers to the file system directory containing user profile folders. A typical path is C:\Documents and Settings.
  • %ProgramFiles% is a variable that refers to the Program Files folder. A typical path is C:\Program Files.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.