Home Malware Programs Worms Backdoor.Win32.Bredolab.amm

Backdoor.Win32.Bredolab.amm

Posted: November 6, 2009

Threat Metric

Threat Level: 5/10
Infected PCs: 6,469
First Seen: July 24, 2009
Last Seen: May 24, 2022
OS(es) Affected: Windows

Backdoor.Win32.Bredolab.amm is a trojan horse that can secretly execute malicious files while going undetected from the computer user. Backdoor.Win32.Bredolab.amm can allow an outside attacker access to the infected system where it can be controlled and instructed to perform malicious actions over the internet. Backdoor.Win32.Bredolab.amm should be detected and safely removed with a spyware detection tool.

Aliases

Win-Trojan/Injecter.17920.ES [AhnLab-V3]Trojan.Dropper.Koobface.AEJ [McAfee-GW-Edition]DR/Koobface.AEJ [AntiVir]Trojan.DownLoad.40118 [DrWeb]TrojWare.Win32.TrojanDownloader.Injecter.ddn0 [Comodo]Worm.Koobface-125 [ClamAV]W32/Downldr2.FZRM [F-Prot]TrojanDownloader.Injecter.ddn [CAT-QuickHeal]Artemis!10377EFE296F [McAfee+Artemis]SHeur2.AOYT [AVG]Trojan-Downloader.Win32.Injecter.ddn [F-Secure]Win32/Koobface.NCD [NOD32]Worm.Koobface [Ikarus]Win32.HLLW.Facebook.755 [DrWeb]Worm.Generic.250945 [BitDefender]
More aliases (3069)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Backdoor.Win32.Bredolab.amm may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

* See Free Trial offer below. EULA and Privacy/Cookie Policy.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\swe.dll File name: swe.dll
Size: 64.51 KB (64512 bytes)
MD5: b008856fa107fb14dbfb01ac4bc7ff0a
Detection count: 1,426
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: November 8, 2010
%WINDIR%\system32\drivers\PDRV.sys File name: PDRV.sys
Size: 39.29 KB (39296 bytes)
MD5: 07e86b47b742f78855ea14b68f4b6fea
Detection count: 1,183
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: September 7, 2010
%WINDIR%\system32\mas.dll File name: mas.dll
Size: 49.15 KB (49152 bytes)
MD5: 0ca69d528f881daf9553dd969b16a276
Detection count: 1,091
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: November 9, 2010
%WINDIR%\system32\drivers\mas.sys File name: mas.sys
Size: 28.03 KB (28032 bytes)
MD5: 2428166634a56621d224f2f8883ebb0d
Detection count: 1,031
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: November 9, 2010
%APPDATA%\SystemProc\lsass.exe File name: lsass.exe
Size: 79.36 KB (79360 bytes)
MD5: 714fdafb2028b4c06ce8cef5691b081f
Detection count: 162
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\SystemProc
Group: Malware file
Last Updated: September 14, 2010
bill106.exe File name: bill106.exe
Size: 72.7 KB (72704 bytes)
MD5: 73dd048f57580e0ea650011118c6d5bf
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 15, 2010
ndisoko.sys File name: ndisoko.sys
Size: 32.76 KB (32768 bytes)
MD5: 3ac671a10e63dfe98afc7dbfb4ddd600
Detection count: 91
File type: System file
Mime Type: unknown/sys
Group: Malware file
Last Updated: April 15, 2010
%windir%\system32\fio32.dll File name: fio32.dll
Size: 50.68 KB (50688 bytes)
MD5: c1448afa4012e692b85c2755a112c33c
Detection count: 90
File type: Dynamic link library
Mime Type: unknown/dll
Path: %windir%\system32
Group: Malware file
Last Updated: September 15, 2010
mrxoko.sys File name: mrxoko.sys
Size: 32.76 KB (32768 bytes)
MD5: c132f7fcc83f9cc976f0529e67e0bd0c
Detection count: 90
File type: System file
Mime Type: unknown/sys
Group: Malware file
Last Updated: April 15, 2010
bill108.exe File name: bill108.exe
Size: 74.75 KB (74752 bytes)
MD5: 0213a471f90e172ed93f2cfd818ab101
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 27, 2010
bill109.exe File name: bill109.exe
Size: 72.7 KB (72704 bytes)
MD5: da5bbe0812987119fdcb282fe08c53b2
Detection count: 85
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: May 18, 2010
imapioko.sys File name: imapioko.sys
Size: 33.28 KB (33280 bytes)
MD5: 68e8dc5dab5ab3f7b99ccade1ab8e7c6
Detection count: 84
File type: System file
Mime Type: unknown/sys
Group: Malware file
Last Updated: April 1, 2010
bill103.exe File name: bill103.exe
Size: 67.07 KB (67072 bytes)
MD5: 0dcd44f83baa0d49300dbb8d6e07657b
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 1, 2010
bill104.exe File name: bill104.exe
Size: 65.53 KB (65536 bytes)
MD5: 135b81301b1b28702683de9c277dc8e5
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 1, 2010
ld12.exe File name: ld12.exe
Size: 40.96 KB (40960 bytes)
MD5: c61c7bc8dbd7cb4c9ab85788a53bfbf3
Detection count: 53
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 30, 2010
ld15.exe File name: ld15.exe
Size: 41.98 KB (41984 bytes)
MD5: d2ecdcd9e9af36f9c7de0e66ab210da0
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 30, 2010
dl1.exe File name: dl1.exe
Size: 324.09 KB (324096 bytes)
MD5: e9d1edceed62b10b8324d2ae46f8bc6f
Detection count: 51
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 30, 2010
freddy63.exe File name: freddy63.exe
Size: 73.72 KB (73728 bytes)
MD5: c75143ef25715f8bee5e0ea533b5abbc
Detection count: 50
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 30, 2010
%WINDIR%\system32\certoko.dll File name: certoko.dll
Size: 128 KB (128000 bytes)
MD5: 9392b9eaab4b07b1b1696f350caf7397
Detection count: 42
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: October 28, 2010
bill112.exe File name: bill112.exe
Size: 76.28 KB (76288 bytes)
MD5: b3be5e20e18f3c28c56a902b9e13a88c
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 29, 2010
%PROGRAMFILES%\webserver\webserver.exe File name: webserver.exe
Size: 14.84 KB (14848 bytes)
MD5: 989db2f4fcda61a6fea51be24459c2b4
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\webserver
Group: Malware file
Last Updated: October 28, 2010
%WINDIR%\system\svchost.exe File name: svchost.exe
Size: 40.44 KB (40448 bytes)
MD5: 55d39b196e1ac496a355e9bc16de3ba1
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system
Group: Malware file
Last Updated: November 2, 2010

More files

Registry Modifications

The following newly produced Registry Values are:

File name without pathld14.exeRun keysCaptcha7
Loading...
Spywareremove.com uses cookies to provide you with a better browsing experience and analyze how users navigate and utilize the Site. By using this Site or clicking on "OK", you consent to the use of cookies. Learn more.