Home / malware Backdoor:Win32/Kriskynote.B
First posted on 08 May 2019.
Source: MicrosoftAliases :
There are no other names known for Backdoor:Win32/Kriskynote.B.
Explanation :
Installation This threat can create files on your PC, including:
tuserex.dll
tuserex.dat Payload
Allows backdoor access and control
This threat can give a malicious hacker access and control of your PC. They can then perform a number of different actions, including:
Deleting files Downloading and running files Logging your keystrokes or stealing your sensitive data Modifying your system settings Running or stopping applications Spreading malware to other PCs Uploading files
Connects to a remote host
We have seen this threat connect to a remote host, including: gs4.playdr2.tw using port 80 Malware can connect to a remote host to do any of the following:Check for an Internet connectionDownload and run files (including updates or other malware)Report a new infection to its authorReceive configuration or other dataReceive instructions from a malicious hackerSearch for your PC locationUpload information taken from your PCValidate a digital certificate This malware description was published using automated analysis of file SHA1 47c6a80dfa4eb8e1bab9f5a06842c84fd4cb9bd6.Last update 08 May 2019