Avira Virus Lab

‹ Back

BDS/Graybird.10386257

Summary
  • Name
    BDS/Graybird.10386257
  • Date discovered
    Oct 1, 2015
  • VDF version
    7.11.222.250 (2015-04-08 07:16)
Description

The term 'BDS' denotes a backdoor server program. Backdoor server programs are used to spy out, modify, or delete data.

  • VDF
    7.11.222.250 (2015-04-08 07:16)
  • Aliases
    Avast: Win32:Malware-gen
    Dr. Web: BackDoor.Graybird
  • Files
    The following files are created:
    • %TEMPDIR%\GLC80.tmp
    • %TEMPDIR%\GLJ81.tmp
    • %TEMPDIR%\GLB82.tmp
    • %TEMPDIR%\GLG83.tmp
    • %TEMPDIR%\GLF84.tmp
    • %TEMPDIR%\~GLH0000.TMP
    • %TEMPDIR%\GLF85.tmp
    • %TEMPDIR%\~GLH0001.TMP
    • %SYSDIR%\GLBSINST.%$D
    The following files are deleted:
    • %TEMPDIR%\GLB82.tmp
    • %TEMPDIR%\GLF84.tmp
    • %TEMPDIR%\GLF85.tmp
    • %SYSDIR%\GLBSINST.%$D
    The following files are renamed:
    • %TEMPDIR%\~GLH0000.TMP
    • %TEMPDIR%\~GLH0001.TMP