Bomka details

  • Description

    Bomka is a trojan that installs several parasites on the compromised computer. These parasites are backdoors and some dangerous trojans. Bomka uses a rootkit to hide malicious files and harmful registry entries. The pest may arrive as an attachment to spam e-mail messages. Bomka may work as a backdoor providing the intruder with unauthorized access to the infected system.

  • Exe

    icqchk.exeietool.exeiewatch.exekpsf.exevideocodec3_05b_[X].exe

  • Registry

    HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunIEAgent update checkHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRununappHKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesicqupdHKEY_CLASSES_ROOTKaboom.IEagentHKEY_CLASSES_ROOTKaboom.IEagent.1HKEY_CLASSES_ROOTWatcher.GoogleTrackerHKEY_CLASSES_ROOTWatcher.GoogleTracker.1HKEY_CLASSES_ROOTCLSID{4BC9A7AC-2329-49D0-B07F-5FE484029DC2HKEY_CLASSES_ROOTCLSID{A853979C-2A9A-4ACB-8975-5740A7E26CB4}HKEY_CLASSES_ROOTCLSID{CC56A1F3-9B83-45FF-8CB6-D58959492F0F}HKEY_CLASSES_ROOTInterface{88B67E52-A8D4-44AF-A199-DEE96469B7AF}HKEY_CLASSES_ROOTInterface{BAA919E5-FD47-4D7E-95AB-5B2CDA493358}HKEY_CLASSES_ROOTInterface{D861BD5E-E1E7-4E5E-AB15-CB347FBDBC6D}HKEY_CLASSES_ROOTTypeLib{023E6659-1A0A-4724-9273-66EA06A82C98}HKEY_CLASSES_ROOTTypeLib{B73EF4A8-B8B1-4683-8D21-AA1C1A46CAD7}HKEY_CLASSES_ROOTTypeLib{E0C0FC76-CC5E-46E2-B77A-4C2ADD965B9F}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{4BC9A7AC-2329-49D0-B07F-5FE484029DC2}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{A853979C-2A9A-4ACB-8975-5740A7E26CB4}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{CC56A1F3-9B83-45FF-8CB6-D58959492F0F}HKEY_LOCAL_MACHINESOFTWAREMicrosoftIEAgentHKEY_LOCAL_MACHINESOFTWAREMicrosoftSUW