Backdoor.Orcus

ThreatDown is now the name of the Malwarebytes line of business products. References to Malwarebytes below reflect the amazing technology used to first identify the threat.

Short bio

Backdoor.Orcus is a Remote Access Trojan (RAT) that is being sold on underground forums.

Type of infection

Backdoor.Orcus offers a lot of configurability options. Installing a keyloggeris one of these options.

Malicious behavior

Backdoor.Orcus often creates Scheduled Tasks to gain persistence. The Scheduled Tasks have names like Orcus Respawner.jobor Orcus.job.

Protection

block Backdoor.Orcus

Malwarebytes blocks Backdoor.Orcus

Home remediation

Malwarebytes can removes Backdoor.Orcus without further user interaction.

  • Please download Malwarebytesto your desktop.
  • Double-click MBSetup.exeand follow the prompts to install the program.
  • When your Malwarebytes for Windowsinstallation completes, the program opens to the Welcome to Malwarebytes screen.
  • Click on the Get started button.
  • Click Scan to start a Threat Scan.
  • Click Quarantineto remove the found threats.
  • Reboot the system if prompted to complete the removal process.

Users of affected computers should take precautions against the consequences of stolen information.