Associated Malware Groups
The filename is associated with the malware group:
File Behavior
BPRMYES.EXE has been seen to perform the following behavior:
- Writes to another Process's Virtual Memory (Process Hijacking)
- Modifies Windows Initialization And System Settings Used On Start up
- This process creates other processes on disk
- This Process Deletes Other Processes From Disk
- Executes a Process
- Creates a new Background Service on the machine
- Changes the PC's date or time settings
- The Process is packed and/or encrypted using a software packing process
- Found on infected systems and resists interrogation by security products
- Can communicate with other computer systems using HTTP protocols
- Executes Processes stored in Temporary Folders
- Modifies Windows Security Policies to restrict/expand User Privileges on the machine
- Automatically changes your firewall settings to allow itself or other programs to communicate over the internet
- Adds products to the system registry
- Registers a Dynamic Link Library File
BPRMYES.EXE has been the subject of the following behavior:
- Has code inserted into its Virtual Memory space by other programs
- Created as a process on disk
- Executed as a Process
- Terminated as a Process
- Created as a new Background Service on the machine
- Deleted as a process from disk
Country Of Origin
The filename BPRMYES.EXE was first seen on Nov 2 2009 in the following geographical regions of the Prevx community:
- The EUROPEAN UNION on Nov 2 2009
- FRANCE on Nov 3 2009
- VIET NAM on Nov 3 2009
- The UNITED STATES on Nov 4 2009
- ISRAEL on Nov 12 2009
- INDIA on Nov 12 2009
File Name Aliases
BPRMYES.EXE can also use the following file names:
- DATA.TMP
- OQBKDDRR.EXE
- ORAH.EXE
- MSSRV32.EXE
- ASVKAJ.EXE
- OKEISH.EXE
- OTYFTND.EXE
- SERVICE.EXE
- SERVICE .EXE
- LGUJPLA.EXE
- IRCB0003.EXE
- KQTFP.EXE
- STBTFXKH.EXE
- A.TMP
- 2F.TMP
- E2.TMP
- 6B.TMP
- 87339661.TMP
Filesizes
The following file size has been seen:
- 41,472 bytes
- 62,464 bytes
- 36,352 bytes
- 74,752 bytes
- 87,040 bytes
- 26,624 bytes
- 47,616 bytes
- 25,600 bytes
- 160,768 bytes
File Type
The filename BPRMYES.EXE refers to many versions of an executable program.
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.