Troj/Bckdr-RBF is a Trojan for the Windows platform.
When first installed, Troj/Bckdr-RBF creates a mutex and window class called "liuhong-061120". Troj/Bckdr-RBF listens on port 7777 for remote instructions, and may for example upload or download data or files. Troj/Bckdr-RBF may set the following registry entry to run a downloaded executable automatically on startup:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
svchost
Troj/Bckdr-RBF may also run a file specified in the following registry entry:
HKLM\SOFTWARE\UsbCharger\Parameters
Name