Threat Database Ransomware Cancer Trollware

Cancer Trollware

By GoldSparrow in Ransomware

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 39
First Seen: February 7, 2017
Last Seen: June 16, 2022
OS(es) Affected: Windows

Computer security researchers announced the discovery of the Cancer Trollware, which is a program packed as 'cancer.exe' and released to users as a fake update for browsers like Google Chrome, Internet Explorer and Mozilla Firefox. Cancer is classified as Trollware a.k.a. Crapware, which is a program that performs mischievous activities and can be very annoying. The Cancer Trollware is small in size, the executable is around 3 MB, and the user is presented with a UAC (Universal Account Control) prompt when it is loaded into the memory. Additionally, Cancer.exe is known to use icons associated with security tools and try to trick users into thinking that it may be a safe program. When you run the Cancer Trollware, it will change the default icon set for your files and restrict your access to the data. Users affected by the Cancer Trollware reported that they could not open files on the drive and their windows flashed and moved, which prevented them from accessing programs on their PCs properly. Windows may show the following dialog box when you attempt to open a file while the Cancer Trollware is running:

'The operation has been canceled due to the restrictions in effect on this computer. Please, contact your system administrator.'

One of the main features of the Cancer Trollware is that it can resize, move, minimize, and flash program windows you have opened or try to open. If that was not enough, an annoying melody is played in the background and images of a boy that has a mischievous grin on his face pop-ups on your screen. The author of the Cancer Trollware enabled his product to gain boot persistence by making modifications to the Registry. Booting into Safe Mode is possible, but reports suggest the Cancer Trollware can run in Safe Mode as well. Experts agree that the Cancer Trollware may not be harmful, but it is very hard to remove and hinder your work, ruin your plans for gaming with your friends and prolong the removal process. PC users may want to seek the help of a credible anti-malware utility and may need computer support from experienced technicians.

Trending

Most Viewed

Loading...