Trojan.Win32.Cosmu.aigh is a dangerous computer Trojan horse. Using Trojan.Win32.Cosmu.aigh, a hacker may gain access to an infected computer where stored data may be put at risk of being stolen. A system infected with Trojan.Win32.Cosmu.aigh becomes vulnerable to remote attacks and could initiate a connection without any indication to the computer user. It is essential that Trojan.Win32.Cosmu.aigh be detected and automatically removed using an updated antispyware application….
Trojans
Trojan Generic29.ajge
Trojan Generic29.ajge is a dangerous Trojan horse infection that is commonly loaded on vulnerable PCs. Through Trojan Generic29.ajge the master boot record could be manipulated causing the system to perform abnormally. The use of Trojan Generic29.ajge may be take advantage of by remote hackers where they could potentially gain access to an infected computer. Data stored on a system infected with Trojan Generic29.ajge is at risk. Removal of Trojan Generic29.ajge will ensure a system is not put a risk of having stored data stolen….
TROJ_NAIKON.A
TROJ_NAIKON.A is a Trojan that is involved in a targeted attack campaign, which conceals behind SSL communication. Using encrypted communication such as ‘Secure Sockets Layers (SSL)’ together with the reasonable use of latest news item as a social engineering lure is the perfect combination to access and stay in an affected entity’s infrastructure. TROJ_MDROP.ATP proliferates via a bogus email connected with the Boston Marathon bombing. TROJ_NAIKON.A connects over SSL (port 443) to the URL ‘gnorthpoint.eicp.net’, which earlier resolved to 220.165.218.39 but now resolves to 50.117.115.89. The certificate is filled with fake information carrying the identity ‘donc’ and the organization ‘abc’. Although TROJ_NAIKON.A connects over SSL which encrypts the traffic, the plain text traffic incorporates an easy to notice User-Agent….
TROJ_MDROP.ATP
TROJ_MDROP.ATP is a Trojan that is a component of a targeted attack campaign, which conceals behind SSL communication. Using encrypted communication like ‘Secure Sockets Layers (SSL)’ along with the reasonable use of recent news item as a social engineering lure is the perfect combination to enter and stay in an attacked entity’s infrastructure. TROJ_MDROP.ATP proliferates via a spam email linked to the Boston Marathon bombing, which carries an infected attachment called ‘The Prayer.DOC’, pressing affected computer users to pray for the victims of the Boston Marathon. The infectious attachment is recognized as TROJ_MDROP.ATP, which exploits the vulnerability in CVE-2012-0158 to distribute the malevolent executable file named ‘iExplorer.exe’ onto the corrupted PC….
Trojan.Dropper.PWS
Trojan.Dropper.PWS is a Trojan that is used by attackers to steal Bitcoins. Trojan.Dropper.PWS arrives in a packaged dropper, which involves three different files: ‘npf.sys’, ‘wpcap.dll’ and ‘packet.dll’, three legitimate libraries, which are incorporated in the WinPcap program that is published by CACE Technologies. They are used to control network traffic and to grab FTP credentials (over TCP 21) or emails (SMTP , POP3 on TCP 25, 110) should they get sent in the clear. Trojan.Dropper.PWS injects itself to the startup key. Aside from stealing Bitcoin wallets, Trojan.Dropper.PWS extracts passwords from FTP clients such as WinFTP, WS_FTP, TurboFTP, Total Commander, SmartFTP, FTP Surfer, LeapFTP, FTPRush, FTP Explorer, Frigate3 FTP, UltraFXP, Classic FTP, FFFTP, CuteFTP, SecureFX, Core FTP, FTP Control, SoftX TurboFTP, FlashFXP, FTP Client, BulletProof FTP Client, and other….
Troj/FakeAV-GNL
Troj/FakeAV-GNL is a Trojan that is included in a spam malware attack. Troj/FakeAV-GNL spreads via malevolent fax and email messages. The fake email that delivers Troj/FakeAV-GNL claims to come from an online fax service called ‘DuoFax’. However, the sender’s email address has been falsified, and ‘DuoFax’ is not related to these messages. Attached to the bogus email messages is a file called ‘fax[random number].zip’, which itself carries an executable file called ‘fax01001_DIGIT[5]_.exe’. The .EXE file is found as Troj/FakeAV-GNL. If an attacked computer user opens an infected file, a PC is contaminated with Troj/FakeAV-GNL….
Trojan.Win32.agent.AXCS
Trojan.Win32.agent.AXCS is a Trojan that is distributed through the network and targets computer users while they surf the Internet inappropriately. Once Trojan.Win32.agent.AXCS is installed, it modifies system files and registry entries to exploit vulnerabilities of the vulnerable PC. Trojan.Win32.agent.AXCS slows down the affected PC’s performance and leads to loss of Internet connection. Trojan.Win32.agent.AXCS also leads to data loss and PC freezing problems. Trojan.Win32.agent.AXCS restricts PC users fro musing security programs to bypass the detection and extermination from the targeted computer system….
Infostealer.Nemim
Infostealer.Nemim is a Trojan that steals information from the corrupted PC. Once run, Infostealer.Nemim grabs the particular information from the targeted computer system, which involve computer name, user name, Windows version and service pack details, network card information, CPU information and USB information. Infostealer.Nemim then transmits the stolen information to the particular locations. Infostealer.Nemim may also connect to the particular URLs….
Trojan.Spamats
Trojan.Spamats is a Trojan that opens a back door and sends spam email messages from the corrupted PC. Once run, Trojan.Spamats creates the malevolent files. Trojan.Spamats creates the registry entry so that it can load automatically whenever you start Windows. Trojan.Spamats then opens a back door on the targeted PC and drops files from the specific web addresses.
Trojan.Spamats may then send spam messages from the infected computer system….
Trojan-Banker.Win32.BifitAgent
Trojan-Banker.Win32.BifitAgent is a banker Trojan that is generated to affect computer users of online banking program made by a company named ‘BIFIT’. Trojan-Banker.Win32.BifitAgent executes two basic modules on the victimized PC user’s computer, an executable file and a JAVA archive. Throughout installation, Trojan-Banker.Win32.BifitAgent creates the folder, to which it copies the malevolent files. In the course of its functioning, Trojan-Banker.Win32.BifitAgent also creates several named pipes. Thus, throughout the functioning of the Trojan-Banker.Win32.BifitAgent, the basic executable module, which is responsible for communicating with the command server, works simultaneously with the malevolent JAR files, permitting the cybercriminals to immediately alter any code running under JAVA while banking transactions are being executed. The attackers might ’sell’ compromised PCs on which…
Follow ESG
Members Section
Popular Malware
- System Care Antivirus
- Microsoft Security Essentials Alert Virus
- Home Malware Cleaner
- ULocker Ransomware
- Windows Fix
- Cheshire Police Authority Ransomware
- Internet Security
- Vista Antispyware 2013
- Win 7 Antivirus Plus 2013
- Vista Antivirus 2013
- Windows XP Fix
- Total Anti Malware Protection
- Windows Malware Firewall
- Windows Antivirus Care
- Decrypt Protect Ransomware
- XP Antispyware 2013
- 'You Have Been Blocked from Our Website' Virus
- File Restore
- XP Antivirus 2013
- File Recovery
- Smart Data Recovery
- System Protection
- Microsoft Antivirus 2013
- Best Virus Protection
- Win 8 Antivirus 2013
- PC Clean Pro
- Registry Cleaner Pro
- System Protector
- Rikspolisstyrelsen Ransomware
- AntiTroy
- Data Recovery
- FBI MoneyPak Ransomware
- You Have 48 Hours to Pay the Fine Ransomware
- Microsoft Security Essentials Alert Virus
- Windows Genuine Advantage Ransomware
- FBI Ultimate Game Card Virus
- Reveton
- Google Redirect Virus
Popular Trojans
Recent Malware
Recommended Products
Featured Videos
![]() ![]() | How to Detect and Remove Win 7... Duration: 0:45 |
![]() ![]() | How to Find and Remove System Fix Duration: 0:45 |
![]() ![]() | What is Win 7 Anti-Virus 2012? Duration: 0:45 |




