Threat Database Trojans PLAY_MP3 Trojan

PLAY_MP3 Trojan

By SpideyMan in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 6
First Seen: September 22, 2011
Last Seen: October 23, 2020
OS(es) Affected: Windows

PLAY_MP3 Trojan is a mischievous Trojan infection executes numerous harmful activities on the corrupted PC system. PLAY_MP3 Trojan can create some malicious files and delete existing system files. PLAY_MP3 Trojan can also infect all executable files detected on hard disks and in shared directories. PLAY_MP3 is able to record its victim's personal information and forward it to remote attackers. PLAY_MP3 can steal IP addresses in the same network and then initiate an attack. Remove PLAY_MP3 Trojan from the compromised machine as soon as possible.

File System Details

PLAY_MP3 Trojan may create the following file(s):
# File Name Detections
1. %Temp%\.dll
2. %LocalAppData%\.dll of PLAY_MP3 Trojan
3. C:\Documents and Settings\
4. c:\windows\system32\[RANDOM NAME].exe of PLAY_MP3 Trojan

Registry Details

PLAY_MP3 Trojan may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Hidden" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = 'no'
HKEY_CURRENT_USER\ Software\ Microsoft \Windows\ CurrentVersion\Explorer\ShellFolders Startup="C:\windows/start menu/programs\startup
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\ malicious key of PLAY_MP3 Trojan
HKEY_CURRENT_USER \Software \Microsoft\ Windows\ CurrentVersion\ Policies\ Explorer\Run\ malicious key of PLAY_MP3 Trojan

Trending

Most Viewed

Loading...