Threat Database Trojans Trojan.Droidpak

Trojan.Droidpak

By LoneStar in Trojans

Trojan.Droidpak is a Trojan that may drop an infected APK file on to the affected PC and install it on any connected Android devices. Once run, Trojan.Droidpak downloads the potentially infected file. Trojan.Droidpak also creates the folder. Trojan.Droidpak then creates a service with the certain characteristics. Trojan.Droidpak then creates the registry subkey to register the above service. Trojan.Droidpak connects to the particular remote location to drop a configuration file. Trojan.Droidpak then uses a domain name incorporated into the configuration file to drop a file and save it to the particular location. Trojan.Scazip may also download applications, if needed, such as Android Debug Bridge in order to install the APK on any Android devices connected to the corrupted PC.

File System Details

Trojan.Droidpak may create the following file(s):
# File Name Detections
1. %Windir%\CrainingApkConfig\AV-cdk.apk
2. %System%\flashmx32.xtl

Registry Details

Trojan.Droidpak may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\flashmx

URLs

Trojan.Droidpak may call the following URLs:

Xia2.dyndns-web.com/iconf[REMOVED]

Trending

Most Viewed

Loading...