Trojan.Tracur

By Domesticus in Trojans | 44 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
More... More

Trojan.Tracur Description

Trojan.Tracur is a malignant Trojan program that runs in the background enabling remote access to the targeted user’s computer and may also contact a remote server in order to download additional malware threats onto a victim’s computer without his/her knowledge. Trojan.Tracur conceals itself as a legitimate software application, such as a video codec, to mislead you into downloading it onto your computer system. Once Trojan.Tracur is installed on your PC, it may slow down your computer, change your system settings and modify your files. Remove Trojan.Tracur by using a reliable and powerful anti-virus program.

Type: Trojans

How Can You Detect Trojan.Tracur ?

Trojan.Tracur Removal Details

Trojan.Tracur has typically the following processes in memory:

  • C:ProgramDataWsmRes32.exe
  • C:ProgramDataiscsidsc32.exe
  • C:WindowsSystem32api-ms-win-core-localregistry-l1-1-032.exe
  • C:WindowsSysWOW64iscsium32.exe
  • c:programdataapi-ms-win-core-memory-l1-1-032.exe
  • C:UsersclehighAppDataRoamingSysWinlsass.exe
  • C:UsersclehighDesktopsetupQuickTime_Update_KB118012.exe
  • C:WindowsSystem32iTVData32.exe
  • c:programdatair50_qc32.exe
  • C:WindowsSysWOW64api-ms-win-core-localregistry-l1-1-032.exe
  • C:ProgramDataiTVData32.exe
  • C:WindowsSystem32iscsium32.exe
  • C:WindowsSysWOW64iTVData32.exe

Trojan.Tracur creates the following files in the system:

  • C:WindowsSystem32configsystemprofileAppDataRoamingF316.tmp
  • C:ProgramData1808284557c1
  • C:ProgramData1808284557c4
  • C:WindowsSystem32configsystemprofileAppDataRoamingD91F.tmp
  • C:WindowsSysWOW64configsystemprofileAppDataRoamingF316.tmp
  • C:ProgramData1808284557c3
  • C:WindowsSystem32GnuHashes.ini
  • C:WindowsSysWOW64configsystemprofileAppDataRoamingD91F.tmp
  • C:ProgramData1808284557c2

Trojan.Tracur creates the following registry entries:

  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{1915590a-ead8-83b5-faa2-70e93fa820cd}
  • HKEY_CLASSES_ROOTCLSID{b02f530b-5a61-653b-f6cd-967c79271e6a}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f1cf1665-b497-b3a3-d7a1-100f19163d22}
  • HKEY_CLASSES_ROOTCLSID{227276bb-4b9a-75da-3dca-66fb7219f22c}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{2909414b-5416-b9b4-ef70-b405692858ec}
  • HKEY_CLASSES_ROOTCLSID{3ecbb1e6-d40f-32ce-7cee-9daf87800363}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{4f704af0-bbf2-6cf7-c502-2131ec65acb1}
  • HKEY_CLASSES_ROOTCLSID{6e571a72-906e-d8f5-ae9e-a8683f651cf0}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9aa43ddf-8321-cbe8-e190-23377f4d6546}
  • HKEY_CLASSES_ROOTCLSID{a4b20b57-6288-c136-78ff-59afed22a8d4}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a5175f41-2409-89a9-cebf-620a8c054b5b}
  • HKEY_CLASSES_ROOTCLSID{b4a6f399-ccc6-f735-6ccd-9dcb16a2e0f3}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{bb742680-e27d-ca62-0d40-60c86c5ab13e}
  • HKEY_CLASSES_ROOTCLSID{d1c7d556-ad83-d463-33b0-5e19078bffd7}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f4b7da12-3e74-d531-2479-e3d7140276ce}
  • HKEY_CLASSES_ROOTCLSID{2a257ecc-739c-a456-466f-b5d31916a2a3}
  • HKEY_CLASSES_ROOTCLSID{6528e954-e5f3-1ef0-d267-46bd4d2f838d}
  • HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{671a 19dd-6141-e723-2f8e-fb842c5e7690}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6be07ae5-1e0a-45fb-379f-a219a2ea5a66}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{75730417-a7b1-fc72-cd7e-ac54f4bf0b0f}
  • HKEY_CLASSES_ROOTCLSID{8768e79f-2b38-c5ad-9af2-d3234bb93030}
  • HKEY_CLASSES_ROOTCLSID{984db96d-4451-3a41-2ea9-6516013bcfbc}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9dc368e2-1a39-7cc8-1c36-6bf2d8e1097d}
  • HKEY_CLASSES_ROOTCLSID{ae47905e-d085-43ae-a9f5-c4b47f3be4be}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b8885e08-7791-0360-73cc-b83e3d3b4065}
  • HKEY_CLASSES_ROOTCLSID{d3a50f56-7ce9-f132-801e-51c7a9e18ebd}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{de4710dc-6b55-902c-5f2d-83ee5656210f}
  • HKEY_CLASSES_ROOTCLSID{e36b19ed-9563-9d9d-8588-ff08cd500617}
  • HKEY_CLASSES_ROOTCLSID{eab687bc-04b6-b738-98cd-d2461418f512}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f1077ebc-c0d2-42f6-c66f-850378bea7ad}
  • HKEY_CLASSES_ROOTCLSID{f5ae2ef1-bb7e-4aad-c742-27e6114b9d18}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f5ea6a42-d6e4-45ef-1131-752c31963c3a}
  • HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{0 1d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunrthdbpl
  • HKEY_CLASSES_ROOTCLSID{1915590a-ead8-83b5-faa2-70e93fa820cd}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a6e91e3c-6fc0-df9a-6f90-ec10acaa7051}
  • HKEY_CLASSES_ROOTCLSID{f1cf1665-b497-b3a3-d7a1-100f19163d22}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{09794aad-bd6c-4e4b-b0f7-cc81335a2145}
  • HKEY_CLASSES_ROOTCLSID{2909414b-5416-b9b4-ef70-b405692858ec}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{3bac86e3-3df7-81ee-4147-55f42eed5f2d}
  • HKEY_CLASSES_ROOTCLSID{4f704af0-bbf2-6cf7-c502-2131ec65acb1}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{5ab42b4d-a790-80a9-5303-e90a1ac2b7bd}
  • HKEY_CLASSES_ROOTCLSID{9aa43ddf-8321-cbe8-e190-23377f4d6546}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a0ab2b8f-a516-9e55-680e-3dbad3cc4329}
  • HKEY_CLASSES_ROOTCLSID{a5175f41-2409-89a9-cebf-620a8c054b5b}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{ab28655b-396d-92ce-6e4f-7cf925a74087}
  • HKEY_CLASSES_ROOTCLSID{bb742680-e27d-ca62-0d40-60c86c5ab13e}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{c7819f87-c1e1-4fc2-ad73-b3ad3b0e51be}
  • HKEY_CLASSES_ROOTCLSID{f4b7da12-3e74-d531-2479-e3d7140276ce}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{fa9df4db-ca4c-15e1-81d8-f17ad0ad6b5f}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{2a257ecc-739c-a456-466f-b5d31916a2a3}
  • HKEY_CLASSES_ROOTCLSID{671a19dd-6141-e723-2f8e-fb842c5e7690}
  • HKEY_CLASSES_ROOTCLSID{6be07ae5-1e0a-45fb-379f-a219a2ea5a66}
  • HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{7573 0417-a7b1-fc72-cd7e-ac54f4bf0b0f}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{760261e9-c6c5-4627-d749-b3abcf2beaa4}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{8768e79f-2b38-c5ad-9af2-d3234bb93030}
  • HKEY_CLASSES_ROOTCLSID{9dc368e2-1a39-7cc8-1c36-6bf2d8e1097d}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9e53a81d-6546-0daf-b527-809955bbac9f}
  • HKEY_CLASSES_ROOTCLSID{b8885e08-7791-0360-73cc-b83e3d3b4065}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{bb8b1c4a-bd21-e672-41b9-aafb0c774dbc}
  • HKEY_CLASSES_ROOTCLSID{de4710dc-6b55-902c-5f2d-83ee5656210f}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{e2289070-4be2-5d07-6b02-2b51af1880ca}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{e36b19ed-9563-9d9d-8588-ff08cd500617}
  • HKEY_CLASSES_ROOTCLSID{f1077ebc-c0d2-42f6-c66f-850378bea7ad}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f4bcdab2-b9e4-cbc7-21ae-4dc7c43d7223}
  • HKEY_CLASSES_ROOTCLSID{f5ea6a42-d6e4-45ef-1131-752c31963c3a}
  • HKEY_CLASSES_ROOTCLSID{01d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{01d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
  • HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesvss32
  • HKEY_CLASSES_ROOTCLSID{a6e91e3c-6fc0-df9a-6f90-ec10acaa7051}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b02f530b-5a61-653b-f6cd-967c79271e6a}
  • HKEY_CLASSES_ROOTCLSID{09794aad-bd6c-4e4b-b0f7-cc81335a2145}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{227276bb-4b9a-75da-3dca-66fb7219f22c}
  • HKEY_CLASSES_ROOTCLSID{3bac86e3-3df7-81ee-4147-55f42eed5f2d}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{3ecbb1e6-d40f-32ce-7cee-9daf87800363}
  • HKEY_CLASSES_ROOTCLSID{5ab42b4d-a790-80a9-5303-e90a1ac2b7bd}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6e571a72-906e-d8f5-ae9e-a8683f651cf0}
  • HKEY_CLASSES_ROOTCLSID{a0ab2b8f-a516-9e55-680e-3dbad3cc4329}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a4b20b57-6288-c136-78ff-59afed22a8d4}
  • HKEY_CLASSES_ROOTCLSID{ab28655b-396d-92ce-6e4f-7cf925a74087}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b4a6f399-ccc6-f735-6ccd-9dcb16a2e0f3}
  • HKEY_CLASSES_ROOTCLSID{c7819f87-c1e1-4fc2-ad73-b3ad3b0e51be}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{d1c7d556-ad83-d463-33b0-5e19078bffd7}
  • HKEY_CLASSES_ROOTCLSID{fa9df4db-ca4c-15e1-81d8-f17ad0ad6b5f}
  • HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{2a25 7ecc-739c-a456-466f-b5d31916a2a3}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6528e954-e5f3-1ef0-d267-46bd4d2f838d}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{671a19dd-6141-e723-2f8e-fb842c5e7690}
  • HKEY_CLASSES_ROOTCLSID{75730417-a7b1-fc72-cd7e-ac54f4bf0b0f}
  • HKEY_CLASSES_ROOTCLSID{760261e9-c6c5-4627-d749-b3abcf2beaa4}
  • HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{8768 e79f-2b38-c5ad-9af2-d3234bb93030}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{984db96d-4451-3a41-2ea9-6516013bcfbc}
  • HKEY_CLASSES_ROOTCLSID{9e53a81d-6546-0daf-b527-809955bbac9f}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{ae47905e-d085-43ae-a9f5-c4b47f3be4be}
  • HKEY_CLASSES_ROOTCLSID{bb8b1c4a-bd21-e672-41b9-aafb0c774dbc}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{d3a50f56-7ce9-f132-801e-51c7a9e18ebd}
  • HKEY_CLASSES_ROOTCLSID{e2289070-4be2-5d07-6b02-2b51af1880ca}
  • HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{e36b 19ed-9563-9d9d-8588-ff08cd500617}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{eab687bc-04b6-b738-98cd-d2461418f512}
  • HKEY_CLASSES_ROOTCLSID{f4bcdab2-b9e4-cbc7-21ae-4dc7c43d7223}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f5ae2ef1-bb7e-4aad-c742-27e6114b9d18}
  • HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServiceswersvc32
  • HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{01d4 a14f-1259-42dd-be2b-b0c27c7f7eb1}
  • HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWindowsAppInit_DLLs

Important Article Disclaimer

ESG Support Center

This entry was last updated on 06/27/11 and posted on 06/27/11. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.