Trojan.Tracur

Trojan.Tracur Description

Trojan.Tracur is a malignant Trojan program that runs in the background enabling remote access to the targeted user's computer and may also contact a remote server in order to download additional malware threats onto a victim's computer without his/her knowledge. Trojan.Tracur conceals itself as a legitimate software application, such as a video codec, to mislead you into downloading it onto your computer system. Once Trojan.Tracur is installed on your PC, it may slow down your computer, change your system settings and modify your files. Remove Trojan.Tracur by using a reliable and powerful anti-virus program.

Aliases: Trojan.Menti!j1ny853tii0 [VirusBuster], SHeur3.CBAR [AVG], Trojan.Menti.gncn [CAT-QuickHeal], Trojan/Menti.gncn [TheHacker], a variant of Win32/Kryptik.OLG [NOD32], Win32:Downloader-HJX [Avast], Win32.GenHeur.GZ.Ahw [eSafe], Trojan.Win32.Menti.gncn [Kaspersky], Gen:Trojan.Heur.GZ.AHW@byoZqgki [BitDefender], Trojan.AVKill.2 [DrWeb], Trojan.Win32.Swisyn [Ikarus], Trojan/Win32.Menti [AhnLab-V3], W32/Menti.GNCN!tr [Fortinet], TrojanDownloader:Win32/Tracur [Microsoft] and Trojan/Win32.Menti.gen [Antiy-AVL].

Infected with Trojan.Tracur? Scan Your PC for Free

Download SpyHunter’s Spyware Scanner
to Detect Trojan.Tracur

Security Doesn't Let You Download SpyHunter or Access the Internet?


Solutions: Your computer may have malware hiding in memory that prevents any program, including SpyHunter, from executing on your computer. Follow to download SpyHunter and gain access to the Internet:
  • Use an alternative browser. Malware may disable your browser. If you're using IE, for example, and having problems downloading SpyHunter, you should open Firefox, Chrome or Safari browser instead.
  • Use a removable media. Download SpyHunter on another clean computer, burn it to a USB flash drive, DVD/CD, or any preferred removable media, then install it on your infected computer and run SpyHunter's malware scanner.
  • Start Windows in Safe Mode. If you can not access your Window's desktop, reboot your computer in 'Safe Mode with Networking' and install SpyHunter in Safe Mode.
  • IE Users: Disable proxy server for Internet Explorer to browse the web with Internet Explorer or update your anti-spyware program. Malware modifies your Windows settings to use a proxy server to prevent you from browsing the web with IE.

If you still can't install SpyHunter? View other possible causes of installation issues.

Technical Information

Infection Statistics


Our MalwareTracker shows malware activity across the world. Explore real-time data of Trojan.Tracur outbreaks and other threats from global to local level.

File System Details

Trojan.Tracur creates the following file(s):
# File Name Size MD5 Detection Count
1 %LOCALAPPDATA%\VirtualStore\Microsoft Games\xztrlc.dll 392,704 7b0e862b933d900f0b7e9975498cb532 649
2 %LOCALAPPDATA%\Webroot\vvejpojh.dll 495,616 84d95f9bca7a60a4b802235602504594 633
3 %LOCALAPPDATA%\Google\Adobe\weihgjxy.dll 233,472 574017ef804adbf058de5808d4eaab0e 560
4 %LOCALAPPDATA%\Microsoft Help\Microsoft\xzriun.dll 184,832 590ec38ccb07ba0343828957ca6f5555 510
5 %LOCALAPPDATA%\ATI\ArcSoft\hodancs.dll 317,952 dfdf0685a0483bce874366e4eae6be82 274
6 %LOCALAPPDATA%\JavaSoft\lsudxfjx.dll 454,144 5f8b0a1e822526bbf91683be52925ce0 219
7 %LOCALAPPDATA%\Microsoft\Diagnostics\bbompf.dll 858,624 6fc5f2ccd0778bfc8ac2b6f8657f17e4 184
8 %LOCALAPPDATA%\Microsoft\Adobe\kvxxmxxjv.dll 487,424 68ede266a450c38f5c66dc1da7dbc057 145
9 %LOCALAPPDATA%\Microsoft Games\Microsoft\iyabkjg.dll 621,056 8f3572f53035df6b278efacc4a34b945 108
10 %LOCALAPPDATA%\Microsoft\IsolatedStorage\trijtzxoi.dll 264,704 356392416ba9fb207ea772fc82343281 96
11 %LOCALAPPDATA%\Microsoft\Yahoo\ymdcicq.dll 628,224 f60a07067b4aae19ca6267d2824342b9 96
12 %LOCALAPPDATA%\JavaSoft\gvpohtzr.dll 323,584 3413f23a7bca522856e8ec62ce17d10d 84
13 %LOCALAPPDATA%\Microsoft\Adobe\njxyuv.dll 545,792 34f30a7c32650661c50b95ce8d15a542 72
14 %LOCALAPPDATA%\JavaSoft\AliasMetaDataHandler.DLL 1,150,976 af3b5fb92d44b3c63542860db1a10891 64
15 %LOCALAPPDATA%\JavaSoft\dcqtegns.dll 352,496 c15d9b72f0e6cc5ea23bed68ea91f8f7 64
16 C:ProgramDataWsmRes32.exe N/A
17 C:ProgramDataiscsidsc32.exe N/A
18 C:WindowsSystem32api-ms-win-core-localregistry-l1-1-032.exe N/A
19 C:WindowsSysWOW64iscsium32.exe N/A
20 c:programdataapi-ms-win-core-memory-l1-1-032.exe N/A
21 C:UsersclehighAppDataRoamingSysWinlsass.exe N/A
22 C:UsersclehighDesktopsetupQuickTime_Update_KB118012.exe N/A
23 C:WindowsSystem32iTVData32.exe N/A
24 c:programdatair50_qc32.exe N/A
25 C:WindowsSysWOW64api-ms-win-core-localregistry-l1-1-032.exe N/A
26 C:ProgramDataiTVData32.exe N/A
27 C:WindowsSystem32iscsium32.exe N/A
28 C:WindowsSysWOW64iTVData32.exe N/A
29 C:WindowsSystem32configsystemprofileAppDataRoamingF316.tmp N/A
30 C:ProgramData1808284557c1 N/A
31 C:ProgramData1808284557c4 N/A
32 C:WindowsSystem32configsystemprofileAppDataRoamingD91F.tmp N/A
33 C:WindowsSysWOW64configsystemprofileAppDataRoamingF316.tmp N/A
34 C:ProgramData1808284557c3 N/A
35 C:WindowsSystem32GnuHashes.ini N/A
36 C:WindowsSysWOW64configsystemprofileAppDataRoamingD91F.tmp N/A
37 C:ProgramData1808284557c2 N/A

More files

Registry Details

Trojan.Tracur creates the following registry entry or registry entries:
HKEY..\..\..\..{RegistryKeys}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{1915590a-ead8-83b5-faa2-70e93fa820cd}
HKEY_CLASSES_ROOTCLSID{b02f530b-5a61-653b-f6cd-967c79271e6a}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f1cf1665-b497-b3a3-d7a1-100f19163d22}
HKEY_CLASSES_ROOTCLSID{227276bb-4b9a-75da-3dca-66fb7219f22c}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{2909414b-5416-b9b4-ef70-b405692858ec}
HKEY_CLASSES_ROOTCLSID{3ecbb1e6-d40f-32ce-7cee-9daf87800363}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{4f704af0-bbf2-6cf7-c502-2131ec65acb1}
HKEY_CLASSES_ROOTCLSID{6e571a72-906e-d8f5-ae9e-a8683f651cf0}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9aa43ddf-8321-cbe8-e190-23377f4d6546}
HKEY_CLASSES_ROOTCLSID{a4b20b57-6288-c136-78ff-59afed22a8d4}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a5175f41-2409-89a9-cebf-620a8c054b5b}
HKEY_CLASSES_ROOTCLSID{b4a6f399-ccc6-f735-6ccd-9dcb16a2e0f3}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{bb742680-e27d-ca62-0d40-60c86c5ab13e}
HKEY_CLASSES_ROOTCLSID{d1c7d556-ad83-d463-33b0-5e19078bffd7}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f4b7da12-3e74-d531-2479-e3d7140276ce}
HKEY_CLASSES_ROOTCLSID{2a257ecc-739c-a456-466f-b5d31916a2a3}
HKEY_CLASSES_ROOTCLSID{6528e954-e5f3-1ef0-d267-46bd4d2f838d}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{671a 19dd-6141-e723-2f8e-fb842c5e7690}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6be07ae5-1e0a-45fb-379f-a219a2ea5a66}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{75730417-a7b1-fc72-cd7e-ac54f4bf0b0f}
HKEY_CLASSES_ROOTCLSID{8768e79f-2b38-c5ad-9af2-d3234bb93030}
HKEY_CLASSES_ROOTCLSID{984db96d-4451-3a41-2ea9-6516013bcfbc}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9dc368e2-1a39-7cc8-1c36-6bf2d8e1097d}
HKEY_CLASSES_ROOTCLSID{ae47905e-d085-43ae-a9f5-c4b47f3be4be}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b8885e08-7791-0360-73cc-b83e3d3b4065}
HKEY_CLASSES_ROOTCLSID{d3a50f56-7ce9-f132-801e-51c7a9e18ebd}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{de4710dc-6b55-902c-5f2d-83ee5656210f}
HKEY_CLASSES_ROOTCLSID{e36b19ed-9563-9d9d-8588-ff08cd500617}
HKEY_CLASSES_ROOTCLSID{eab687bc-04b6-b738-98cd-d2461418f512}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f1077ebc-c0d2-42f6-c66f-850378bea7ad}
HKEY_CLASSES_ROOTCLSID{f5ae2ef1-bb7e-4aad-c742-27e6114b9d18}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f5ea6a42-d6e4-45ef-1131-752c31963c3a}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{0 1d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunrthdbpl
HKEY_CLASSES_ROOTCLSID{1915590a-ead8-83b5-faa2-70e93fa820cd}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a6e91e3c-6fc0-df9a-6f90-ec10acaa7051}
HKEY_CLASSES_ROOTCLSID{f1cf1665-b497-b3a3-d7a1-100f19163d22}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{09794aad-bd6c-4e4b-b0f7-cc81335a2145}
HKEY_CLASSES_ROOTCLSID{2909414b-5416-b9b4-ef70-b405692858ec}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{3bac86e3-3df7-81ee-4147-55f42eed5f2d}
HKEY_CLASSES_ROOTCLSID{4f704af0-bbf2-6cf7-c502-2131ec65acb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{5ab42b4d-a790-80a9-5303-e90a1ac2b7bd}
HKEY_CLASSES_ROOTCLSID{9aa43ddf-8321-cbe8-e190-23377f4d6546}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a0ab2b8f-a516-9e55-680e-3dbad3cc4329}
HKEY_CLASSES_ROOTCLSID{a5175f41-2409-89a9-cebf-620a8c054b5b}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{ab28655b-396d-92ce-6e4f-7cf925a74087}
HKEY_CLASSES_ROOTCLSID{bb742680-e27d-ca62-0d40-60c86c5ab13e}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{c7819f87-c1e1-4fc2-ad73-b3ad3b0e51be}
HKEY_CLASSES_ROOTCLSID{f4b7da12-3e74-d531-2479-e3d7140276ce}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{fa9df4db-ca4c-15e1-81d8-f17ad0ad6b5f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{2a257ecc-739c-a456-466f-b5d31916a2a3}
HKEY_CLASSES_ROOTCLSID{671a19dd-6141-e723-2f8e-fb842c5e7690}
HKEY_CLASSES_ROOTCLSID{6be07ae5-1e0a-45fb-379f-a219a2ea5a66}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{7573 0417-a7b1-fc72-cd7e-ac54f4bf0b0f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{760261e9-c6c5-4627-d749-b3abcf2beaa4}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{8768e79f-2b38-c5ad-9af2-d3234bb93030}
HKEY_CLASSES_ROOTCLSID{9dc368e2-1a39-7cc8-1c36-6bf2d8e1097d}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9e53a81d-6546-0daf-b527-809955bbac9f}
HKEY_CLASSES_ROOTCLSID{b8885e08-7791-0360-73cc-b83e3d3b4065}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{bb8b1c4a-bd21-e672-41b9-aafb0c774dbc}
HKEY_CLASSES_ROOTCLSID{de4710dc-6b55-902c-5f2d-83ee5656210f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{e2289070-4be2-5d07-6b02-2b51af1880ca}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{e36b19ed-9563-9d9d-8588-ff08cd500617}
HKEY_CLASSES_ROOTCLSID{f1077ebc-c0d2-42f6-c66f-850378bea7ad}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f4bcdab2-b9e4-cbc7-21ae-4dc7c43d7223}
HKEY_CLASSES_ROOTCLSID{f5ea6a42-d6e4-45ef-1131-752c31963c3a}
HKEY_CLASSES_ROOTCLSID{01d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{01d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesvss32
HKEY_CLASSES_ROOTCLSID{a6e91e3c-6fc0-df9a-6f90-ec10acaa7051}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b02f530b-5a61-653b-f6cd-967c79271e6a}
HKEY_CLASSES_ROOTCLSID{09794aad-bd6c-4e4b-b0f7-cc81335a2145}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{227276bb-4b9a-75da-3dca-66fb7219f22c}
HKEY_CLASSES_ROOTCLSID{3bac86e3-3df7-81ee-4147-55f42eed5f2d}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{3ecbb1e6-d40f-32ce-7cee-9daf87800363}
HKEY_CLASSES_ROOTCLSID{5ab42b4d-a790-80a9-5303-e90a1ac2b7bd}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6e571a72-906e-d8f5-ae9e-a8683f651cf0}
HKEY_CLASSES_ROOTCLSID{a0ab2b8f-a516-9e55-680e-3dbad3cc4329}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a4b20b57-6288-c136-78ff-59afed22a8d4}
HKEY_CLASSES_ROOTCLSID{ab28655b-396d-92ce-6e4f-7cf925a74087}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b4a6f399-ccc6-f735-6ccd-9dcb16a2e0f3}
HKEY_CLASSES_ROOTCLSID{c7819f87-c1e1-4fc2-ad73-b3ad3b0e51be}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{d1c7d556-ad83-d463-33b0-5e19078bffd7}
HKEY_CLASSES_ROOTCLSID{fa9df4db-ca4c-15e1-81d8-f17ad0ad6b5f}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{2a25 7ecc-739c-a456-466f-b5d31916a2a3}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6528e954-e5f3-1ef0-d267-46bd4d2f838d}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{671a19dd-6141-e723-2f8e-fb842c5e7690}
HKEY_CLASSES_ROOTCLSID{75730417-a7b1-fc72-cd7e-ac54f4bf0b0f}
HKEY_CLASSES_ROOTCLSID{760261e9-c6c5-4627-d749-b3abcf2beaa4}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{8768 e79f-2b38-c5ad-9af2-d3234bb93030}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{984db96d-4451-3a41-2ea9-6516013bcfbc}
HKEY_CLASSES_ROOTCLSID{9e53a81d-6546-0daf-b527-809955bbac9f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{ae47905e-d085-43ae-a9f5-c4b47f3be4be}
HKEY_CLASSES_ROOTCLSID{bb8b1c4a-bd21-e672-41b9-aafb0c774dbc}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{d3a50f56-7ce9-f132-801e-51c7a9e18ebd}
HKEY_CLASSES_ROOTCLSID{e2289070-4be2-5d07-6b02-2b51af1880ca}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{e36b 19ed-9563-9d9d-8588-ff08cd500617}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{eab687bc-04b6-b738-98cd-d2461418f512}
HKEY_CLASSES_ROOTCLSID{f4bcdab2-b9e4-cbc7-21ae-4dc7c43d7223}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f5ae2ef1-bb7e-4aad-c742-27e6114b9d18}
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServiceswersvc32
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{01d4 a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWindowsAppInit_DLLs
The following CLSID's were found:
HKEY..\..\{CLSID Path}
{003AD82B-4210-4A0D-B873-A9B5E0BC5619}
{017F3F47-EA07-4517-91A2-33CAEB13293a}
{01E94AF9-D85B-4DB7-9ECC-0EBAC2B2EE97}
{0E611923-BE41-43AE-B4F8-8D82BC8AB8Df}
{46D5E4AC-83BC-0B91-5D85-A9B816611992}

Site Disclaimer

Leave a Reply

IMPORTANT! To be able to proceed, you need to solve the following simple math.
Please leave these two fields as-is:
What is 13 + 13 ?