Trojan.Tracur

Trojan.Tracur Description

Trojan.Tracur is a malignant Trojan program that runs in the background enabling remote access to the targeted user's computer and may also contact a remote server in order to download additional malware threats onto a victim's computer without his/her knowledge. Trojan.Tracur conceals itself as a legitimate software application, such as a video codec, to mislead you into downloading it onto your computer system. Once Trojan.Tracur is installed on your PC, it may slow down your computer, change your system settings and modify your files. Remove Trojan.Tracur by using a reliable and powerful anti-virus program.
Aliases: Trojan.Menti!j1ny853tii0 [VirusBuster], SHeur3.CBAR [AVG], Trojan.Menti.gncn [CAT-QuickHeal], Trojan/Menti.gncn [TheHacker], a variant of Win32/Kryptik.OLG [NOD32], Win32:Downloader-HJX [Avast], Win32.GenHeur.GZ.Ahw [eSafe], Trojan.Win32.Menti.gncn [Kaspersky], Gen:Trojan.Heur.GZ.AHW@byoZqgki [BitDefender], Trojan.AVKill.2 [DrWeb], Trojan.Win32.Swisyn [Ikarus], Trojan/Win32.Menti [AhnLab-V3], W32/Menti.GNCN!tr [Fortinet], TrojanDownloader:Win32/Tracur [Microsoft] and Trojan/Win32.Menti.gen [Antiy-AVL].

Infected with Trojan.Tracur? Scan Your PC for Free

Download SpyHunter’s Spyware Scanner
to Detect Trojan.Tracur

Security Doesn't Let You Download SpyHunter or Access the Internet?


Solutions: Your computer may have malware hiding in memory that prevents any program, including SpyHunter, from executing on your computer. Follow to download SpyHunter and gain access to the Internet:
  • Use an alternative browser. Malware may disable your browser. If you're using IE, for example, and having problems downloading SpyHunter, you should open Firefox, Chrome or Safari browser instead.
  • Use a removable media. Download SpyHunter on another clean computer, burn it to a USB flash drive, DVD/CD, or any preferred removable media, then install it on your infected computer and run SpyHunter's malware scanner.
  • Start Windows in Safe Mode. If you can not access your Window's desktop, reboot your computer in 'Safe Mode with Networking' and install SpyHunter in Safe Mode.
  • IE Users: Disable proxy server for Internet Explorer to browse the web with Internet Explorer or update your anti-spyware program. Malware modifies your Windows settings to use a proxy server to prevent you from browsing the web with IE.

If you still can't install SpyHunter? View other possible causes of installation issues.

Technical Information

Infection Statistics


Our MalwareTracker shows malware activity across the world. Explore real-time data of Trojan.Tracur outbreaks and other threats from global to local level.

File System Details

Trojan.Tracur creates the following file(s):
# File Name Size MD5 Detection Count
1 csseqchk32.dll 182,272 9ca13222f6cd31abd5ed11d66b383f0a 83
2 129.tmp 1,081,856 1c7649923e13e6c5cb50d62a6e7f812c 75
3 batmeter32.dll 129,536 828a1d7584dc4c7c5d686c2be257cf90 74
4 bthserv32.dll 193,536 a2baeab194bc6c7314e873d132977ba1 72
5 btcss32.dll 120,320 22cfd1aa3d58101e414ce245859ea656 71
6 comcat32.dll 123,904 42bcd3abfbb699aa0580ee02b2e5d167 64
7 certmgr3232.dll 121,344 a106351d0da9ec4c35f613d701d45802 56
8 catsrvut32.dll 196,608 7236da6d440ee82d7e8d51344f667918 52
9 console32.dll 119,296 08846619d8d2e930ab97c9633e29fec2 43
10 comctl3232.dll 122,368 5008937b811ff19876baf250aaaefaf6 37
11 cmsetacl32.dll 121,344 aae59e6c0ec67a596ec8d62eba009cbc 31
12 b0q2ozrt32.dll 132,608 2a4a19358ea5e532263bbf2e34f03e7d 23
13 %WINDIR%\SysWOW64\puiapi32.exe 1,476,608 a90f7b5c65569372abb3da468d3187df 20
14 %APPDATA%\SystemProc\lsass.exe 141,312 7119b205378cd95ce4d1dbb351670895 17
15 0439m232.dll 128,000 46e9cb7dd8763fbbbcf77f01c02285c7 10
16 C:ProgramDataWsmRes32.exe N/A
17 C:ProgramDataiscsidsc32.exe N/A
18 C:WindowsSystem32api-ms-win-core-localregistry-l1-1-032.exe N/A
19 C:WindowsSysWOW64iscsium32.exe N/A
20 c:programdataapi-ms-win-core-memory-l1-1-032.exe N/A
21 C:UsersclehighAppDataRoamingSysWinlsass.exe N/A
22 C:UsersclehighDesktopsetupQuickTime_Update_KB118012.exe N/A
23 C:WindowsSystem32iTVData32.exe N/A
24 c:programdatair50_qc32.exe N/A
25 C:WindowsSysWOW64api-ms-win-core-localregistry-l1-1-032.exe N/A
26 C:ProgramDataiTVData32.exe N/A
27 C:WindowsSystem32iscsium32.exe N/A
28 C:WindowsSysWOW64iTVData32.exe N/A
29 C:WindowsSystem32configsystemprofileAppDataRoamingF316.tmp N/A
30 C:ProgramData1808284557c1 N/A
31 C:ProgramData1808284557c4 N/A
32 C:WindowsSystem32configsystemprofileAppDataRoamingD91F.tmp N/A
33 C:WindowsSysWOW64configsystemprofileAppDataRoamingF316.tmp N/A
34 C:ProgramData1808284557c3 N/A
35 C:WindowsSystem32GnuHashes.ini N/A
36 C:WindowsSysWOW64configsystemprofileAppDataRoamingD91F.tmp N/A
37 C:ProgramData1808284557c2 N/A

More files

Registry Details

Trojan.Tracur creates the following registry entry or registry entries:
HKEY..\..\..\..{RegistryKeys}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{1915590a-ead8-83b5-faa2-70e93fa820cd}
HKEY_CLASSES_ROOTCLSID{b02f530b-5a61-653b-f6cd-967c79271e6a}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f1cf1665-b497-b3a3-d7a1-100f19163d22}
HKEY_CLASSES_ROOTCLSID{227276bb-4b9a-75da-3dca-66fb7219f22c}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{2909414b-5416-b9b4-ef70-b405692858ec}
HKEY_CLASSES_ROOTCLSID{3ecbb1e6-d40f-32ce-7cee-9daf87800363}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{4f704af0-bbf2-6cf7-c502-2131ec65acb1}
HKEY_CLASSES_ROOTCLSID{6e571a72-906e-d8f5-ae9e-a8683f651cf0}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9aa43ddf-8321-cbe8-e190-23377f4d6546}
HKEY_CLASSES_ROOTCLSID{a4b20b57-6288-c136-78ff-59afed22a8d4}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a5175f41-2409-89a9-cebf-620a8c054b5b}
HKEY_CLASSES_ROOTCLSID{b4a6f399-ccc6-f735-6ccd-9dcb16a2e0f3}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{bb742680-e27d-ca62-0d40-60c86c5ab13e}
HKEY_CLASSES_ROOTCLSID{d1c7d556-ad83-d463-33b0-5e19078bffd7}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f4b7da12-3e74-d531-2479-e3d7140276ce}
HKEY_CLASSES_ROOTCLSID{2a257ecc-739c-a456-466f-b5d31916a2a3}
HKEY_CLASSES_ROOTCLSID{6528e954-e5f3-1ef0-d267-46bd4d2f838d}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{671a 19dd-6141-e723-2f8e-fb842c5e7690}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6be07ae5-1e0a-45fb-379f-a219a2ea5a66}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{75730417-a7b1-fc72-cd7e-ac54f4bf0b0f}
HKEY_CLASSES_ROOTCLSID{8768e79f-2b38-c5ad-9af2-d3234bb93030}
HKEY_CLASSES_ROOTCLSID{984db96d-4451-3a41-2ea9-6516013bcfbc}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9dc368e2-1a39-7cc8-1c36-6bf2d8e1097d}
HKEY_CLASSES_ROOTCLSID{ae47905e-d085-43ae-a9f5-c4b47f3be4be}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b8885e08-7791-0360-73cc-b83e3d3b4065}
HKEY_CLASSES_ROOTCLSID{d3a50f56-7ce9-f132-801e-51c7a9e18ebd}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{de4710dc-6b55-902c-5f2d-83ee5656210f}
HKEY_CLASSES_ROOTCLSID{e36b19ed-9563-9d9d-8588-ff08cd500617}
HKEY_CLASSES_ROOTCLSID{eab687bc-04b6-b738-98cd-d2461418f512}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f1077ebc-c0d2-42f6-c66f-850378bea7ad}
HKEY_CLASSES_ROOTCLSID{f5ae2ef1-bb7e-4aad-c742-27e6114b9d18}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f5ea6a42-d6e4-45ef-1131-752c31963c3a}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{0 1d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunrthdbpl
HKEY_CLASSES_ROOTCLSID{1915590a-ead8-83b5-faa2-70e93fa820cd}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a6e91e3c-6fc0-df9a-6f90-ec10acaa7051}
HKEY_CLASSES_ROOTCLSID{f1cf1665-b497-b3a3-d7a1-100f19163d22}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{09794aad-bd6c-4e4b-b0f7-cc81335a2145}
HKEY_CLASSES_ROOTCLSID{2909414b-5416-b9b4-ef70-b405692858ec}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{3bac86e3-3df7-81ee-4147-55f42eed5f2d}
HKEY_CLASSES_ROOTCLSID{4f704af0-bbf2-6cf7-c502-2131ec65acb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{5ab42b4d-a790-80a9-5303-e90a1ac2b7bd}
HKEY_CLASSES_ROOTCLSID{9aa43ddf-8321-cbe8-e190-23377f4d6546}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a0ab2b8f-a516-9e55-680e-3dbad3cc4329}
HKEY_CLASSES_ROOTCLSID{a5175f41-2409-89a9-cebf-620a8c054b5b}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{ab28655b-396d-92ce-6e4f-7cf925a74087}
HKEY_CLASSES_ROOTCLSID{bb742680-e27d-ca62-0d40-60c86c5ab13e}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{c7819f87-c1e1-4fc2-ad73-b3ad3b0e51be}
HKEY_CLASSES_ROOTCLSID{f4b7da12-3e74-d531-2479-e3d7140276ce}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{fa9df4db-ca4c-15e1-81d8-f17ad0ad6b5f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{2a257ecc-739c-a456-466f-b5d31916a2a3}
HKEY_CLASSES_ROOTCLSID{671a19dd-6141-e723-2f8e-fb842c5e7690}
HKEY_CLASSES_ROOTCLSID{6be07ae5-1e0a-45fb-379f-a219a2ea5a66}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{7573 0417-a7b1-fc72-cd7e-ac54f4bf0b0f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{760261e9-c6c5-4627-d749-b3abcf2beaa4}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{8768e79f-2b38-c5ad-9af2-d3234bb93030}
HKEY_CLASSES_ROOTCLSID{9dc368e2-1a39-7cc8-1c36-6bf2d8e1097d}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{9e53a81d-6546-0daf-b527-809955bbac9f}
HKEY_CLASSES_ROOTCLSID{b8885e08-7791-0360-73cc-b83e3d3b4065}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{bb8b1c4a-bd21-e672-41b9-aafb0c774dbc}
HKEY_CLASSES_ROOTCLSID{de4710dc-6b55-902c-5f2d-83ee5656210f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{e2289070-4be2-5d07-6b02-2b51af1880ca}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{e36b19ed-9563-9d9d-8588-ff08cd500617}
HKEY_CLASSES_ROOTCLSID{f1077ebc-c0d2-42f6-c66f-850378bea7ad}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f4bcdab2-b9e4-cbc7-21ae-4dc7c43d7223}
HKEY_CLASSES_ROOTCLSID{f5ea6a42-d6e4-45ef-1131-752c31963c3a}
HKEY_CLASSES_ROOTCLSID{01d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{01d4a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesvss32
HKEY_CLASSES_ROOTCLSID{a6e91e3c-6fc0-df9a-6f90-ec10acaa7051}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b02f530b-5a61-653b-f6cd-967c79271e6a}
HKEY_CLASSES_ROOTCLSID{09794aad-bd6c-4e4b-b0f7-cc81335a2145}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{227276bb-4b9a-75da-3dca-66fb7219f22c}
HKEY_CLASSES_ROOTCLSID{3bac86e3-3df7-81ee-4147-55f42eed5f2d}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{3ecbb1e6-d40f-32ce-7cee-9daf87800363}
HKEY_CLASSES_ROOTCLSID{5ab42b4d-a790-80a9-5303-e90a1ac2b7bd}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6e571a72-906e-d8f5-ae9e-a8683f651cf0}
HKEY_CLASSES_ROOTCLSID{a0ab2b8f-a516-9e55-680e-3dbad3cc4329}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{a4b20b57-6288-c136-78ff-59afed22a8d4}
HKEY_CLASSES_ROOTCLSID{ab28655b-396d-92ce-6e4f-7cf925a74087}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{b4a6f399-ccc6-f735-6ccd-9dcb16a2e0f3}
HKEY_CLASSES_ROOTCLSID{c7819f87-c1e1-4fc2-ad73-b3ad3b0e51be}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{d1c7d556-ad83-d463-33b0-5e19078bffd7}
HKEY_CLASSES_ROOTCLSID{fa9df4db-ca4c-15e1-81d8-f17ad0ad6b5f}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{2a25 7ecc-739c-a456-466f-b5d31916a2a3}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{6528e954-e5f3-1ef0-d267-46bd4d2f838d}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{671a19dd-6141-e723-2f8e-fb842c5e7690}
HKEY_CLASSES_ROOTCLSID{75730417-a7b1-fc72-cd7e-ac54f4bf0b0f}
HKEY_CLASSES_ROOTCLSID{760261e9-c6c5-4627-d749-b3abcf2beaa4}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{8768 e79f-2b38-c5ad-9af2-d3234bb93030}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{984db96d-4451-3a41-2ea9-6516013bcfbc}
HKEY_CLASSES_ROOTCLSID{9e53a81d-6546-0daf-b527-809955bbac9f}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{ae47905e-d085-43ae-a9f5-c4b47f3be4be}
HKEY_CLASSES_ROOTCLSID{bb8b1c4a-bd21-e672-41b9-aafb0c774dbc}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{d3a50f56-7ce9-f132-801e-51c7a9e18ebd}
HKEY_CLASSES_ROOTCLSID{e2289070-4be2-5d07-6b02-2b51af1880ca}
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{e36b 19ed-9563-9d9d-8588-ff08cd500617}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{eab687bc-04b6-b738-98cd-d2461418f512}
HKEY_CLASSES_ROOTCLSID{f4bcdab2-b9e4-cbc7-21ae-4dc7c43d7223}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrows er Helper Objects{f5ae2ef1-bb7e-4aad-c742-27e6114b9d18}
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServiceswersvc32
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{01d4 a14f-1259-42dd-be2b-b0c27c7f7eb1}
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWindowsAppInit_DLLs
The following CLSID's were found:
HKEY..\..\{CLSID Path}
{003AD82B-4210-4A0D-B873-A9B5E0BC5619}
{017F3F47-EA07-4517-91A2-33CAEB13293a}
{01E94AF9-D85B-4DB7-9ECC-0EBAC2B2EE97}
{0E611923-BE41-43AE-B4F8-8D82BC8AB8Df}
{46D5E4AC-83BC-0B91-5D85-A9B816611992}

Site Disclaimer

Leave a Reply

IMPORTANT! To be able to proceed, you need to solve the following simple math.
Please leave these two fields as-is:
What is 6 + 3 ?