Threat Database Backdoors Backdoor.Protos

Backdoor.Protos

By GoldSparrow in Backdoors

Threat Scorecard

Threat Level: 60 % (Medium)
Infected Computers: 10
First Seen: April 10, 2015
Last Seen: July 10, 2018
OS(es) Affected: Windows

Backdoor.Protos stands for a backdoor trojan named Protos that is deployed in spam emails, low-quality software centers and PC gaming forums. The Protos backdoor trojan can record the hard disk unique ID, account details and open a backdoor to your system for attackers to use. The operators of the Protos backdoor trojan can use it to introduce other malware on your PC such as CashU, Craagle and Bizex. Computer users that are infected with the Protos backdoor trojan may experience slower performance and system errors. Security experts note that the Protos backdoor trojan creates a mutex named CWSPROT20 on the machine to prevent other copies of itself running. Also, the Protos malware attaches code to the Internet Explorer to execute its operations. Therefore, your Internet bandwidth could be limited, and you have troubles loading videos on websites like YouTube. The Protos backdoor trojan might host its executables in the ApplicationData folder and insert malicious DLLs in the system32 folder under the Windows directory. Needless to say, the Protos backdoor trojan may grant attackers full control over your computer. Your programs could be corrupted and altered to send your input to third parties. The operators of the Protos malware may choose to install ransomware like CryptoLocker and KRIPTOVOR to earn affiliate revenue. Computer users infected with the Protos backdoor trojan may want to install a reliable anti-malware solution to secure and clean their PC.

SpyHunter Detects & Remove Backdoor.Protos

File System Details

Backdoor.Protos may create the following file(s):
# File Name MD5 Detections
1. file.exe ff4f72316388ad2f52fe6f0b2df6e5a4 1

Registry Details

Backdoor.Protos may create the following registry entry or registry entries:
Regexp file mask
%APPDATA%\Microsoft\Windows\Templates\side.exe

Trending

Most Viewed

Loading...