Threat Database Trojans Packed.Win32.Katusha.o

Packed.Win32.Katusha.o

Packed.Win32.Katusha.o is a Trojan that can connect to a remote IRC server once it has infiltrated a PC. Packed.Win32.Katusha.o will download harmful files from the server that will damage the infected machine even further. Packed.Win32.Katusha.o will also create a start-up registry entry to ensure that it executes each time the system is started up.

File System Details

Packed.Win32.Katusha.o may create the following file(s):
# File Name Detections
1. hdyk.exe
2. secupdat.dat

Registry Details

Packed.Win32.Katusha.o may create the following registry entry or registry entries:
MSConfig = "%UserProfile%\hdyk.exe \u"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

Trending

Most Viewed

Loading...