Threat Database Trojans TrojanDownloader:MSIL/Truado.C

TrojanDownloader:MSIL/Truado.C

By Domesticus in Trojans

TrojanDownloader:MSIL/Truado.C is a Trojan that invades a compromised PC as a download from an infected website. TrojanDownloader:MSIL/Truado.C uses the file called 'AdobeUpdater.exe' to fool an attacked computer user into downloading and executing it. While being installed on the targeted computer system, TrojanDownloader:MSIL/Truado.C uses an AdobeFlash icon to fool the victimized computer user into believing it is a genuine file and executing it. While being executed, TrojanDownloader:MSIL/Truado.C illustrates the dialog box 'Please wait, check for config files.' to make itself seem to be like an Adobe update. TrojanDownloader:MSIL/Truado.C replicates itself as '%APPDATA%/startme.exe' in the background. TrojanDownloader:MSIL/Truado.C creates the registry entry to make sure that it can load automatically whenever the PC user starts the corrupted PC. TrojanDownloader:MSIL/Truado.C drops and installs other malware infections. TrojanDownloader:MSIL/Truado.C contacts a distant server to get instructions on how to distribute other malware infections.

File System Details

TrojanDownloader:MSIL/Truado.C may create the following file(s):
# File Name Detections
1. %APPDATA%/startme.exe
2. AdobeUpdater.exe

Registry Details

TrojanDownloader:MSIL/Truado.C may create the following registry entry or registry entries:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Adobe Updater = "%APPDATA%/startme.exe"

Trending

Most Viewed

Loading...