TrojanDownloader:Win32/Kraddare.G Description

TrojanDownloader:Win32/Kraddare.G is a Trojan that drops and installs other files, which may be other malware infections without an attacked computer user's awareness. Once installed, TrojanDownloader:Win32/Kraddare.G makes system modifications by dropping malevolent files. TrojanDownloader:Win32/Kraddare.G also modifies the Windows Registry. TrojanDownloader:Win32/Kraddare.G modifies the registry entry to make sure that its copy loads automatically when the PC user starts Windows. While being run, TrojanDownloader:Win32/Kraddare.G strives to drop updated copies of itself from one of the web addresses.

Technical Information

File System Details

TrojanDownloader:Win32/Kraddare.G creates the following file(s):
# File Name Detection Count
1 %LOCALAPPDATA%\signkey\iesignkey.exe N/A
2 %LOCALAPPDATA%\signkey\signkey.exe N/A
3 %LOCALAPPDATA%\signkey\ie_signkey.exe N/A
4 %LOCALAPPDATA%\signkey\skun.exe N/A

Registry Details

TrojanDownloader:Win32/Kraddare.G creates the following registry entry or registry entries:
Registry key
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\signkey DisplayIcon = %LOCALAPPDATA%\signkey\skun.exe,0
HKEY_CURRENT_USER\Software\signkey User = acc0e9de_
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run signkey = %LOCALAPPDATA%\signkey\signkey.exe