Threat Database Trojans Trojan.Loopas.C!inf

Trojan.Loopas.C!inf

By Domesticus in Trojans

Trojan.Loopas.C!inf is a Trojan that may propagate on the Internet as a CHM (help) file that downloads the malicious payload. When activated, Trojan.Loopas.C!inf copies itself as the specific file. Trojan.Loopas.C!inf also distributes potentially malevolent files. Trojan.Loopas.C!inf then hijacks the specific file to run the main file of the Trojan. Trojan.Loopas.C!inf then willl erase many files. Trojan.Loopas.C!inf can also modify registry entries. Trojan.Loopas.C!inf steals private details from the affected PC, such as operating system version computer name, IP address and other. The Trojan.Loopas.C!inf attempts to access the URL named mail.winxps.com.

File System Details

Trojan.Loopas.C!inf may create the following file(s):
# File Name Detections
1. %CommonProgramFiles%\dumpodbc.exe
2. %System%\udpmon_old.dll
3. %System%\spoolss.dll (Trojan.Loopas!inf)
4. %CommonProgramFiles%\odbc_dmc.nls
5. %CommonProgramFiles%\odbc_ger.nls
6. %CommonProgramFiles%\odbc_txe.nls
7. %CommonProgramFiles%\odbc.nls
8. %CommonProgramFiles%\odbc_orp.nls
9. %CommonProgramFiles%\odbc_rcs.nls
10. %CommonProgramFiles%\odbc_div.nls
11. %Temp%\s[FIVE RANDOM NUMBERS].dat
12. %CommonProgramFiles%\odbc_lif.nls
13. %CommonProgramFiles%\odbc_res.nls
14. %CommonProgramFiles%\odbc_rehto.nls

Registry Details

Trojan.Loopas.C!inf may create the following registry entry or registry entries:
"[BINARY DATA]"
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Spooler\"FailureActions" =

Trending

Most Viewed

Loading...