Threat Database Trojans Trojan.Perseus

Trojan.Perseus

By CagedTech in Trojans

Threat Scorecard

Ranking: 6,890
Threat Level: 80 % (High)
Infected Computers: 184,759
First Seen: January 25, 2016
Last Seen: April 18, 2025
OS(es) Affected: Windows

SpyHunter Detects & Remove Trojan.Perseus

File System Details

Trojan.Perseus may create the following file(s):
# File Name MD5 Detections
1. lxgqbvcm.sjo.exe 363a75eeee98feac931e39b89d3bff87 1,418
2. crmsvc.exe 5fc86a10fc6e7c6b317efc10ed2b3fe8 913
3. manger folder.exe 58bca84038530b20cf6e0d0b56637b54 873
4. wwxuw4a5.oew.exe 522632e65cb3f68810f39d09644675d7 580
5. izrciwok.g2t.exe cac89452037aacb74c58b47733f81a14 566
6. windows screen manager.exe 84f3660d31acb866ad341f284d7c137e 461
7. uef24npp.tzg.exe 3fb83a058707e020b344b49e170252a0 458
8. ulvh0omb.3u4.exe a8e25dfbb26362002a7c1d617c0ad493 397
9. CRMSvc.VIR cfe92f9bd2ce592620d03198f49fc340 193
10. Theobald.dll 2a1123e37db3d5ff102e725fa4339d5c 116
11. f43253jc.y5d.exe 388562f5fa4fb78db6aad6162bbf4cc3 111
12. IRe.exe b834d34946fc843e891af0e67733f051 44
13. desktop.ini.exe dbc235d703a79e14228e9330406e8fd2 24
14. RegEdit.exe 30e2495e46113160763cea03b6802c60 5
15. helpar.exe 180d47d031d38b6e39fa507030bbfbc4 3
16. moll.exe 0609d86d20274aec5f0aeb7cb44399d3 1
17. file.exe 1d5731cbee22dbad79ae45ea378ffef9 0
More files

Registry Details

Trojan.Perseus may create the following registry entry or registry entries:
Regexp file mask
%ALLUSERSPROFILE%\Theobald.dll
%APPDATA%\Google Chrome.exe
%APPDATA%\proxifier\proxy.exe
%LOCALAPPDATA%\Invisible[RANDOM CHARACTERS].exe
%LOCALAPPDATA%\manger folder.exe
SOFTWARE\CRMSvc
SYSTEM\ControlSet001\services\CRMSvc
SYSTEM\ControlSet001\services\eventlog\Application\CRMSvc
SYSTEM\ControlSet002\services\CRMSvc
SYSTEM\ControlSet002\services\eventlog\Application\CRMSvc
SYSTEM\CurrentControlSet\services\CRMSvc
SYSTEM\CurrentControlSet\services\eventlog\Application\CRMSvc

Directories

Trojan.Perseus may create the following directory or directories:

%ALLUSERSPROFILE%\catalog update
%APPDATA%\CRMSvc
%APPDATA%\Microsoft\Windows\DsvHelper
%WINDIR%\SysWow64\config\systemprofile\AppData\Roaming\CRMSvc
%WINDIR%\System32\config\systemprofile\AppData\Roaming\CRMSvc

Trending

Most Viewed

Loading...