Threat Database Trojans TrojanProxy:Win32/Bunitu.F

TrojanProxy:Win32/Bunitu.F

By CagedTech in Trojans

TrojanProxy:Win32/Bunitu.F is part of the Bunitu family of trojan threats. TrojanProxy:Win32/Bunitu.F infection can occur when computer users visit harmful web locations, or they can be targeted with exploit kits. TrojanProxy:Win32/Bunitu.F is used by hackers to gain access to systems and later hide any malicious activity. If you detect TrojanProxy:Win32/Bunitu.F on your system, you should remove it as soon as possible because criminals may already use your machine for mischievous operations.

File System Details

TrojanProxy:Win32/Bunitu.F may create the following file(s):
# File Name Detections
1. 1bovtensdf.exe
2. 1erree.exe
3. 1oiran.exe
4. 1toman.exe
5. 5.exe
6. 6.exe
7. 7.exe
8. bilmopc.dll
9. itcoe.sys
10. itcom.sys
11. krnllds.sys
12. lanh32.dll
13. msiexec.exe
14. nvmapi.sys
15. nvnapi.sys
16. nvnati.sys
17. nvnatv.sys
18. pdafoir.dll
19. sha1krnl.sys
20. topruwj.dll
21. zunktir.dll

Registry Details

TrojanProxy:Win32/Bunitu.F may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ccPwdSvc
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ccPxySvc
HKEY_LOCAL_MACHINE \SYSTEM\CurrentControlSet\Services\NISUM
HKEY_LOCAL_MACHINE \SYSTEM\CurrentControlSet\Services\SymEvent
HKEY_LOCAL_MACHINE \SYSTEM\CurrentControlSet\Services\SYMTDI
HKEY_LOCAL_MACHINE \SYSTEM\CurrentControlSet\Services\VFILT

Trending

Most Viewed

Loading...