Threat Database Trojans Trojan.Tapaoux

Trojan.Tapaoux

By JubileeX in Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 6
First Seen: November 24, 2011
Last Seen: August 22, 2018
OS(es) Affected: Windows

Trojan.Tapaoux is a damaging Trojan that downloads and installs other malware infections on to the corrupted PC system. Trojan.Tapaoux tries to exploit the Adobe Reader 'CoolType.dll' TTF Font Remote Code Execution Vulnerability (BID 43057). When Trojan.Tapaoux infiltrates into the targeted computer system, it will firstly disguise itself from the detection of your anti-virus software. Before Trojan.Tapaoux is executed, it is difficult to detect it. Once Trojan.Tapaoux is executed, it adds a DLL file, an executable file and a system driver. Trojan.Tapaoux will run automatically each time you start your PC. When Trojan.Tapaoux downloads malicious files, your anti-virus software may display a fake security alert. Trojan.Tapaoux will slow down your computer and make your Internet speed unstable. Trojan.Tapaoux will also change your homepage and redirect your browser to malicious websites. Trojan.Tapaoux will also gather your personal information and forward it to remote attackers. Uninstall Trojan.Tapaoux immediately after detection.

SpyHunter Detects & Remove Trojan.Tapaoux

File System Details

Trojan.Tapaoux may create the following file(s):
# File Name MD5 Detections
1. 6619a4ff7f0478f8c15fc0391651a1694afe876d25ebd07e3da08167e4f0b3d3.exe 60af79fb0bd2c9f33375035609c931cb 2
2. file.exe c2915bece3269b7a8dac1e2745063b49 1
3. expsrv32.exe 653ffc574a13c4bc8337c688124fd0bf 1
4. %System%\schechk.exe
5. %System%\sisraid3.sys
6. %System%\securx86.sys
7. %System%\hwpolicy.dll
8. %System%\ql5200.sys
9. %System%\sscore1.sys
10. %System%\npidsz4.sys
11. %System%\schechk.sys
12. %System%\expsrv32.sys
13. %System%\hwpolicy.sys
14. %System%\imagepk.sys
15. %System%\schechk.bin
16. file.exe 316d41a81f9a6cbba9d0f25c59250f28 0
17. file.dll 7fc7b247c5f0b8d6766c597b9b139ac7 0
18. file.exe 72869fc63d0ba875dfc539d2bcd48e4d 0
19. file.dll 387128c489a66a70c7ed76b27f1dd4e2 0
20. file.exe adab033d420206fcd2503643d443956e 0
21. vpmde.dll 566e92f79497a3c6136b815c9960b898 0

Registry Details

Trojan.Tapaoux may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EpsonK200

URLs

Trojan.Tapaoux may call the following URLs:

ebizcentres.com/system32/list4/yahoo/banne[DELETED]
re.policy-forums.org/ol/yahoo/banne[DELETED]

Related Posts

Trending

Most Viewed

Loading...