Trojan.Tapaoux.B
Trojan.Tapaoux.B is a Trojan that opens a back door on the targeted PC. Once run, Trojan.Tapaoux.B may create the malevolent files. Trojan.Tapaoux.B may delete the 'sysconfig.ini' file if it is added to the particular locations (%System%\ and %AppData%\Microsoft\Protect). Trojan.Tapaoux.B may create the registry entries so that it can load automatically whenever the computer user is starts Windows. Trojan.Tapaoux.B adds itself into the processes such as 'wscntfy.exe', 'wuauclt.exe', 'ctfmon.exe', 'svchost.exe' and 'dwm.exe'. Trojan.Tapaoux.B then opens a back door on the compromised PC, creates a log file, and connects to one of the particular web addresses. Trojan.Tapaoux.B may fulfill the harmful actions such as run file operations (run, search, delete, copy, move, upload), grab system information and encrypt for storage (computer name, adapter information, OS), access, create, and stop any running process, make modifications to the Windows Registry, gain network connection state, decrypt data stored in .bin file, load infected DLLs and call export function called 'RunThisCode', and further configure or update the malware infection. Trojan.Tapaoux.B may erase itself.
Table of Contents
File System Details
# | File Name |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
---|---|---|
1. | %System%\d[RANDOM CHARACTERS].dll | |
2. | [TEMPLATES]\RcDll.dll | |
3. | [TEMPLATES]\[RANDOM CHARACTERS].exe | |
4. | %AppData%\Microsoft\Protect\SystemKey\d[RANDOM CHARACTERS].dll | |
5. | %System%\ffffz[MM][DD][hh][mm][ss][0-3 LETTERS OR DIGITS].tmp | |
6. | %System%\b[RANDOM CHARACTERS].bin | |
7. | [TEMPLATES]\data | |
8. | %AppData%\Microsoft\Protect\SystemKey\b[RANDOM CHARACTERS].bin |
Registry Details
URLs
Trojan.Tapaoux.B may call the following URLs:
Adobe-updates.com |
News-updates.org |
Online.usean.biz |
Sqlengine.net |
Submit Comment
Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.