Threat Database Trojans Trojan.Win32.Jorik.Koobface.bc

Trojan.Win32.Jorik.Koobface.bc

By SpideyMan in Trojans

Trojan.Win32.Jorik.Koobface.bc is a hazardous Trojan which can install other malware components on the infected computer system after it connects with unauthorized remote host. Trojan.Win32.Jorik.Koobface.bc often corrupts computer without your consent in the background. Trojan.Win32.Jorik.Koobface.bc redirects the affected web browser to malicious websites and tries to upload potentially infected files onto the PC system. Trojan.Win32.Jorik.Koobface.bc specifically infects Internet banking accounts and forwards stolen data to its creators. Trojan.Win32.Jorik.Koobface.bc is a serious threat to a compromised PC system which has to be uninstalled to secure your computer from harm.

File System Details

Trojan.Win32.Jorik.Koobface.bc may create the following file(s):
# File Name Detections
1. %AppData%\rdr_1311970484.exe
2. %AppData%\rdr_1311970490.exe
3. %Windir%\gh5h166.exe
4. %Temp%\imgparser4.exe
5. %AppData%\rdr_1311970495.exe
6. %AppData%\rdr_1311970488.exe
7. %Windir%\gh5h163.exe
8. %Temp%\ftppost2.exe
9. %Temp%\blo1.exe
10. %System%\df1a245s4_1776.exe
11. %AppData%\rdr_1311970486.exe
12. %AppData%\rdr_1311970492.exe
13. %Temp%\fc2blog2.exe
14. %Temp%\twr10.exe
15. %Windir%\5456456z
16. %Windir%\twps
17. %UserProfile%\UserData\index.dat
18. %Windir%\aop
19. %UserProfile%\UserData\4DARKPEZ\phoenix[1].xml
20. %Windir%\bt7.dat

Registry Details

Trojan.Win32.Jorik.Koobface.bc may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\3921C115C15D0ECA5CCB5BC4F07D21D8050B566A
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer

Trending

Most Viewed

Loading...