Threat Database Trojans Trojan.Win32.Patched.ka

Trojan.Win32.Patched.ka

By JubileeX in Trojans

Trojan.Win32.Patched.ka is highly dangerous rootkit trojan program made to open a large security loophole through which a number of malicious malware infections can infiltrate your system. Trojan.Win32.Patched.ka will download files to the computer without user's consent which will lead to security danger. Trojan.Win32.Patched.ka can even enable an attacker to gain remote access to the corrupted computer system. The types of operations are limited by user privileges on the affected computer, which typically involves modification or deletion of files, data theft, keystroke logging, and use of a PC as part of a botnet to execute mass spamming or to deliver Denial-of-service attacks.

File System Details

Trojan.Win32.Patched.ka may create the following file(s):
# File Name Detections
1. %AppData%\data.dat,%AppData%\SEXY.exe
2. C:\Documents and Settings\\Start Menu\Trojan.Win32.Patched.ka \
3. C:\Documents and Settings\\Trojan.Win32.Patched.ka \
4. %Temp%\IXP000.TMP\SEXY.exe,%Temp%\1.tmp
5. %PROGRAM_FILES%\Trojan.Win32.Patched.ka

Registry Details

Trojan.Win32.Patched.ka may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Active Setup\Installed Components\{C7BAADA4-DC89-B5DA-ABC2-C9BAD66F8AAF}
HKEY_LOCAL_MACHINE\Software\Trojan.Win32.Patched.ka
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\MediaResources\msvideo
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{C7BAADA4-DC89-B5DA-ABC2-C9BAD66F8AAF}

Trending

Most Viewed

Loading...