Threat Database Trojans Win32/Claretore

Win32/Claretore

By Sumo3000 in Trojans

Win32/Claretore is a Trojan that inserts a malicious code into Windows processes to seize web browser communication. Win32/Claretore might be able to monitor the victim's activities and forward stolen information to a remote web page. Win32/Claretore could also divert the compromised web browser to a suspicious web page link. When Win32/Claretore is executed, it attaches a copy of itself with 'hidden' and 'system' file attributes. Win32/Claretore modifies the Windows registry so that it can start whenever you boot up Windows. You should uninstall Win32/Claretore by using a genuine malware removal tool.

Registry Details

Win32/Claretore may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\\Machine\System\CurrentControlSet\Control\Session Manager "PendingFileRenameOperations" =
Settings\Administrator\ec3fd7c0-0.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Windows Update Server" = "C:\Documents and
"%Temp%\.tmp"

URLs

Win32/Claretore may call the following URLs:

zationtothe.online

Trending

Most Viewed

Loading...