| Name: |
Tro.Tofger.Email-keylogger |
| Category: |
Trojan |
| Alias: |
- Alias: W32/Rbot-ABB |
| Advice: |
Remove |
| Risk: |
Severe Risk
Severe threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction and exploits are in the wild. There exists a high possibility of potential system damage or security flaw. Attacker has complete control over your computer or install new software on your machine. |
| Description:
|
Tro.Tofger.Email-keylogger is a multi-component Trojan
Tro.Tofger.Email-keylogger is which consists of a main dropper, a backdoor and a keylogging component.
|
| Signatures:
|
process: sachostb.exe: MD5 Hash: 3cd3642e07ebd0e5707...
process: sachostc.exe: MD5 Hash: a219e43b9fd458fa5f3...
process: sachostp.exe: MD5 Hash: 96db8fb0ec168db2420...
process: sachosts.exe: MD5 Hash: 7c200308987e10290be...
process: sachostw.exe: MD5 Hash: 9a169573994b7cc3c6f...
process: sachostx.exe: MD5 Hash: 3a88a5263ead5c6ff53...
process: sysldr32.exe: MD5 Hash: 8729877e8c40f354e75...
process: r.exe: MD5 Hash: c3ea9dcc9653ad7e0c9...
process: download.exe: MD5 Hash: 98cce51538c54460844.. |
| Type: |
Trojan - A worm is program that propagates by attacking other computers and copying itself to them. Worms may replace files, but do not insert themselves into files (as viruses do). |