Home Malware Programs Trojans Trojan.Mapstosteal

Trojan.Mapstosteal

Posted: June 20, 2011

Trojan.Mapstosteal is a Korean Trojan and spyware that tries to steal private information like passwords and account login data. Some processes that are related to Trojan.Mapstosteal will attempt to use familiar names like winlogin.exe to fool you into believing that they're harmless. Other than the additional memory processes, Trojan.Mapstosteal may show no signs of Trojan.Mapstosteal's existence during installation or while spying on your PC. You should remove Trojan.Mapstosteal from your computer immediately since Trojan.Mapstosteal constitutes a serious privacy breach that should be defeated with a good security program.

Trojan.Mapstosteal – Not the Program You Think It Is

Most Trojan.Mapstosteal infections have been seen to hail from South Korea; avoiding file sources and sites from that region or exercising especial caution around them may help you avoid being attacked by Trojan.Mapstosteal. To tighten your security against Trojan.Mapstosteal attacks update your browser and disable Flash and JavaScript for online sources that you don't trust.

Trojan.Mapstosteal can also be detected by slightly different names, depending on which security program you use to detect Trojan.Mapstosteal: DroppedWin32, Trojan:Win32/Mapstosteal, Infostealer and Troj/PSW-GW have all been linked to Trojan.Mapstosteal infections.

Trojan.Mapstosteal major distinguishing feature is Trojan.Mapstosteal's tendency to create multiple .dll and .exe files, the latter of which are often launched in the form of memory processes. You may be able to see Trojan.Mapstosteal's memory processes in Windows Task Manager. However, Trojan.Mapstosteal uses harmless-seeming names like MapleStory.exe and winlogin.exe to lessen your suspicion of Trojan.Mapstosteals components. Other processes linked to Trojan.Mapstosteal include linked to contacts[1].exe, arking.exe, VirusIsolator.exe and SROKing2.0.71_1.exe.

What Trojan.Mapstosteal Steals from You

Trojan.Mapstosteal is a confirmed keylogger. Keyloggers can record individual keystrokes on your keyboard in an attempt to snatch up your passwords and other private information. Many keyloggers like Trojan.Mapstosteal can supplement this with the use of screenshots and other recording techniques.

First seen in 2010, Trojan.Mapstosteal has had updates in 2011 and is still a relevant and credible threat to any PC. Trojan.Mapstosteal can create advanced components like .dll files and Registry entries, which makes removing Trojan.Mapstosteal manually far from an ideal solution.

The recommended method for deleting Trojan.Mapstosteal and restoring your PC privacy is to reboot into Safe Mode followed by running a full scan of your PC with an anti-malware program. Update your software for the latest threat definitions before attempting this scan, and try to make sure no unnecessary programs are active at the time. This will help you delete Trojan.Mapstosteal without leaving traces behind that could recover from deletion.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 20d374be-d934-478d-7063-043f62928b47.dll
    2 823d084b.dll
    3 arking.exe
    4 contacts[1].exe
    5 ctbr.dll
    6 Install.dll
    7 MapleStory.exe
    8 SROKing2.0.71_1.exe
    9 VirusIsolator.exe
    10 winlogin.exe

One Comment

Loading...