Home Malware Programs Trojans Trojan.Tracur.AU

Trojan.Tracur.AU

Posted: August 1, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 159
First Seen: August 1, 2012
OS(es) Affected: Windows

Trojan.Tracur.AU is a Trojan that redirects web search results in search engines, such as Google, Yahoo, AOL and Bing to suspicious or malicious URLs and may download and execute arbitrary files that include other malware threats. Once installed on an infected computer system, Trojan.Tracur.AU can drop malicious files and modify the Windows Registry. Trojan.Tracur.AU allows attackers to gain remote and control over the affected computer system.

Aliases

Crypt_s.AE [AVG]W32/Sefnit.D!tr [Fortinet]Trojan-Downloader.Agent [Ikarus]TR/Crypt.XPACK.Gen5 [AntiVir]Mal/Sefnit-D [Sophos]Gen:Variant.Kazy.68111 [BitDefender]Generic.evx!bz [McAfee]Generic28.CKJD [AVG]Gen:Variant.Kazy.81102 [BitDefender]TR/Tracur.AJ.2 [AntiVir]HEUR:Trojan.Win32.Generic [Kaspersky]Win32:Tracur-IK [Trj] [Avast]Artemis!390BBCFCE0F8 [McAfee]Suspicious file [Panda]Agent.7.AI [AVG]
More aliases (85)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\Creative Tech\elgaysyh.dll File name: elgaysyh.dll
Size: 307.2 KB (307200 bytes)
MD5: cbf009993bf32f181170f1319d498793
Detection count: 42
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Creative Tech
Group: Malware file
Last Updated: August 21, 2012
%USERPROFILE%\Local Settings\Application Data\Synaptics\tsfcjqkj.dll File name: tsfcjqkj.dll
Size: 307.2 KB (307200 bytes)
MD5: 2b34267ebbb9311b7bfc01e77245bc56
Detection count: 40
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\Synaptics
Group: Malware file
Last Updated: August 6, 2012
%USERPROFILE%\Local Settings\Application Data\Netscape\aqsmkvqr.dll File name: aqsmkvqr.dll
Size: 606.2 KB (606208 bytes)
MD5: c905dfce5b7cbf023e28e372caa73a0f
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\Netscape
Group: Malware file
Last Updated: September 17, 2012
%LOCALAPPDATA%\CRE\Conduit\mjfks.dll File name: mjfks.dll
Size: 172.03 KB (172032 bytes)
MD5: e67fcf74733824922c454d840372bfd8
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\CRE\Conduit
Group: Malware file
Last Updated: August 6, 2012
%LOCALAPPDATA%\Google\pizawyzr.dll File name: pizawyzr.dll
Size: 368.64 KB (368640 bytes)
MD5: 5dde0765a37062e9b46427ca8073e5dc
Detection count: 6
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Google
Group: Malware file
Last Updated: August 1, 2012
%LOCALAPPDATA%\Netscape\vjgtxaxw.dll File name: vjgtxaxw.dll
Size: 368.64 KB (368640 bytes)
MD5: af7a2183556d437b69969a5963d71b6d
Detection count: 2
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Netscape
Group: Malware file
Last Updated: August 1, 2012
Loading...