Home Malware Programs Backdoors Toob

Toob

Posted: March 28, 2006

Toob is a backdoor that gives the remote attacker full unauthorized access to the compromised PC. The spyware also contacts predetermined web sites and transfers specific data generated on the infected PC. Toob automatically runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 svchost.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunSVCHOSTGenericApplication
Loading...