Home Malware Programs Trojans Trojan-Downloader.Win32.Homa

Trojan-Downloader.Win32.Homa

Posted: November 22, 2010

Trojan-Downloader.Win32.Homa is a Trojan which contains a keylogger program that can capture all user keystrokes, including confidential details such as usernames, passwords and credit card numbers. Trojan-Downloader.Win32.Homa may take screen snapshots, download additional components, and provide the hacker with remote access to the PC or system. Other symptoms common to Trojan-Downloader.Win32.Homa include downloads or requests for other files from the Internet. Trojan-Downloader.Win32.Homa can also contact remote servers to download additional malware onto your computer without your knowledge. Trojan-Downloader.Win32.Homa should be uprooted without hesitation as it poses a high risk to your personal information and the safety of your computer.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%\Blender\aboutblank.exe
    2 %ProgramFiles%\Blender\afsys.exe
    3 %ProgramFiles%\Blender\erth.exe
    4 %ProgramFiles%\Blender\ntwdblib.dll
    5 %ProgramFiles%\Blender\proxfile.exe
    6 %ProgramFiles%\Blender\winhelp.exe
    7 %System%\erth.exe
    8 %System%\ProxFile.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_LOCAL_MACHINE\SOFTWARE\Description\Microsoft\Rpc\UuidTemporaryData][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSSQLServer\Client\SuperSocketNetLib\LastConnect]
Loading...