Home Malware Programs Trojans TrojanDropper:Win32/Jadtre.B

TrojanDropper:Win32/Jadtre.B

Posted: December 4, 2009

TrojanDropper:Win32/Jadtre.B is a malicious Trojan that enters a computer or network in stealth and opens backdoors to welcome a multitude of malware into the infected system. TrojanDropper:Win32/Jadtre.B then modifies the system settings and creates a start up registry entry. TrojanDropper:Win32/Jadtre.B displays the characteristics of an identified security risk by downloading other spyware including a spyware keylogger, which records keystrokes and captures the user's activity. TrojanDropper:Win32/Jadtre.B should not be given the freedom to do its dirty work and must be eradicated immediately.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Temp%\Portput.bat

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_APPMGMT\0000\Control][HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_APPMGMT\0000][HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_APPMGMT][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_APPMGMT\0000\Control][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_APPMGMT\0000][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_APPMGMT]
Loading...