Trojan.Refpron

Trojan.Refpron Description

This Trojan is designed to infiltrate your computer and open a conduit by which large amounts of adware and spyware can be piped to your system. This program opens up a large security hole on your computer and is a very dangerous threat to the security of your personal and financial data. This program will download additional malware to your computer, and may generate large numbers of popup and pop-under adverts.

Aliases


Trj/Refpron.AI [Panda]Heuristic.LooksLike.Win32.NewMalware.I [McAfee-GW-Edition]Trojan.Packed.20070 [DrWeb]Gen:Trojan.VB.Refpron.1 [BitDefender]Win32:Malware-gen [Avast]Worm/MsnBot.217088 [AntiVir]Malware/Win32.Generic [AhnLab-V3]Trojan.Win32.Generic.51F2838APacked.Win32.Koblu.c [Kaspersky]Win32:Delf-MZE [Avast]Trojan.Win32.Generic!BT [Sunbelt]Mal/Refpron-B [Sophos]a variant of Win32/Refpron.BC [NOD32]Heuristic.LooksLike.Trojan.Agent.H [McAfee-GW-Edition]Refpron.gen.i [McAfee]
More aliases (211)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Trojan.Refpron may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:

afisicx.exe File name: afisicx.exe
Size: 93.18 KB (93184 bytes)
MD5: 2d17e422fdaad23c535d83ef307c59bf
Detection count: 81
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
mtrstart.exe File name: mtrstart.exe
Size: 211.96 KB (211968 bytes)
MD5: aacd2f61a68ec43b913707109837af69
Detection count: 80
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
wtukd32.exe File name: wtukd32.exe
Size: 157.69 KB (157696 bytes)
MD5: c672a24345d6a3bfcbada8ed55347625
Detection count: 80
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
tdxdowkc.exe File name: tdxdowkc.exe
Size: 38.4 KB (38400 bytes)
MD5: 6b79cfb1c9f6dc02833460b62665812e
Detection count: 76
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
mabidwe.exe File name: mabidwe.exe
Size: 185.85 KB (185856 bytes)
MD5: ee209c056034e787a85a42ad15ca3e53
Detection count: 75
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
Nobicyt.exe File name: Nobicyt.exe
Size: 38.4 KB (38400 bytes)
MD5: 2039282f39681a8a86a0307912523a5d
Detection count: 72
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
roxtctm.exe File name: roxtctm.exe
Size: 38.4 KB (38400 bytes)
MD5: d3ee74d2f63eba3dab9cc7de95670057
Detection count: 71
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
sobicyt.exe File name: sobicyt.exe
Size: 38.4 KB (38400 bytes)
MD5: bd640e5458b7d5beac1b214321a33b40
Detection count: 56
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
wiwow64.exe File name: wiwow64.exe
Size: 86.01 KB (86016 bytes)
MD5: c38399857a51912246586f684b5090d0
Detection count: 45
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
sofatnet.exe File name: sofatnet.exe
Size: 95.23 KB (95232 bytes)
MD5: c8ae1d12e4ff8ea7f809abe592baa417
Detection count: 43
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
roytctm.exe File name: roytctm.exe
Size: 47.61 KB (47616 bytes)
MD5: 7e6fc93039ec561c264b9185a6f9a3a2
Detection count: 42
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
sopidkc.exe File name: sopidkc.exe
Size: 97.79 KB (97792 bytes)
MD5: 8238fe0a77d64900a23e6448944fee6c
Detection count: 34
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
2293594.exe File name: 2293594.exe
Size: 133.12 KB (133120 bytes)
MD5: 101e1046c450a467c34bd61353e5bebc
Detection count: 22
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
87552110.exe File name: 87552110.exe
Size: 87.55 KB (87552 bytes)
MD5: baa89e192119e1df1c593e102a508aaa
Detection count: 21
File type: Executable File
Mime Type: application/octet-stream
Group: Malware file
Last Updated: December 11, 2009
%TEMP%lsass.exe File name: lsass.exe
Size: 217.08 KB (217088 bytes)
MD5: fb49d4509343a486d8c9acd4529bd8c5
Detection count: 21
File type: Executable File
Mime Type: application/octet-stream
Path: %TEMP%
Group: Malware file
Last Updated: November 3, 2010

More files

Registry Modifications


The following newly produced Registry Values are:

File name without pathAFinding.exeafisicx.exeafisicx.exeafisicx.exeafisicx.exemabidwe.exemabidwe.exemacidwe.exemacidwe.exemsrstart.exemsrstart.exeNobicyt.exeroxtctm.exesobicyt.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exesopidkc.exetdctxte.exetdxdowkc.exetpszxyd.syswiwow64.exewtukd32.exewtukd32.exeRun keysafisicxsopidkc
Posted: March 2, 2008
Threat Metric
Threat Level: 9/10
Infected PCs 28
Home Malware Programs Trojans Trojan.Refpron

Leave a Reply

Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter. If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.