Home Malware Programs Trojans Trojan.Tropid!rts

Trojan.Tropid!rts

Posted: June 21, 2011

Trojan.Tropid!rts is a Trojan threat that typically is installed by other Trojans, along with various other malicious security programs. Trojan.Tropid!rts may show limited or no signs of being active while Trojan.Tropid!rts carries out Trojan.Tropid!rts' actions as a background memory process. A Trojan.Tropid!rts infection may steal passwords and other sensitive information, allow remote attackers to control your PC or download other malicious programs without your consent. Since Trojan.Tropid!rts is very likely to work in cooperation with many other PC threats, it's suggested that you use an automated security scanner to detect and delete Trojan.Tropid!rts and other problems.

The Trojan.Tropid!rts Horde, Knocking at Your Door

Trojan.Tropid!rts was first seen to be a serious PC threat in 2009. However, recurring infections have been noted in 2010 and 2011, making Trojan.Tropid!rts attacks still possible dangers to any computer.

Recent Trojan.Tropid!rts infections have always come as part of a larger multi-infection attack that uses several types of threats. Some threats that have been seen with Trojan.Tropid!rts include VirTool:WinNT/Jadtre.gen, Exploit:Win32/ShellCode.gen!B and Virus.Win32.Nimnul.c.

Trojan.Tropid!rts itself can be detected by several different aliases, including Trojan.KillAV.DC, Trojan.Win32.Agent.dgn, W32/Simfect.dll, Troj/Horst-JX and Trojan:Win32/Tropid!rts. Most infections by Trojan.Tropid!rts and Trojan.Tropid!rts' tag-along army originate from China, so you may wish to exercise additional care with your computer when interacting with Chinese websites or file sources.

The Potential Terrors Lurking Inside the Trojan.Tropid!rts Dynamic Link Library File

Trojan.Tropid!rts can be recognized by the presence of a 'dmutilio.dll' file in your system folder. This Trojan.Tropid!rts file is 135 kilobytes by default, although packing and compression techniques can change this file size. Trojan.Tropid!rts has also been linked to using fake lasass.exe and binternet.exe memory processes.

Trojan.Tropid!rts primarily is a danger via Trojan.Tropid!rts' potential spyware habits. Any sensitive information on a computer that's been infected by Trojan.Tropid!rts, including passwords, account logins, and online banking information can be stolen by Trojan.Tropid!rts, and sent to anonymous criminals. Trojan.Tropid!rts may record keystrokes using keylogger functions, take screenshots and remain active in the background. Other infections that are related to Trojan.Tropid!rts, of course, can cause a multitude of other problems.

The ideal method of removing Trojan.Tropid!rts from your PC is to reboot into Safe Mode (Safe Mode with Networking, if it's necessary to download any updates or program files) and launch a fully-updated anti-virus program. Scan your entire PC for possible threats, since Trojan.Tropid!rts is rarely alone, and other threats may root themselves into advanced portions of your OS such as your system restore files.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 0.6665288204352243.exe
    2 161.exe
    3 569B.exe
    4 a.exe
    5 binternet.exe
    6 ComboFix.exe
    7 cryptnet32.dll
    8 eXplorer.exe
    9 fvnxuiohmof.exe
    10 iExplore.exe
    11 ipripv6.dll
    12 irciudphmof.exe
    13 Killer.exe
    14 lsass.exe
    15 MapleStory.exe
    16 msdhost.exe
    17 msftldr.dll
    18 packhostui.exe
    19 RITFSD.sys
    20 securitymanager.exe
    21 SjBoy mig33jakarta 3.05.exe
    22 social.exe
    23 translateclient.exe
    24 updates.exe
    25 wminit.exe
    26 wwtask.exe
Loading...