Home Malware Programs Trojans Provis!rts

Provis!rts

Posted: November 30, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 206
First Seen: November 30, 2010
Last Seen: July 14, 2021
OS(es) Affected: Windows

Trojan.Provis!rts is a backdoor Trojan that makes your computer system vulnerable and thus exposes it to other malware infections. Trojan.Provis!rts can read your email and phone book information. Trojan.Provis!rts can also steal your personal details and use them for illegitimate activities. Uninstall Trojan.Provis!rts as soon as possible before it destroys your computer.

Aliases

Generic17.BQNH [AVG]W32/Emogen.H [Fortinet]Gen.Trojan [Ikarus]Trojan/Win32.Genome [AhnLab-V3]Trojan/win32.agent.gen [Antiy-AVL]TR/ATRAPS.Gen [AntiVir]Gen:Trojan.Heur.VB.bm0@cyWpN0di [BitDefender]Win32.TRATRAPS [eSafe]probably a variant of Win32/Agent.GQQVSOP [NOD32]Generic.dx!vij [McAfee]W32/Kolab.HQL!worm [Fortinet]Trojan/Win32.VB [AhnLab-V3]Win32/AdClicker.DMN [eTrust-Vet]Trojan.Packed.20030 [DrWeb]TrojWare.Win32.TrojanDownloader.Inject.ahi0 [Comodo]
More aliases (262)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\MessengerPlus\mplayer2.exe File name: mplayer2.exe
Size: 142.33 KB (142336 bytes)
MD5: 77d8f49552f0628666af2bab91f745f9
Detection count: 87
File type: Executable File
Mime Type: unknown/exe
Path: C:\MessengerPlus
Group: Malware file
Last Updated: December 9, 2010
%PROGRAMFILES%\WindowsUpdate\WINLOGON.EXE File name: WINLOGON.EXE
Size: 39.42 KB (39424 bytes)
MD5: b30baa24dde597a10a92f9f149c2ac2d
Detection count: 75
File type: Executable File
Mime Type: unknown/EXE
Path: %PROGRAMFILES%\WindowsUpdate
Group: Malware file
Last Updated: December 7, 2010
%USERPROFILE%\Desktop\Murclub-bot.EXE File name: Murclub-bot.EXE
Size: 29.18 KB (29184 bytes)
MD5: 4db761e6bb21b69481ccf7bbbc30df9a
Detection count: 42
File type: Executable File
Mime Type: unknown/EXE
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: January 24, 2012
%USERPROFILE%\Application Data\alu.exe File name: alu.exe
Size: 2.53 MB (2535257 bytes)
MD5: e7b296a6b7dc136e8265e33a4385e79c
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Application Data
Group: Malware file
Last Updated: April 17, 2012
%WINDIR%\system32\drivers\svchost.exe File name: svchost.exe
Size: 139.26 KB (139264 bytes)
MD5: 824d287b08eb2df13a4acaab116c7d68
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: February 4, 2011
%WINDIR%\notepad2.exe File name: notepad2.exe
Size: 65.53 KB (65536 bytes)
MD5: 6a5c02fd8ff00898a351171a68112ad3
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: April 15, 2011

More files
Loading...